- Logstash Reference: other versions:
- Logstash Introduction
- Getting Started with Logstash
- Breaking Changes
- Upgrading Logstash
- Configuring Logstash
- Performance Troubleshooting Guide
- Working with plugins
- Input plugins
- beats
- couchdb_changes
- drupal_dblog
- elasticsearch
- exec
- eventlog
- file
- ganglia
- gelf
- generator
- graphite
- github
- heartbeat
- heroku
- http
- http_poller
- irc
- imap
- jdbc
- jmx
- kafka
- log4j
- lumberjack
- meetup
- pipe
- puppet_facter
- relp
- rss
- rackspace
- rabbitmq
- redis
- salesforce
- snmptrap
- stdin
- sqlite
- s3
- sqs
- stomp
- syslog
- tcp
- unix
- udp
- varnishlog
- wmi
- websocket
- xmpp
- zenoss
- zeromq
- Output plugins
- boundary
- circonus
- csv
- cloudwatch
- datadog
- datadog_metrics
- elasticsearch
- elasticsearch_java
- exec
- file
- google_bigquery
- google_cloud_storage
- ganglia
- gelf
- graphtastic
- graphite
- hipchat
- http
- irc
- influxdb
- juggernaut
- jira
- kafka
- lumberjack
- librato
- loggly
- mongodb
- metriccatcher
- nagios
- null
- nagios_nsca
- opentsdb
- pagerduty
- pipe
- riemann
- redmine
- rackspace
- rabbitmq
- redis
- riak
- s3
- sqs
- stomp
- statsd
- solr_http
- sns
- syslog
- stdout
- tcp
- udp
- webhdfs
- websocket
- xmpp
- zabbix
- zeromq
- Filter plugins
- aggregate
- alter
- anonymize
- collate
- csv
- cidr
- clone
- cipher
- checksum
- date
- de_dot
- dns
- drop
- elasticsearch
- extractnumbers
- environment
- elapsed
- fingerprint
- geoip
- grok
- i18n
- json
- json_encode
- kv
- mutate
- metrics
- multiline
- metaevent
- prune
- punct
- ruby
- range
- syslog_pri
- sleep
- split
- throttle
- translate
- uuid
- urldecode
- useragent
- xml
- zeromq
- Codec plugins
- Contributing to Logstash
- How to write a Logstash input plugin
- How to write a Logstash input plugin
- How to write a Logstash codec plugin
- How to write a Logstash filter plugin
- Contributing a Patch to a Logstash Plugin
- Logstash Plugins Community Maintainer Guide
- Submitting your plugin to RubyGems.org and the logstash-plugins repository
- Glossary of Terms
- Release Notes
librato
editlibrato
editThis is a community-maintained plugin! It does not ship with Logstash by default, but it is easy to install by running bin/logstash-plugin install logstash-output-librato
.
Synopsis
editThis plugin supports the following configuration options:
Required configuration options:
librato { account_id => ... api_token => ... }
Available configuration options:
Details
edit
account_id
edit- This is a required setting.
- Value type is string
- There is no default value for this setting.
This output lets you send metrics, annotations and alerts to Librato based on Logstash events
This is VERY experimental and inefficient right now. Your Librato account usually an email address
annotation
edit- Value type is hash
-
Default value is
{}
Annotations
Registers an annotation with Librato
The only required field is title
and name
.
start_time
and end_time
will be set to event["@timestamp"].to_i
You can add any other optional annotation values as well.
All values will be passed through event.sprintf
Example:
{ "title" => "Logstash event on %{host}" "name" => "logstash_stream" } or [source,ruby] { "title" => "Logstash event" "description" => "%{message}" "name" => "logstash_stream" }
api_token
edit- This is a required setting.
- Value type is string
- There is no default value for this setting.
Your Librato API Token
batch_size
edit- Value type is string
-
Default value is
"10"
Batch size Number of events to batch up before sending to Librato.
codec
edit- Value type is codec
-
Default value is
"plain"
The codec used for output data. Output codecs are a convenient method for encoding your data before it leaves the output, without needing a separate filter in your Logstash pipeline.
counter
edit- Value type is hash
-
Default value is
{}
Counters Send data to Librato as a counter
Example:
{ "value" => "1" "source" => "%{host}" "name" => "messages_received" }
Additionally, you can override the measure_time
for the event. Must be a unix timestamp:
{ "value" => "1" "source" => "%{host}" "name" => "messages_received" "measure_time" => "%{my_unixtime_field}" } Default is to use the event's timestamp
gauge
edit- Value type is hash
-
Default value is
{}
Gauges Send data to Librato as a gauge
Example:
{ "value" => "%{bytes_received}" "source" => "%{host}" "name" => "apache_bytes" } Additionally, you can override the `measure_time` for the event. Must be a unix timestamp: [source,ruby] { "value" => "%{bytes_received}" "source" => "%{host}" "name" => "apache_bytes" "measure_time" => "%{my_unixtime_field} } Default is to use the event's timestamp