SlideShare a Scribd company logo
LogStash: Concept Run-Through
LogStash: Concept Run-Through
What is LogStash?
What is LogStash?
Definition
Logstash is an open
source, server-side data
processing pipeline that
ingests data from a
multitude of sources
simultaneously,
transforms it, and then
sends it to a specified
output.
What is LogStash?
Definition
Jordan Sissel created the first version of LogStash in 2013, when he frequently found himself in the thick of
aggregating and managing log files.
Logstash continued to grow with the other components of the ELK stack and is now part of a comprehensive
platform for log data and analysis, providing companies with valuable insights into how their customers
interact with support system, e-commerce sites and so on.
What is LogStash?
Importance of LogStash
Open source data collection engine
Centralize data processing of all types
Normalized varying schema for
business critical data
Support for multiple and custom
formats
Extensibility via plugins
History of LogStash
What is LogStash?
What Can LogStash Do?
Core Features
What Can LogStash Do?
Data ingestion
workhorse
Events enrichment
and transformation
Extensible plugin
ecosystem
It is highly available,
scalable and elastic in
nature.
Pluggable pipeline
architecture
Horizontally
scalable data
processing pipeline
Strong
Elasticsearch and
Kibana synergy
Handles data of all
shapes and sizes
LogStash Versatility
What Can LogStash Do?
Analysis
Archiving
Monitoring
Alerting
Search
What Constitutes LogStash?
Key Components and Terminology
What Constitutes LogStash?
INPUTS
FILTERS
OUTPUTS
Specify the source of events
LogStash can handle variety of
sources
Most common ones are:
Logs
Network
Web
Data stores and streams
Sensors and IoT
Key Components and Terminology
What Constitutes LogStash?
INPUTS
Key Components and Terminology
What Constitutes LogStash?
FILTERS
Responsible for parsing the
incoming events
May enrich the events
Most common ones are:
grok
mutate
drop
Key Components and Terminology
What Constitutes LogStash?
OUTPUTS
Final stage of the pipeline
Sends the enriched output to a
specified destination
LogStash can handle variety
of destinations
ElasticSearch
AWS S3 buckets
Files
How Does LogStash Work?
Files
AWS S3
Elastic Search
Grok
GeoIP
Drop
Anonymize
Inputs Filters Outputs
LogStash Pipeline
How Does LogStash Work?
LogStash: Concept Run-Through

More Related Content

PDF
Introduction to ELK
Manuj Aggarwal
 
PDF
Дмитрий Попович "How to build a data warehouse?"
Fwdays
 
PDF
Scalable Data Management for Kafka and Beyond | Dan Rice, BigID
HostedbyConfluent
 
PDF
Why IT Should Consider Agile Modern Data Delivery Platform
syed_javed
 
PPTX
Your data layer - Choosing the right database solutions for the future
ObjectRocket
 
PPTX
Visualizing Austin's data with Elasticsearch and Kibana
ObjectRocket
 
PDF
Why Business Intelligence Should Consider Agile Modern Data Delivery Platform
syed_javed
 
PDF
Getting started with Cosmos DB + Linkurious Enterprise
Linkurious
 
Introduction to ELK
Manuj Aggarwal
 
Дмитрий Попович "How to build a data warehouse?"
Fwdays
 
Scalable Data Management for Kafka and Beyond | Dan Rice, BigID
HostedbyConfluent
 
Why IT Should Consider Agile Modern Data Delivery Platform
syed_javed
 
Your data layer - Choosing the right database solutions for the future
ObjectRocket
 
Visualizing Austin's data with Elasticsearch and Kibana
ObjectRocket
 
Why Business Intelligence Should Consider Agile Modern Data Delivery Platform
syed_javed
 
Getting started with Cosmos DB + Linkurious Enterprise
Linkurious
 

What's hot (20)

PDF
How to visualize Cosmos DB graph data
Linkurious
 
PDF
Building Data Lakes with Apache Airflow
Gary Stafford
 
PPTX
The Yellowbrick Impact for MicroStrategy
Yellowbrick Data
 
PPTX
PSSUG Nov 2012: Big Data with SQL Server
Mark Kromer
 
PPTX
It’s All About The Cards: Sharing on Social Media Encouraged HTML Metadata G...
Shawn Jones
 
PPTX
Azure data catalog your data your way eugene polonichko dataconf 21 04 18
Olga Zinkevych
 
PPTX
Data & AI Platform Concepts
Ankit Rathi
 
PDF
What Is ELK Stack | ELK Tutorial For Beginners | Elasticsearch Kibana | ELK S...
Edureka!
 
PDF
Unlocking Geospatial Analytics Use Cases with CARTO and Databricks
Databricks
 
PDF
Collecting and Making Sense of Diverse Data at WayUp
Harlan Harris
 
PDF
Cortana Analytics Workshop: Azure Data Catalog
MSAdvAnalytics
 
PPTX
ODA Use-Case: XaitPorter Appliance
Roy Olsen
 
PDF
Load data from xml to Snowflake in minutes
syed_javed
 
PDF
Bridging to a hybrid cloud data services architecture
IBM Analytics
 
PPTX
Leveraging cloud database connectors to automate analytics in alteryx
Grazitti Interactive
 
PDF
Data Mesh @ Yelp - 2019
Steven Moy
 
PDF
New York Elastic{ON} Tour Opening Keynote
Elasticsearch
 
PDF
Business Insight
Microsoft
 
PPTX
Polyglot Persistence and Database Deployment by Sandeep Khuperkar CTO and Dir...
Ashnikbiz
 
PPTX
StreamSet ETL tool
SwapnilSHampi
 
How to visualize Cosmos DB graph data
Linkurious
 
Building Data Lakes with Apache Airflow
Gary Stafford
 
The Yellowbrick Impact for MicroStrategy
Yellowbrick Data
 
PSSUG Nov 2012: Big Data with SQL Server
Mark Kromer
 
It’s All About The Cards: Sharing on Social Media Encouraged HTML Metadata G...
Shawn Jones
 
Azure data catalog your data your way eugene polonichko dataconf 21 04 18
Olga Zinkevych
 
Data & AI Platform Concepts
Ankit Rathi
 
What Is ELK Stack | ELK Tutorial For Beginners | Elasticsearch Kibana | ELK S...
Edureka!
 
Unlocking Geospatial Analytics Use Cases with CARTO and Databricks
Databricks
 
Collecting and Making Sense of Diverse Data at WayUp
Harlan Harris
 
Cortana Analytics Workshop: Azure Data Catalog
MSAdvAnalytics
 
ODA Use-Case: XaitPorter Appliance
Roy Olsen
 
Load data from xml to Snowflake in minutes
syed_javed
 
Bridging to a hybrid cloud data services architecture
IBM Analytics
 
Leveraging cloud database connectors to automate analytics in alteryx
Grazitti Interactive
 
Data Mesh @ Yelp - 2019
Steven Moy
 
New York Elastic{ON} Tour Opening Keynote
Elasticsearch
 
Business Insight
Microsoft
 
Polyglot Persistence and Database Deployment by Sandeep Khuperkar CTO and Dir...
Ashnikbiz
 
StreamSet ETL tool
SwapnilSHampi
 
Ad

Similar to LogStash: Concept Run-Through (20)

PPTX
ELK Stack Online Training - Elasticsearch Online Training Course.pptx
eshwarvisualpath
 
DOCX
Log management with_logstash_and_elastic_search
Rishav Rohit
 
DOCX
SAP BODS -quick guide.docx
Ken T
 
PPTX
Centralized logging
blessYahu
 
PDF
FluentD vs. Logstash
All Things Open
 
PDF
ExecutiveWhitePaper
Anthony Parziale
 
PPTX
centralization of log systems pour suivis
Thierry Gayet
 
PDF
Comprehensive Guide for Microsoft Fabric to Master Data Analytics
Sparity1
 
PDF
Webinar: Open Source Business Intelligence Intro
SpagoWorld
 
PDF
Best Practices For Building and Operating A Managed Data Lake - StampedeCon 2016
StampedeCon
 
PDF
Enabling SQL Access to Data Lakes
Vasu S
 
PDF
Business Intelligence for users - Sharperlight
Michell8240
 
PDF
the Data World Distilled
RTTS
 
PDF
LinkedInSaxoBankDataWorkbench
Sheetal Pratik
 
PPTX
OLAP & DATA WAREHOUSE
Zalpa Rathod
 
PPT
Date warehousing concepts
pcherukumalla
 
PPTX
Data junction tool
Sara shall
 
PDF
CTP Data Warehouse
Saurav (Srv) Singhania
 
PPTX
OLAP & Data Warehouse
Zalpa Rathod
 
PDF
Archonnex at ICPSR
Harshakumar Ummerpillai
 
ELK Stack Online Training - Elasticsearch Online Training Course.pptx
eshwarvisualpath
 
Log management with_logstash_and_elastic_search
Rishav Rohit
 
SAP BODS -quick guide.docx
Ken T
 
Centralized logging
blessYahu
 
FluentD vs. Logstash
All Things Open
 
ExecutiveWhitePaper
Anthony Parziale
 
centralization of log systems pour suivis
Thierry Gayet
 
Comprehensive Guide for Microsoft Fabric to Master Data Analytics
Sparity1
 
Webinar: Open Source Business Intelligence Intro
SpagoWorld
 
Best Practices For Building and Operating A Managed Data Lake - StampedeCon 2016
StampedeCon
 
Enabling SQL Access to Data Lakes
Vasu S
 
Business Intelligence for users - Sharperlight
Michell8240
 
the Data World Distilled
RTTS
 
LinkedInSaxoBankDataWorkbench
Sheetal Pratik
 
OLAP & DATA WAREHOUSE
Zalpa Rathod
 
Date warehousing concepts
pcherukumalla
 
Data junction tool
Sara shall
 
CTP Data Warehouse
Saurav (Srv) Singhania
 
OLAP & Data Warehouse
Zalpa Rathod
 
Archonnex at ICPSR
Harshakumar Ummerpillai
 
Ad

More from Manuj Aggarwal (6)

PDF
IaaS Cloud Computing With OpenStack - Master Class (Handout)
Manuj Aggarwal
 
PDF
Features of AWS - IAM
Manuj Aggarwal
 
PDF
Manage Azure Cloud with ARM Templates
Manuj Aggarwal
 
PDF
What is Open VPN
Manuj Aggarwal
 
PDF
Why Use PfSense ?
Manuj Aggarwal
 
PDF
LogStash in action
Manuj Aggarwal
 
IaaS Cloud Computing With OpenStack - Master Class (Handout)
Manuj Aggarwal
 
Features of AWS - IAM
Manuj Aggarwal
 
Manage Azure Cloud with ARM Templates
Manuj Aggarwal
 
What is Open VPN
Manuj Aggarwal
 
Why Use PfSense ?
Manuj Aggarwal
 
LogStash in action
Manuj Aggarwal
 

Recently uploaded (20)

PPTX
ASSIGNMENT_1[1][1][1][1][1] (1) variables.pptx
kr2589474
 
PDF
Adobe Illustrator Crack Full Download (Latest Version 2025) Pre-Activated
imang66g
 
PPTX
Odoo Integration Services by Candidroot Solutions
CandidRoot Solutions Private Limited
 
PPTX
Web Testing.pptx528278vshbuqffqhhqiwnwuq
studylike474
 
PDF
advancepresentationskillshdhdhhdhdhdhhfhf
jasmenrojas249
 
PDF
On Software Engineers' Productivity - Beyond Misleading Metrics
Romén Rodríguez-Gil
 
PDF
Download iTop VPN Free 6.1.0.5882 Crack Full Activated Pre Latest 2025
imang66g
 
PDF
An Experience-Based Look at AI Lead Generation Pricing, Features & B2B Results
Thomas albart
 
PDF
Balancing Resource Capacity and Workloads with OnePlan – Avoid Overloading Te...
OnePlan Solutions
 
PPTX
Can You Build Dashboards Using Open Source Visualization Tool.pptx
Varsha Nayak
 
PPTX
AI-Ready Handoff: Auto-Summaries & Draft Emails from MQL to Slack in One Flow
bbedford2
 
PDF
New Download FL Studio Crack Full Version [Latest 2025]
imang66g
 
PDF
Enhancing Healthcare RPM Platforms with Contextual AI Integration
Cadabra Studio
 
DOCX
Can You Build Dashboards Using Open Source Visualization Tool.docx
Varsha Nayak
 
PDF
MiniTool Power Data Recovery Crack New Pre Activated Version Latest 2025
imang66g
 
PDF
Immersive experiences: what Pharo users do!
ESUG
 
PDF
Generating Union types w/ Static Analysis
K. Matthew Dupree
 
PPTX
Maximizing Revenue with Marketo Measure: A Deep Dive into Multi-Touch Attribu...
bbedford2
 
PDF
Key Features to Look for in Arizona App Development Services
Net-Craft.com
 
PPTX
classification of computer and basic part of digital computer
ravisinghrajpurohit3
 
ASSIGNMENT_1[1][1][1][1][1] (1) variables.pptx
kr2589474
 
Adobe Illustrator Crack Full Download (Latest Version 2025) Pre-Activated
imang66g
 
Odoo Integration Services by Candidroot Solutions
CandidRoot Solutions Private Limited
 
Web Testing.pptx528278vshbuqffqhhqiwnwuq
studylike474
 
advancepresentationskillshdhdhhdhdhdhhfhf
jasmenrojas249
 
On Software Engineers' Productivity - Beyond Misleading Metrics
Romén Rodríguez-Gil
 
Download iTop VPN Free 6.1.0.5882 Crack Full Activated Pre Latest 2025
imang66g
 
An Experience-Based Look at AI Lead Generation Pricing, Features & B2B Results
Thomas albart
 
Balancing Resource Capacity and Workloads with OnePlan – Avoid Overloading Te...
OnePlan Solutions
 
Can You Build Dashboards Using Open Source Visualization Tool.pptx
Varsha Nayak
 
AI-Ready Handoff: Auto-Summaries & Draft Emails from MQL to Slack in One Flow
bbedford2
 
New Download FL Studio Crack Full Version [Latest 2025]
imang66g
 
Enhancing Healthcare RPM Platforms with Contextual AI Integration
Cadabra Studio
 
Can You Build Dashboards Using Open Source Visualization Tool.docx
Varsha Nayak
 
MiniTool Power Data Recovery Crack New Pre Activated Version Latest 2025
imang66g
 
Immersive experiences: what Pharo users do!
ESUG
 
Generating Union types w/ Static Analysis
K. Matthew Dupree
 
Maximizing Revenue with Marketo Measure: A Deep Dive into Multi-Touch Attribu...
bbedford2
 
Key Features to Look for in Arizona App Development Services
Net-Craft.com
 
classification of computer and basic part of digital computer
ravisinghrajpurohit3
 

LogStash: Concept Run-Through

  • 4. What is LogStash? Definition Logstash is an open source, server-side data processing pipeline that ingests data from a multitude of sources simultaneously, transforms it, and then sends it to a specified output.
  • 5. What is LogStash? Definition Jordan Sissel created the first version of LogStash in 2013, when he frequently found himself in the thick of aggregating and managing log files. Logstash continued to grow with the other components of the ELK stack and is now part of a comprehensive platform for log data and analysis, providing companies with valuable insights into how their customers interact with support system, e-commerce sites and so on.
  • 6. What is LogStash? Importance of LogStash Open source data collection engine Centralize data processing of all types Normalized varying schema for business critical data Support for multiple and custom formats Extensibility via plugins
  • 9. Core Features What Can LogStash Do? Data ingestion workhorse Events enrichment and transformation Extensible plugin ecosystem It is highly available, scalable and elastic in nature. Pluggable pipeline architecture Horizontally scalable data processing pipeline Strong Elasticsearch and Kibana synergy Handles data of all shapes and sizes
  • 10. LogStash Versatility What Can LogStash Do? Analysis Archiving Monitoring Alerting Search
  • 12. Key Components and Terminology What Constitutes LogStash? INPUTS FILTERS OUTPUTS
  • 13. Specify the source of events LogStash can handle variety of sources Most common ones are: Logs Network Web Data stores and streams Sensors and IoT Key Components and Terminology What Constitutes LogStash? INPUTS
  • 14. Key Components and Terminology What Constitutes LogStash? FILTERS Responsible for parsing the incoming events May enrich the events Most common ones are: grok mutate drop
  • 15. Key Components and Terminology What Constitutes LogStash? OUTPUTS Final stage of the pipeline Sends the enriched output to a specified destination LogStash can handle variety of destinations ElasticSearch AWS S3 buckets Files
  • 17. Files AWS S3 Elastic Search Grok GeoIP Drop Anonymize Inputs Filters Outputs LogStash Pipeline How Does LogStash Work?