我已经使用 elasticsearch 和 Kibana 以及 nginx 设置了流畅的界面。我按照说明操作,当我访问 http:/192.168.10.25:8888 时,我收到以下消息
400 错误请求 需要“json”或“msgpack”参数
以下是我的 fluent.conf
## built-in TCP input
## $ echo <json> | fluent-cat <tag>
<source>
type forward
</source>
## built-in UNIX socket input
#<source>
# type unix
#</source>
# HTTP input
# http://localhost:8888/<tag>?json=<json>
<source>
type http
port 8888
bind 0.0.0.0
body_size_limit 32m
keepalive_timeout 10s
</source>
# collect the dmesg output
<source>
type syslog
port 42185
tag system
</source>
# collect tail with: echo '{"event":"event-123","duration":2700}' >> /var/log/example.log
# Fluentd user need read permission on .log and r/w permission on .pos
<source>
type tail
path /var/log/example.log
pos_file /var/log/example.log.pos # to store last read position
tag personal.example
format json
</source>
## File input
## read apache logs with tag=apache.access
#<source>
# type tail
# format apache
# path /var/log/httpd-access.log
# tag apache.access
#</source>
# Listen HTTP for monitoring
# http://localhost:24220/api/plugins
# http://localhost:24220/api/plugins?type=TYPE
# http://localhost:24220/api/plugins?tag=MYTAG
<source>
type monitor_agent
port 24220
</source>
# Listen DRb for debug
<source>
type debug_agent
port 24230
</source>
## match tag=apache.access and write to file
#<match apache.access>
# type file
# path /var/log/fluent/access
#</match>
# events stored on Elastic Search
<match personal.**>
type elasticsearch
logstash_format true
flush_interval 10s # for testing
include_tag_key true
tag_key _key
</match>
## match tag=debug.** and dump to console
<match debug.**>
type stdout
</match>
# match tag=system.** and forward to another fluent server
<match system.**>
type forward
<server>
host 192.168.0.11
</server>
<secondary>
<server>
host 192.168.0.12
</server>
</secondary>
</match>
## match tag=myapp.** and forward and write to file
#<match myapp.**>
# type copy
# <store>
# type forward
# buffer_type file
# buffer_path /var/log/fluent/myapp-forward
# retry_limit 50
# flush_interval 10s
# <server>
# host 192.168.0.13
# </server>
# </store>
# <store>
# type file
# path /var/log/fluent/myapp
# </store>
#</match>
## match fluent's internal events
#<match fluent.**>
# type null
#</match>
## match not matched logs and write to file
#<match **>
# type file
# path /var/log/fluent/else
# compress gz
#</match>
答案1
您的 Fluentd 配置正在运行。
出现消息“400 Bad Request 'json' or 'msgpack' param is required”是因为 in_http 发现您的 HTTP 请求(POST 或 GET)没有 json/msgpack 参数。
尝试做
curl -X POST -d 'json={"message":"hello"}'
看看是否继续看到相同的错误。
答案2
我遇到了和你报告的完全一样的问题,我尝试使用Httpie而不是curl
。从转储中可以看出它成功了。
> http --verbose --json POST localhost:8888/tag1.tag2 json={\"foo\":\"bar\"}
POST /ciro.ciro HTTP/1.1
Accept: application/json, */*
Accept-Encoding: gzip, deflate
Connection: keep-alive
Content-Length: 29
Content-Type: application/json
Host: localhost:9880
User-Agent: HTTPie/0.9.9
{
"json": "{\"foo\":\"bar\"}"
}
HTTP/1.1 200 OK
Connection: Keep-Alive
Content-Length: 0
Content-Type: text/plain