Beats لنقل البيانات بخفة
تعرّف إلى عائلة Beats من أدوات النقل خفيفة الوزن التي ترسل السجلات والمقاييس والبيانات الأخرى إلى Elasticsearch أو Logstash بأقل أثر ممكن.
Beats لنقل البيانات بخفة درس مجاني في Elasticsearch & Full Text Search Systems على CoddyKit. هذا هو الدرس 4 من أصل 4. يمكنك قراءة الدرس كاملاً أدناه مجاناً — ثم تمرن عليه مباشرة في المتصفح باستخدام محرر أكواد مدمج ومدرس ذكاء اصطناعي متاح 24/7. هذا الدرس جزء من مسار التعلم في Elasticsearch & Full Text Search Systems، وتقدمك يتزامن عبر الويب وتطبيق CoddyKit. تتضمن دورة Elasticsearch & Full Text Search Systems 4 دروس في المجموع.
بعض أجزاء هذا الدرس لم تُترجم بعد وتظهر باللغة الإنجليزية.
The Last Mile of Ingestion
Logstash is powerful but heavy. To collect data right at the source (a server, container, or device) Elastic offers Beats: small, single-purpose agents written in Go that ship data efficiently.
What Beats Are
Each Beat focuses on one job and runs as a tiny resident process with a low memory footprint, making it safe to deploy on thousands of machines simultaneously.
Filebeat
Filebeat tails log files and forwards each line. It tracks read offsets so it resumes correctly after a restart and never loses or duplicates lines under normal operation.
filebeat.inputs:
- type: log
paths:
- /var/log/nginx/*.logMetricbeat
Metricbeat collects system and service metrics: CPU, memory, disk, plus modules for databases, web servers, and more. It samples on an interval and ships structured metric events.
metricbeat.modules:
- module: system
metricsets: [cpu, memory]
period: 10sOther Beats
The family includes Packetbeat (network traffic), Heartbeat (uptime monitoring), Auditbeat (audit data), and Winlogbeat (Windows event logs). You pick the Beat that matches your data.
Output Destinations
Beats can ship directly to Elasticsearch for simple pipelines, or to Logstash when you need heavy parsing and enrichment before storage.
output.elasticsearch:
hosts: ['localhost:9200']Modules and Dashboards
Beats modules come with prebuilt parsing, index templates, and Kibana dashboards. Enabling the nginx module instantly gives you parsed access logs and ready-made visualizations.
filebeat modules enable nginxIngest Pipelines
When shipping straight to Elasticsearch, Beats can invoke ingest pipelines on the cluster to parse and transform data, replacing much of Logstash for simpler cases.
Back-Pressure Handling
If the output is slow or down, Beats apply back-pressure and slow their reads rather than dropping data. Filebeat keeps its position in the file until delivery is acknowledged.
Beats vs Logstash
A common architecture uses Beats at the edge for collection and Logstash centrally for transformation: Beats collect, Logstash processes, Elasticsearch stores. Use Beats alone when no heavy parsing is needed.
Elastic Agent
The newer Elastic Agent unifies multiple Beats into a single managed agent controlled by Fleet, simplifying large deployments. The underlying Beats concepts still apply.
Quick Check
Test your understanding of Beats.
Recap
You learned about lightweight data shippers:
- Beats are small Go agents, each focused on one data type.
- Filebeat ships logs; Metricbeat ships metrics; others cover network, uptime, and Windows events.
- Beats output to Elasticsearch or Logstash and ship prebuilt modules and dashboards.
- They apply back-pressure to avoid data loss, and Elastic Agent unifies them under Fleet.
الأسئلة الشائعة
هل درس «Beats لنقل البيانات بخفة» مجاني؟
نعم — نص درس «Beats لنقل البيانات بخفة» كامل متاح مجاناً هنا على الويب. لتمرينه بشكل تفاعلي (محرر أكواد مدمج ومدرس ذكاء اصطناعي متاح 24/7) وفتح باقي دورة Elasticsearch & Full Text Search Systems، انتقل إلى CoddyKit PRO. تتضمن دورة Elasticsearch & Full Text Search Systems 4 دروس في المجموع.
ماذا ستتعلم في «Beats لنقل البيانات بخفة»؟
تعرّف إلى عائلة Beats من أدوات النقل خفيفة الوزن التي ترسل السجلات والمقاييس والبيانات الأخرى إلى Elasticsearch أو Logstash بأقل أثر ممكن. تتمرن على Elasticsearch & Full Text Search Systems مع أكواد عملية تشغلها مباشرة في المتصفح، ومدرس ذكاء اصطناعي متاح 24/7 يجيب على أسئلتك أثناء عملك.
هل أحتاج إلى خبرة سابقة لأبدأ Elasticsearch & Full Text Search Systems؟
لا تُشترط خبرة سابقة. Elasticsearch & Full Text Search Systems على CoddyKit منظم للمبتدئين حتى المتقدمين، لذا يمكنك البدء من هنا أو من البداية والتقدم بسرعتك الخاصة. هذا هو الدرس 4 من أصل 4.
كم من الوقت يستغرق درس «Beats لنقل البيانات بخفة»؟
معظم دروس CoddyKit تستغرق حوالي 5–10 دقائق. كل منها موجز وتفاعلي، لذا تحرز تقدماً مستمراً وتستأنف من حيث توقفت عبر الويب والتطبيق.
هل يمكنني كتابة وتشغيل أكواد في درس Elasticsearch & Full Text Search Systems هذا؟
نعم. كل درس في Elasticsearch & Full Text Search Systems يتضمن محرر أكواد مدمج، لذا تكتب وتشغل أكواداً حقيقية مباشرة في متصفحك وتحصل على تعليقات فورية من الذكاء الاصطناعي — بدون إعداد محلي.
جميع الدروس في هذه الدورة
- Kibana للتصور
- Logstash لإدخال البيانات
- التكامل مع التطبيقات (العملاء)
- Beats لنقل البيانات بخفة