EFK (elasticsearch+fluentd+kibana) with docker
first, build fluentd image that contains elasticsearch plugin.
docker build --tag fluentd:es fluentd/
and then, docker compose up
docker-compose up
set maximum number of memory map areas a process may have.
sysctl -w vm.max_map_count=262144
<source>
~~ setting ~~
</source>
<match changeme>
@type forward
send_timeout 60s
<server>
name logserver
host 127.0.0.1
port 24224
weight 60
</server>
</match>