Setup & Configuration

The Elasticsearch module is included with the Atatus Infra agent by default, please follow the below steps to enable.

  1. Add the following lines in the file /etc/atatus-infra-agent/atatus.yml.

    copy
    icon/buttons/copy
    logs_enabled: true
    
  2. Copy the Elasticsearch example configuration file.

    copy
    icon/buttons/copy
    cd /etc/atatus-infra-agent/conf.d/elasticsearch.d/
    sudo cp elasticsearch.yml.template elasticsearch.yml
    
  3. Update the file /etc/atatus-infra-agent/conf.d/elasticsearch.d/elasticsearch.yml with below configurations.

    copy
    icon/buttons/copy
    #Log section
    logs:
    
      # - type : (mandatory) type of log input source (audit / deprecation / gc / server / slowlog)
    
      - type: audit
      - type: deprecation
      - type: gc
      - type: server
      - type: slowlog
    
  4. Restart the atatus infrastructure agent.

    copy
    icon/buttons/copy
    sudo service atatus-infra-agent restart