RousselTMLEARNING

Observabilité · Courses

Beats: From Discovery to Expertise

Discover everything you need to know about the deployment, configuration, and administration of Beats. Master the collection of metrics, logs...

3 chapters9 lessonsEN
At your pace, through practice.

LEARNING PATH

Course curriculum

0Course Overview1 lessons
1Introduction8 lessons
2Going Further0 lessons

LEARN BY DOING

Use cases & applications

Filebeat

Send logs from local servers to Logstash or Elasticsearch.

Metricbeat

Monitor the health (CPU, RAM, Disk) of servers.

Winlogbeat

Collect Windows security events.

Packetbeat

Intercept and analyze network traffic.

Elastic Agent

Simplify massive agent deployment with Fleet.

Client-side Filtering

Transform and filter data on the client side before sending it to Elasticsearch.

Frequently asked questions

What are Beats?

They are lightweight agents from the Elastic stack installed on servers to collect data.

Filebeat vs Logstash?

Filebeat collects and sends logs in a lightweight way, while Logstash is a heavy transformation engine.

What is Metricbeat?

An agent dedicated to collecting system and service metrics.

Beats or Elastic Agent?

Elastic Agent is the new unified solution intended to replace individual Beats.

What is Fleet?

The centralized interface in Kibana for configuring and updating Elastic Agents at scale.

Do they work on Windows?

Yes, Winlogbeat is specifically designed for Windows event logs.

Where do they send the data?

Mainly to Elasticsearch or Logstash, but also to Kafka or Redis.

Do they consume a lot of resources?

No, they are written in Go and designed to be very lightweight.

What are modules?

Ready-to-use configurations for common systems (Nginx, MySQL) including dashboards.

Is the transport secure?

Yes, they support SSL/TLS encryption and authentication.