[elk]elk的诸多beats&&kibana插件
elk的诸多beats
参考: https://www.elastic.co/guide/en/beats/libbeat/current/community-beats.html
jmxproxybeat
参考: https://github.com/radoondas/jmxproxybeat


Metricbeat
正确姿势启动metricbeat
metricbeat.modules:
- module: system
metricsets:
- cpu
- filesystem
- memory
- network
- process
enabled: true
period: 10s
processes: ['.*']
cpu_ticks: false
output.elasticsearch:
hosts: ["http://192.168.x.x:9200"]
setup.template.name: "metricbeat"
setup.template.fields: "fields.yml"
setup.template.overwrite: true
setup.template.settings:
index.number_of_shards: 1
index.number_of_replicas: 1
setup.kibana.host: "192.168.x.x:5601"
setup.dashboards.enabled: true
./metricbeat -e -c metricbeat.yml -d "publish"

它有这些指标模块
This section contains detailed information about the metric collecting modules contained in Metricbeat. Each module contains one or multiple metricsets. More details about each module can be found under the links below.
Aerospike
Apache
Ceph
Couchbase
Docker
Dropwizard
Elasticsearch
Golang
HAProxy
HTTP
Jolokia
Kafka
Kibana
Kubernetes
Memcached
MongoDB
MySQL
Nginx
PHP-FPM
PostgreSQL
Prometheus
RabbitMQ
Redis
System
vSphere
Windows
ZooKeeper
amazonbeat
Reads data from a specified Amazon product.
apachebeat
Reads status from Apache HTTPD server-status.
apexbeat
Extracts configurable contextual data and metrics from Java applications via the APEX toolkit.
burrowbeat
Monitors Kafka consumer lag using Burrow.
cassandrabeat
Uses Cassandra’s nodetool cfstats utility to monitor Cassandra database nodes and lag.
cloudflarebeat
Indexes log entries from the Cloudflare Enterprise Log Share API.
cloudfrontbeat
Reads log events from Amazon Web Services CloudFront.
cloudtrailbeat
Reads events from Amazon Web Services' CloudTrail.
cloudwatchmetricbeat
A beat for Amazon Web Services' CloudWatch Metrics.
cloudwatchlogsbeat
Reads log events from Amazon Web Services' CloudWatch Logs.
collectbeat
Adds discovery on top of Filebeat and Metricbeat in environments like Kubernetes.
connbeat
Exposes metadata about TCP connections.
consulbeat
Reads services health checks from consul and pushes them to Elastic.
dockbeat
Reads Docker container statistics and indexes them in Elasticsearch.
elasticbeat
Reads status from an Elasticsearch cluster and indexes them in Elasticsearch.
etcdbeat
Reads stats from the Etcd v2 API and indexes them into Elasticsearch.
execbeat
Periodically executes shell commands and sends the standard output and standard error to Logstash or Elasticsearch.
factbeat
Collects facts from Facter.
flowbeat
Collects, parses, and indexes sflow samples.
gabeat
Collects data from Google Analytics Realtime API.
githubbeat
Easily monitors GitHub repository activity.
gpfsbeat
Collects GPFS metric and quota information.
hsbeat
Reads all performance counters in Java HotSpot VM.
httpbeat
Polls multiple HTTP(S) endpoints and sends the data to Logstash or Elasticsearch. Supports all HTTP methods and proxies.
hwsensorsbeat
Reads sensors information from OpenBSD.
icingabeat
Icingabeat ships events and states from Icinga 2 to Elasticsearch or Logstash.
iobeat
Reads IO stats from /proc/diskstats on Linux.
jmxproxybeat
Reads Tomcat JMX metrics exposed over JMX Proxy Servlet to HTTP.
journalbeat
Used for log shipping from systemd/journald based Linux systems.
kafkabeat
Reads data from Kafka topics.
krakenbeat
Collect information on each transaction on the Kraken crypto platform.
lmsensorsbeat
Collects data from lm-sensors (such as CPU temperatures, fan speeds, and voltages from i2c and smbus).
logstashbeat
Collects data from Logstash monitoring API (v5 onwards) and indexes them in Elasticsearch.
mcqbeat
Reads the status of queues from memcacheq.
mongobeat
Monitors MongoDB instances and can be configured to send multiple document types to Elasticsearch.
mqttbeat
Add messages from mqtt topics to Elasticsearch.
mysqlbeat
Run any query on MySQL and send results to Elasticsearch.
nagioscheckbeat
For Nagios checks and performance data.
nginxbeat
Reads status from Nginx.
nginxupstreambeat
Reads upstream status from nginx upstream module.
nvidiagpubeat
Uses nvidia-smi to grab metrics of NVIDIA GPUs.
openconfigbeat
Streams data from OpenConfig-enabled network devices
packagebeat
Collects information about system packages from package managers.
phpfpmbeat
Reads status from PHP-FPM.
pingbeat
Sends ICMP pings to a list of targets and stores the round trip time (RTT) in Elasticsearch.
prombeat
Indexes Prometheus metrics.
prometheusbeat
Send Prometheus metrics to Elasticsearch via the remote write feature.
protologbeat
Accepts structured and unstructured logs via UDP or TCP. Can also be used to receive syslog messages or GELF formatted messages. (To be used as a successor to udplogbeat)
redditbeat
Collects new Reddit Submissions of one or multiple Subreddits.
redisbeat
Used for Redis monitoring.
retsbeat
Collects counts of RETS resource/class records from Multiple Listing Service (MLS) servers.
rsbeat
Ships redis slow logs to elasticsearch and anlyze by Kibana.
saltbeat
Reads events from salt master event bus.
springbeat
Collects health and metrics data from Spring Boot applications running with the actuator module.
twitterbeat
Reads tweets for specified screen names.
udpbeat
Ships structured logs via UDP.
udplogbeat
Accept events via local UDP socket (in plain-text or JSON with ability to enforce schemas). Can also be used for applications only supporting syslog logging.
unifiedbeat
Reads records from Unified2 binary files generated by network intrusion detection software and indexes the records in Elasticsearch.
uwsgibeat
Reads stats from uWSGI.
varnishlogbeat
Reads log data from a Varnish instance and ships it to Elasticsearch.
varnishstatbeat
Reads stats data from a Varnish instance and ships it to Elasticsearch.
wmibeat
Uses WMI to grab your favorite, configurable Windows metrics.
kibana插件
kibana_shard_allocation
参考: https://github.com/asileon/kibana_shard_allocation

mathlion
Mathlion is an advanced math plugin for Kibana's Timelion
参考: https://github.com/fermiumlabs/mathlion
.es(*).math("a=source") //the variable "a" now contains the elasticsearch query.
.nop().math("a") //this row now equals the former elasticsearch query
.es(*).math("source") //return the .es(*) query
.es(*).math("source+5") // add 5 to the .es(*) query
.nop().math("a=a+2 ; a=a+3 ") //adds 5 to a
.nop().math("a=a+2 ; a=a+3 ; a ") //adds 5 to a and displays a+5
.es(*).math("a=source") //this query is invisible and does not generate an axis
.es(*).math("a=source; a") //this query does
.nop.math("sqrt(3^2 + 4^2)") //returns 5
//Calculate power comsumption based on measured current and stimated voltage (in Europe)
.nop().math("electricPower(v,i)=(v*i)")
.es(metric=avg:current).math(machineCurrent=source)
.nop().math("elascPower(230,machineCurrent)")
//plot the horizontal statistical mean and variance
.es(*).math("me=mean(source); va=var(source)")
.value(1).math(me*source)
.value(1).math("(me+sqrt(va))*source")
.value(1).math("(me-sqrt(va))*source")
[elk]elk的诸多beats&&kibana插件的更多相关文章
- 五十七.分布式ELK平台、ES安装 、 扩展插件 、Kibana安装
1. ES集群安装 准备1台虚拟机 部署elasticsearch第一个节点 访问9200端口查看是否安装成功 1ELK是日志分析平台,不是一款软件,而是一整套解决方案,是三个软件产品的首字母缩写 ...
- ELK日志系统:Elasticsearch+Logstash+Kibana+Filebeat搭建教程
ELK日志系统:Elasticsearch + Logstash + Kibana 搭建教程 系统架构 安装配置JDK环境 JDK安装(不能安装JRE) JDK下载地址:http://www.orac ...
- 利用kibana插件对Elasticsearch查询
利用kibana插件对Elasticsearch查询 Elasticsearch是功能非常强大的搜索引擎,使用它的目的就是为了快速的查询到需要的数据. 查询分类: 基本查询:使用Elasticsear ...
- ES 04 - 安装Kibana插件(6.6.0版本)
目录 1 Kibana是什么 2 安装并启动Kibana 2.1 准备安装包 2.2 修改配置文件 2.3 启动Kibana并验证 2.4 关闭Kibana服务 3 Kibana功能测试 3.1 关于 ...
- Kibana插件sentinl实现邮件报警
为什么会突然想用到对日志的异常内容进行邮件报警,是因为在上周公司的线上业务多次出现锁表,开发在优化sql的同时,我也在想是不是可以对日志的异常内容进行检测并实现邮件预警. 在网上查询了一些资料后,决定 ...
- Kibana插件
附加的功能在 Kibana 中是以插件的形式提供的.您可以利用 bin/kibana-plugin 命令来管理这些模块.您也可以手动安装这些插件,只需要将这些插件包放到 plugins 目录并解压到新 ...
- ELK日志系统:Elasticsearch + Logstash + Kibana 搭建教程
环境:OS X 10.10.5 + JDK 1.8 步骤: 一.下载ELK的三大组件 Elasticsearch下载地址: https://www.elastic.co/downloads/elast ...
- ELK日志系统:Elasticsearch + Logstash + Kibana 搭建教程(转)
环境:OS X 10.10.5 + JDK 1.8 步骤: 一.下载ELK的三大组件 Elasticsearch下载地址: https://www.elastic.co/downloads/elast ...
- [Big Data - ELK] ELK(ElasticSearch, Logstash, Kibana)搭建实时日志分析平台
ELK平台介绍 在搜索ELK资料的时候,发现这篇文章比较好,于是摘抄一小段: 以下内容来自: http://baidu.blog.51cto.com/71938/1676798 日志主要包括系统日志. ...
随机推荐
- matlab 图像常用函数
Canny function [ canny ] = canny( rgb ) temp=rgb2gray(rgb); canny=edge(temp,'canny'); end 灰度 temp=rg ...
- 6)Linux程序设计入门--消息管理
)Linux程序设计入门--消息管理 前言:Linux下的进程通信(IPC) Linux下的进程通信(IPC) POSIX无名信号量 System V信号量 System V消息队列 System V ...
- 查看DNS主机名解析的主机IP并向DNSserver进行DNS域名解析
一.查看DNS主机名解析的主机IP host 命令 用途 把一个主机名解析到一个网际地址或把一个网际地址解析到一个主机名. 语法 host [-n [ -a ] [ -c Class] [ -d ] ...
- DICOMDIR
DICOMDIR 是一个可变长度 迷你 database 文件.由 group (0002, xxxx) 和 group (0004, xxxx) 为主题.描述的是一个 4 层的树状结构 (tree ...
- 这篇讲PHP的讲的有些道理 & mb_substr & 中文处理
http://chengxu.org/p/239.html Python 是否是下一个 PHP? 1. PHP胜在最要命的部署上:没有任何其他语言有像 PHP 一样适合大规模部署的方式.基本上装好 A ...
- GPGPU OpenCL 精确字符串查找
字符串查找是信息安全.信息过滤领域的重要操作,尤其是对大文本的实时处理.这篇作为实例,使用GPU OpenCL进行精确模式串查找. 1.加速方法 (1)将少量常量数据,如模式串长度.文本长度等,保存在 ...
- go语言基础之不同作用域同名变量
1.不同作用域同名变量 示例: package main import "fmt" var a byte //全局变量 func main() { var a int //局部变量 ...
- Linux中的In命令
ln是linux中一个非常重要命令.它的功能是为某一个文件在另外一个位置建立一个同步的链接,这个命令最常用的参数是-s,具体用法是: ln -s 源文件 目标文件 -s 是 symbolic的 ...
- PHP判断{函数/类/方法/属性}是否存在
1.php判断系统函数或自己写的函数是否存在 bool function_exists ( string $function_name ) 判断函数是否已经定义,例如: if(function_exi ...
- DNS named.conf文件详解
配置文件: /etc/named.conf /在NAMED.CONF 配置文件中使用//和/* */来进行注释, options { /*OPTIONS选项用来定义一些影响整个DNS服 ...