To access material, start machines and answer questions login.
Elastic's (opens in new tab) is an open-source data processing engine that allows you to collect, enrich, and transform data from different sources. It is often used alongside other tools in the Elastic Stack, such as and , to create a complete data processing and visualization pipeline. In this room, we will explore in-depth and how data from different sources can be ingested, parsed, normalized, and sent to various outputs.
Learning Objectives
- Install and configure
- Explore various input, filter, and output plugins for
- Use Grok plugins to parse and normalize unstructured data
- Use to ingest, filter, and send authentication logs to
Room Prerequisites
Some familiarity with the command line, navigating , and log analysis is recommended. However, all required commands and necessary information are provided in the walkthrough.
-
Check out Elastic Stack: The Basics for an overview of Elastic architecture, running queries, and creating visualizations
Lab Access
Click the Start Machine button below. The machine will start in Split-Screen mode. You will have access to all necessary files in the /home/ubuntu/Downloads directory, and Kibana can be accessed via the Elastic shortcut on the machine's desktop with the credentials below. We recommend switching to Full Screen mode for a more immersive experience. This provides a larger workspace, making it easier to manage the terminal and browser as you progress through the room.
- username:
elastic - password:
pn00IuML9u43_yKb688y
Set up your virtual environment
I understand the learning objectives and am ready to learn about Logstash!
Ready to learn Cyber Security?
The Elastic: Using Logstash room is only available for premium users. Signup now to access more than 500 free rooms and learn cyber security through a fun, interactive learning environment.
Already have an account? Log in
