一.elasticsearch 官网地址:https://www.elastic.co/guide/en/elasticsearch/reference/current/_installation.html1.安装[root@cluster136elk]#mkdir/opt/elk&&cd/opt/elk[root@cluster136elk]#wgethttps://download.elasticsearch.org/elasticsearch/release/org/elasticsearch/distribution/tar/elasticsearch/2.1.1/elasticsearch-2.1.1.tar.gz 2.root用户启动报错[root@cluster136bin]#./elasticsearch-d[root@cluster136bin]#Exceptioninthread"main"java.lang.RuntimeException:don'trunelasticsearchasroot.atorg.elasticsearch.bootstrap.Bootstrap.initializeNatives(Bootstrap.java:93)atorg.elasticsearch.bootstrap.Bootstrap.setup(Bootstrap.java:144)atorg.elasticsearch.bootstrap.Bootstrap.init(Bootstrap.java:285)atorg.elasticsearch.bootstrap.Elasticsearch.main(Elasticsearch.java:35)Refertothelogforcompleteerrordetails.说明:为了安全起见,elastic search禁止已root用户启动该进程.解决:建议创建一个单独的用户用来运行ElasticSearch创建elsearch用户组及elsearch用户groupaddelsearchuseraddelsearch-gelsearch-pelasticsearch更改elasticsearch文件夹及内部文件的所属用户及组为elsearch:elsearch3.优化(1)vi /etc/sysconfig/elasticsearchES_MIN_MEM=256m > ES_MIN_MEM=8gES_MAX_MEM=1g >ES_MAX_MEM=8g(2)监听地址,默认监听127.0.0.1,如果不改,logstash无法连接elasticsearch.vielasticsearch.ymlnetwork.host:192.168.0.1364.启动elasticsearchsuelsearch/opt/elk/elasticsearch/bin/elasticsearch-d二.logstash官网地址:https://www.elastic.co/guide/en/logstash/current/getting-started-with-logstash.html1.导入GPG-KEY[root@cluster139elk]:2.建立/etc/yum.repo.d/logstash.repocat > /etc/yum.repo.d/logstash.repo << EOF[logstash-2.0]name=Logstashrepositoryfor2.0.xpackagesbaseurl=http://packages.elastic.co/logstash/2.0/centosgpgcheck=1gpgkey=http://packages.elastic.co/GPG-KEY-elasticsearchenabled=1EOF3.安装logstash[root@cluster139elk]:yuminstalllogstash-y三.kibana(1)下载mkdir/opt/elk&&wgethttps://download.elastic.co/kibana/kibana/kibana-4.3.1-linux-x64.tar.gzln-sv/opt/elk/kibana-4.3.1/opt/elk/kibana(2)更改kibana配置文件,连接elasticsearchvi/opt/elk/kibana/config/kibana.ymlelasticsearch.url:"http://192.168.0.136:9200"(3)启动kibana/opt/elk/kibanaserve
(以上内容不代表本站观点。) --------------------------------- |