From the course: Learning the Elastic Stack (2020)

Unlock the full course today

Join today to access over 22,600 courses taught by industry experts or purchase this course individually.

Explore GrokConstructor

Explore GrokConstructor - Elastic Stack Tutorial

From the course: Learning the Elastic Stack (2020)

Start my 1-month free trial

Explore GrokConstructor

- [Instructor] In this lesson we'll be doing some hands-on exercises to build grok filters. To start open a web browser and go to grokconstructor.appspot.com. A couple of notes about this site, Grok Constructor is a free open source web-based tool for building grok filter expressions. The author hosts a copy of it on Appspot, but you can easily run it yourself using Docker or a .war file and there are instructions in the GitHub repository for doing that. Even if you don't use this tool at all, it's a pretty good way of exploring how grok filters work. I find the site to be a little bit text heavy so I'm going to point out the important things. Don't worry about trying to read everything on the screen. In the top menu here, click on Incremental Construction. On this page, there's a button to the right here that says random example. Go ahead and click that and in the URL bar, if it doesn't say example equals two, change that to example two. Or you can just keep clicking the button until…

Contents