Build Your Own Filebeat Module

Filebeat is a single-purpose data shipper designed to forward events from any text file containing log messages to Elasticsearch. It comes with internal modules (Apache, NGINX, System, and MySQL) that simplify the collection, parsing, and visualization of common log formats down to a single command. But what if you're working with an unsupported log format? First, don't panic! Second, create your own module.

Learn how to tailor existing modules to meet your logging needs. Get a complete walkthrough of building a new module from scratch using the tools provided by Filebeat.

Noémi Ványi

Noémi is a Beats Software Engineer at Elastic.