Skip to main contentSkip to main content
Room Banner
Back to all walkthroughs
Room Icon

Elastic: Using Logstash

Premium room

Learn how to collect, process, and transform data with Logstash.

medium

60 min

12,062

User profile photo.
User profile photo.
User profile photo.

To access material, start machines and answer questions login.

Elastic's (opens in new tab) is an open-source data processing engine that allows you to collect, enrich, and transform data from different sources. It is often used alongside other tools in the Elastic Stack, such as and , to create a complete data processing and visualization pipeline. In this room, we will explore in-depth and how data from different sources can be ingested, parsed, normalized, and sent to various outputs.

Learning Objectives

  • Install and configure
  • Explore various input, filter, and output plugins for
  • Use Grok plugins to parse and normalize unstructured data
  • Use to ingest, filter, and send authentication logs to

Room Prerequisites

Some familiarity with the command line, navigating , and log analysis is recommended. However, all required commands and necessary information are provided in the walkthrough.

Lab Access

Click the Start Machine button below. The machine will start in Split-Screen mode. You will have access to all necessary files in the /home/ubuntu/Downloads directory, and Kibana can be accessed via the Elastic shortcut on the machine's desktop with the credentials below. We recommend switching to Full Screen mode for a more immersive experience. This provides a larger workspace, making it easier to manage the terminal and browser as you progress through the room.

  • username: elastic
  • password: pn00IuML9u43_yKb688y

Set up your virtual environment

To successfully complete this room, you'll need to set up your virtual environment. This involves starting the Target Machine, ensuring you're equipped with the necessary tools and access to tackle the challenges ahead.
Target machine
Status:Off
Answer the questions below

I understand the learning objectives and am ready to learn about Logstash!

Ready to learn Cyber Security?

The Elastic: Using Logstash room is only available for premium users. Signup now to access more than 500 free rooms and learn cyber security through a fun, interactive learning environment.

Already have an account? Log in

We use cookies to ensure you get the best user experience. For more information see our cookie policy.