ELK Server Configuration
- Download and install Elasticsearch, Logstash, and Kibana as outlined on the https://www.elastic.co/products website.
- Edit the
/etc/elasticsearch/elasticsearch.ymlfile. - Give the
cluster.namea unique name. - Enter the
service elasticsearch startcommand. - Configure services to run on boot using these commands:
- Enter the
service logstash startcommand. - Enter the
httpd restartcommand. - Enter the
iptables-A INPUT -p tcp -m tcp --dport 9200 -j ACCEPT command.