Prerequisites
- Basic Linux command line knowledge
- Understanding of log types and formats (JSON, syslog, plain text)
- Familiarity with the ELK Stack (Elasticsearch, Logstash, Kibana)
- Basic scripting skills (especially JSON and regular expressions)
- Networking basics (TCP/UDP, ports, protocols)
Optional but helpful
- Experience with Elasticsearch and Kibana
- Familiarity with YAML and config files
- Knowledge of Beats (e.g., Filebeat) for log shipping
What You Will Learn
1. Introduction to Logstash and ELK Stack
2. Installing and setting up Logstash
3. Understanding Logstash architecture (Input → Filter → Output)
4. Creating and configuring pipelines
5. Using input plugins (File, Beats, Syslog, Kafka, etc.)
6. Applying filter plugins (grok, mutate, json, date, etc.)
7. Using output plugins (Elasticsearch, stdout, file, etc.)
8. Parsing structured and unstructured logs
9. Testing and debugging pipelines
10. Performance tuning and best practices
11. Integrating with Beats and Elasticsearch
12. Real-world use cases and hands-on examples