Elasticsearch & Full Text Search Systems · บทเรียน

Beats สำหรับการส่งข้อมูลน้ำหนักเบา

ทำความรู้จักตระกูล Beats ของตัวส่งข้อมูลน้ำหนักเบา ซึ่งส่งบันทึก ตัวชี้วัด และข้อมูลอื่นไปยัง Elasticsearch หรือ Logstash โดยใช้ทรัพยากรน้อยที่สุด

บทเรียน 4 จาก 413 ขั้นตอน

Beats สำหรับการส่งข้อมูลน้ำหนักเบา เป็นบทเรียน Elasticsearch & Full Text Search Systems ฟรีบน CoddyKit นี่คือบทเรียนที่ 4 จากทั้งหมด 4 บทเรียน คุณสามารถอ่านบทเรียนทั้งหมดด้านล่างฟรี — จากนั้นลองปฏิบัติด้วยตัวคุณเองในเบราว์เซอร์พร้อมตัวแก้ไขโค้ดในตัวและติวเตอร์ AI ตลอด 24/7 บทเรียนนี้เป็นส่วนหนึ่งของเส้นทางการเรียน Elasticsearch & Full Text Search Systems และความก้าวหน้าของคุณจะซิงค์ข้ามเว็บและแอป CoddyKit คอร์ส Elasticsearch & Full Text Search Systems มีบทเรียนทั้งหมด 4 บทเรียน

บางส่วนของบทเรียนนี้ยังไม่ได้รับการแปล และแสดงเป็นภาษาอังกฤษ

The Last Mile of Ingestion

Logstash is powerful but heavy. To collect data right at the source (a server, container, or device) Elastic offers Beats: small, single-purpose agents written in Go that ship data efficiently.

What Beats Are

Each Beat focuses on one job and runs as a tiny resident process with a low memory footprint, making it safe to deploy on thousands of machines simultaneously.

Filebeat

Filebeat tails log files and forwards each line. It tracks read offsets so it resumes correctly after a restart and never loses or duplicates lines under normal operation.

filebeat.inputs:
  - type: log
    paths:
      - /var/log/nginx/*.log

Metricbeat

Metricbeat collects system and service metrics: CPU, memory, disk, plus modules for databases, web servers, and more. It samples on an interval and ships structured metric events.

metricbeat.modules:
  - module: system
    metricsets: [cpu, memory]
    period: 10s

Other Beats

The family includes Packetbeat (network traffic), Heartbeat (uptime monitoring), Auditbeat (audit data), and Winlogbeat (Windows event logs). You pick the Beat that matches your data.

Output Destinations

Beats can ship directly to Elasticsearch for simple pipelines, or to Logstash when you need heavy parsing and enrichment before storage.

output.elasticsearch:
  hosts: ['localhost:9200']

Modules and Dashboards

Beats modules come with prebuilt parsing, index templates, and Kibana dashboards. Enabling the nginx module instantly gives you parsed access logs and ready-made visualizations.

filebeat modules enable nginx

Ingest Pipelines

When shipping straight to Elasticsearch, Beats can invoke ingest pipelines on the cluster to parse and transform data, replacing much of Logstash for simpler cases.

Back-Pressure Handling

If the output is slow or down, Beats apply back-pressure and slow their reads rather than dropping data. Filebeat keeps its position in the file until delivery is acknowledged.

Beats vs Logstash

A common architecture uses Beats at the edge for collection and Logstash centrally for transformation: Beats collect, Logstash processes, Elasticsearch stores. Use Beats alone when no heavy parsing is needed.

Elastic Agent

The newer Elastic Agent unifies multiple Beats into a single managed agent controlled by Fleet, simplifying large deployments. The underlying Beats concepts still apply.

Quick Check

Test your understanding of Beats.

Recap

You learned about lightweight data shippers:

  • Beats are small Go agents, each focused on one data type.
  • Filebeat ships logs; Metricbeat ships metrics; others cover network, uptime, and Windows events.
  • Beats output to Elasticsearch or Logstash and ship prebuilt modules and dashboards.
  • They apply back-pressure to avoid data loss, and Elastic Agent unifies them under Fleet.
เริ่มต้นได้ฟรี

เรียนรู้ Elasticsearch & Full Text Search Systems ด้วย AI tutor — ฟรี

เขียนและเรียกใช้โค้ดจริงในเบราว์เซอร์ของคุณ รับความช่วยเหลือทันทีจาก AI tutor 24/7 และเรียนรู้ต่อจากที่คุณหยุดบนเว็บหรือในแอป

คอร์ส
12
บทเรียน
48

คำถามที่พบบ่อย

บทเรียน “Beats สำหรับการส่งข้อมูลน้ำหนักเบา” ฟรีหรือไม่

ใช่ — ข้อความเต็มของ “Beats สำหรับการส่งข้อมูลน้ำหนักเบา” ฟรีให้อ่านที่นี่บนเว็บ เพื่อปฏิบัติแบบโต้ตอบ (ตัวแก้ไขโค้ดในตัวและติวเตอร์ AI ตลอด 24/7) และปลดล็อคส่วนที่เหลือของคอร์ส Elasticsearch & Full Text Search Systems ให้อัปเกรดเป็น CoddyKit PRO คอร์ส Elasticsearch & Full Text Search Systems มีบทเรียนทั้งหมด 4 บทเรียน

คุณจะเรียนรู้อะไรในบทเรียน “Beats สำหรับการส่งข้อมูลน้ำหนักเบา”

ทำความรู้จักตระกูล Beats ของตัวส่งข้อมูลน้ำหนักเบา ซึ่งส่งบันทึก ตัวชี้วัด และข้อมูลอื่นไปยัง Elasticsearch หรือ Logstash โดยใช้ทรัพยากรน้อยที่สุด คุณปฏิบัติ Elasticsearch & Full Text Search Systems ด้วยโค้ดที่ใช้งานได้จริงที่คุณเรียกใช้โดยตรงในเบราว์เซอร์ และติวเตอร์ AI ตลอด 24/7 ตอบคำถามของคุณขณะที่คุณไปผ่านบทเรียน

คุณต้องมีประสบการณ์ก่อนที่จะเริ่มเรียน Elasticsearch & Full Text Search Systems หรือไม่

ไม่จำเป็นต้องมีประสบการณ์มาก่อน Elasticsearch & Full Text Search Systems บน CoddyKit ออกแบบมาสำหรับผู้เริ่มต้นไปจนถึงผู้เรียนขั้นสูง คุณสามารถเริ่มต้นที่นี่หรือเริ่มจากตัวแรกและเรียนด้วยความเร็วของคุณเอง นี่คือบทเรียนที่ 4 จากทั้งหมด 4 บทเรียน

บทเรียน “Beats สำหรับการส่งข้อมูลน้ำหนักเบา” ใช้เวลานานแค่ไหน

บทเรียน CoddyKit ส่วนใหญ่ใช้เวลาประมาณ 5–10 นาที แต่ละบทเรียนจึงสั้นและเป็นแบบโต้ตอบ คุณสามารถก้าวหน้าอย่างต่อเนื่องและกลับมาเรียนต่อจากตรงที่เพิ่งหยุดบนเว็บและแอปได้เลย

ฉันเขียนและรันโค้ดในบทเรียน Elasticsearch & Full Text Search Systems นี้ได้ไหม

ได้ บทเรียน Elasticsearch & Full Text Search Systems ทุกบทมีตัวแก้ไขโค้ดในตัว คุณจึงเขียนและรันโค้ดจริงได้เลยในเบราว์เซอร์ และได้รับข้อเสนอแนะจาก AI ในทันที — ไม่ต้องติดตั้งในเครื่องของคุณ

บทเรียนทั้งหมดในหลักสูตรนี้

  1. Kibana สำหรับการแสดงภาพ
  2. Logstash สำหรับการรับข้อมูล
  3. การเชื่อมต่อกับแอปพลิเคชัน (ไคลเอ็นต์)
  4. Beats สำหรับการส่งข้อมูลน้ำหนักเบา
← กลับไปที่ Elasticsearch & Full Text Search Systems