flume配置采集日志

上传dir-hdfs.conf 到flume的conf目录下:

#定义三大组件的名称
ag1.sources = source1
ag1.sinks = sink1
ag1.channels = channel1

配置source组件

ag1.sources.source1.type = spooldir
ag1.sources.source1.spoolDir = /opt/2019-1
ag1.sources.source1.fileSuffix=.FINISHED
ag1.sources.source1.deserializer.maxLineLength=5120

配置sink组件

ag1.sinks.sink1.type = hdfs
ag1.sinks.sink1.hdfs.path =hdfs://master:9000/access_log/%y-%m-%d/%H-%M
ag1.sinks.sink1.hdfs.filePrefix = app_log
ag1.sinks.sink1.hdfs.fileSuffix = .log
ag1.sinks.sink1.hdfs.batchSize= 100
ag1.sinks.sink1.hdfs.fileType = DataStream
ag1.sinks.sink1.hdfs.writeFormat =Text

roll:滚动切换:控制写文件的切换规则

按文件体积(字节)来切

ag1.sinks.sink1.hdfs.rollSize = 512000

按event条数切

ag1.sinks.sink1.hdfs.rollCount = 1000000

按时间间隔切换文件

ag1.sinks.sink1.hdfs.rollInterval = 60

控制生成目录的规则

ag1.sinks.sink1.hdfs.round = true
ag1.sinks.sink1.hdfs.roundValue = 10
ag1.sinks.sink1.hdfs.roundUnit = minute

ag1.sinks.sink1.hdfs.useLocalTimeStamp = true

channel组件配置

ag1.channels.channel1.type = memory
ag1.channels.channel1.capacity = 500000 ## event条数
ag1.channels.channel1.transactionCapacity = 600 ##flume事务控制所需要的缓存容量600条event

绑定source、channel和sink之间的连接

ag1.sources.source1.channels = channel1
ag1.sinks.sink1.channel = channel1

采集日志

配置好后,进入bin目录
/flume-ng agent 空格-c /usr/local/flume-1.8.o-bin/conf 空格-f /usr/local/flume-1.8.o-bin/conf/dir-hdfs.conf 空格-n ag1 -Dflume.root.logger=INFO,console
-c 或者–conf 后跟配置目录
-f 或者–conf-file 后跟具体的配置文件
-n 或者–name 指定agent的名称

后台运行flume:前面加一个nohup空格. 后面加一个&
nohup ./flume-ng agent -c /usr/local/flume-1.8.o-bin/conf -f /usr/local/flume-1.8.o-bin/conf/dir-hdfs.conf -n ag1 -Dflume.root.logger=INFO,console &

猜你喜欢

转载自blog.csdn.net/qq_43617838/article/details/86472039