graylog 安装

1
2
yum install perl-Digest-SHA
echo -n yourpassword | shasum -a 256

账号密码均为 admin
/etc/graylog/server/server.conf

1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
is_master = true
node_id_file = /etc/graylog/server/node-id
root_username = admin
root_timezone = Asia/Shanghai

password_secret = 8d969eef6ecad3c29a3a62
password_secret_sha2 = 8c6976e5b5410415bde908bd4dee15dfb167a9c873fc4bb8a81f6f2ab448a918
root_password_sha2 = 8c6976e5b5410415bde908bd4dee15dfb167a9c873fc4bb8a81f6f2ab448a918

rest_listen_uri = http://0.0.0.0:9000/api/
rest_transport_uri = http://0.0.0.0:9000/api/

web_enable = true
web_listen_uri = http://0.0.0.0:9000/
web_endpoint_uri = http://0.0.0.0:9000/api
web_enable_cors = true


elasticsearch_hosts = http://10.0.0.15:9200
rotation_strategy = count
elasticsearch_max_docs_per_index = 20000000


elasticsearch_max_number_of_indices = 20
retention_strategy = delete
elasticsearch_shards = 5
elasticsearch_replicas = 0
elasticsearch_index_prefix = graylog
allow_leading_wildcard_searches = false
allow_highlighting = true
elasticsearch_analyzer = standard
output_batch_size = 500
output_flush_interval = 1
output_fault_count_threshold = 5
output_fault_penalty_seconds = 30
processbuffer_processors = 5
outputbuffer_processors = 3
processor_wait_strategy = blocking

ring_size = 65536

inputbuffer_ring_size = 65536
inputbuffer_processors = 2
inputbuffer_wait_strategy = blocking


mongodb_uri = mongodb://<user><password>@10.0.0.15:27017/graylog?replicaSet=xxx