WARNING: Version 1.0.1 of Packetbeat has passed its EOL date.
This documentation is no longer being maintained and may be removed. If you are running this version, we strongly advise you to upgrade. For the latest information, see the current release documentation.
Running Packetbeat
edit
IMPORTANT: This documentation is no longer updated. Refer to Elastic's version policy and the latest documentation.
Running Packetbeat
editRun Packetbeat by issuing the following command:
deb:
sudo /etc/init.d/packetbeat start
rpm:
sudo /etc/init.d/packetbeat start
mac:
sudo ./packetbeat -e -c packetbeat.yml -d "publish"
win:
PS C:\Program Files\Packetbeat> Start-Service packetbeat
By default the log files are stored in C:\ProgramData\packetbeat\Logs
.