Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Pléifidh an t-alt seo an tionscadal nginx-log-bhailitheoir, a léifidh logaí nginx agus iad a sheoladh chuig braisle Clickhouse. De ghnáth úsáidtear ElasticSearch le haghaidh logaí. Éilíonn Clickhouse níos lú acmhainní (spás diosca, RAM, LAP). Taifeadann Clickhouse sonraí níos tapúla. Déanann Clickhouse sonraí a chomhbhrú, rud a fhágann go bhfuil na sonraí ar an diosca níos dlúithe fós. Tá na buntáistí a bhaineann le Clickhouse le feiceáil i 2 shleamhnán ón tuarascáil Conas a chuireann VK sonraí isteach i ClickHouse ó na mílte freastalaithe.

Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Chun anailísíocht a fheiceáil bunaithe ar logaí, cruthóimid painéal do Grafana.

Aon duine a bhfuil suim acu, fáilte romhat chuig cat.

Suiteáil nginx, grafana ar an mbealach caighdeánach.

Suiteáil braisle clickhouse ag baint úsáide as ansible-playbook ó Denis Proskurin.

Bunachair sonraí agus táblaí a chruthú i Clickhouse

Sa chás seo comhad Déantar cur síos ar cheisteanna SQL maidir le bunachair shonraí agus táblaí a chruthú do nginx-log-collector i Clickhouse.

Déanaimid gach iarratas ceann ar cheann ar gach freastalaí i mbraisle Clickhouse.

Nóta tábhachtach. Sa líne seo, ní mór logs_cluster a chur in ionad d'ainm braisle ón gcomhad clickhouse_remote_servers.xml idir "remote_servers" agus "shard".

ENGINE = Distributed('logs_cluster', 'nginx', 'access_log_shard', rand())

Suiteáil agus cumraíocht nginx-log-collector-rpm

Níl rpm ag Nginx-log-collector. Anseo https://github.com/patsevanton/nginx-log-collector-rpm cruthaigh rpm dó. rpm a thiomsú ag baint úsáide as Fedora Copr

Suiteáil an pacáiste rpm nginx-log-collector-rpm

yum -y install yum-plugin-copr
yum copr enable antonpatsev/nginx-log-collector-rpm
yum -y install nginx-log-collector
systemctl start nginx-log-collector

Cuir an config /etc/nginx-log-collector/config.yaml in eagar:

  .......
  upload:
    table: nginx.access_log
    dsn: http://ip-адрес-кластера-clickhouse:8123/

- tag: "nginx_error:"
  format: error  # access | error
  buffer_size: 1048576
  upload:
    table: nginx.error_log
    dsn: http://ip-адрес-кластера-clickhouse:8123/

Nginx a shocrú

Cumraíocht ghinearálta nginx:

user  nginx;
worker_processes  auto;

#error_log  /var/log/nginx/error.log warn;
pid        /var/run/nginx.pid;

events {
    worker_connections  1024;
}

http {
    include       /etc/nginx/mime.types;
    default_type  application/octet-stream;

    log_format  main  '$remote_addr - $remote_user [$time_local] "$request" '
                      '$status $body_bytes_sent "$http_referer" '
                      '"$http_user_agent" "$http_x_forwarded_for"';

    log_format avito_json escape=json
                     '{'
                     '"event_datetime": "$time_iso8601", '
                     '"server_name": "$server_name", '
                     '"remote_addr": "$remote_addr", '
                     '"remote_user": "$remote_user", '
                     '"http_x_real_ip": "$http_x_real_ip", '
                     '"status": "$status", '
                     '"scheme": "$scheme", '
                     '"request_method": "$request_method", '
                     '"request_uri": "$request_uri", '
                     '"server_protocol": "$server_protocol", '
                     '"body_bytes_sent": $body_bytes_sent, '
                     '"http_referer": "$http_referer", '
                     '"http_user_agent": "$http_user_agent", '
                     '"request_bytes": "$request_length", '
                     '"request_time": "$request_time", '
                     '"upstream_addr": "$upstream_addr", '
                     '"upstream_response_time": "$upstream_response_time", '
                     '"hostname": "$hostname", '
                     '"host": "$host"'
                     '}';

    access_log     syslog_server=unix:/var/run/nginx_log.sock,nohostname,tag=nginx avito_json; #ClickHouse
    error_log      syslog_server=unix:/var/run/nginx_log.sock,nohostname,tag=nginx_error; #ClickHouse

    #access_log  /var/log/nginx/access.log  main;

    proxy_ignore_client_abort on;
    sendfile        on;
    keepalive_timeout  65;
    include /etc/nginx/conf.d/*.conf;
}

Óstach fíorúil amháin:

vhost1.conf:

upstream backend {
    server ip-адрес-сервера-с-stub_http_server:8080;
    server ip-адрес-сервера-с-stub_http_server:8080;
    server ip-адрес-сервера-с-stub_http_server:8080;
    server ip-адрес-сервера-с-stub_http_server:8080;
    server ip-адрес-сервера-с-stub_http_server:8080;
}

server {
    listen   80;
    server_name vhost1;
    location / {
        proxy_pass http://backend;
    }
}

Cuir óstaigh fíorúil leis an gcomhad /etc/hosts:

ip-адрес-сервера-с-nginx vhost1

Aithriseoir freastalaí HTTP

Mar aithriseoir freastalaí HTTP úsáidfimid nódejs-stub-freastalaí ó Maxim Ignatenko

Níl rpm ag Nodejs-stub-server. Anseo https://github.com/patsevanton/nodejs-stub-server cruthaigh rpm dó. rpm a thiomsú ag baint úsáide as Fedora Copr

Suiteáil pacáiste nodejs-stub-server ar nginx rpm in aghaidh an tsrutha

yum -y install yum-plugin-copr
yum copr enable antonpatsev/nodejs-stub-server
yum -y install stub_http_server
systemctl start stub_http_server

Tástáil Strus

Déanaimid tástáil ag baint úsáide as tagarmharcáil Apache.

Suiteáil é:

yum install -y httpd-tools

Cuirimid tús le tástáil ag baint úsáide as tagarmharc Apache ó 5 fhreastalaithe éagsúla:

while true; do ab -H "User-Agent: 1server" -c 10 -n 10 -t 10 http://vhost1/; sleep 1; done
while true; do ab -H "User-Agent: 2server" -c 10 -n 10 -t 10 http://vhost1/; sleep 1; done
while true; do ab -H "User-Agent: 3server" -c 10 -n 10 -t 10 http://vhost1/; sleep 1; done
while true; do ab -H "User-Agent: 4server" -c 10 -n 10 -t 10 http://vhost1/; sleep 1; done
while true; do ab -H "User-Agent: 5server" -c 10 -n 10 -t 10 http://vhost1/; sleep 1; done

Suiteáil Grafana

Ní bhfaighidh tú painéal ar shuíomh Gréasáin oifigiúil Grafana.

Dá bhrí sin, déanfaimid é de láimh.

Is féidir leat teacht ar mo phainéal sábháilte anseo.

Ní mór duit freisin athróg tábla a chruthú leis an ábhar nginx.access_log.
Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Iarratas Iomlán Singlestat:

SELECT
 1 as t,
 count(*) as c
 FROM $table
 WHERE $timeFilter GROUP BY t

Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Iarratais ar Theip ar Singlestat:

SELECT
 1 as t,
 count(*) as c
 FROM $table
 WHERE $timeFilter AND status NOT IN (200, 201, 401) GROUP BY t

Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Céatadán Teip Singlestat:

SELECT
 1 as t, (sum(status = 500 or status = 499)/sum(status = 200 or status = 201 or status = 401))*100 FROM $table
 WHERE $timeFilter GROUP BY t

Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Am Freagartha Meán Fómhair Singlestat:

SELECT
 1, avg(request_time) FROM $table
 WHERE $timeFilter GROUP BY 1

Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Am Freagartha Singlestat Max:

SELECT
 1 as t, max(request_time) as c
 FROM $table
 WHERE $timeFilter GROUP BY t

Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Stádas an Áirimh:

$columns(status, count(*) as c) from $table

Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Chun sonraí cosúil le pie a aschur, ní mór duit an breiseán a shuiteáil agus grafana a atosú.

grafana-cli plugins install grafana-piechart-panel
service grafana-server restart

Stádas Píosa BARR 5:

SELECT
    1, /* fake timestamp value */
    status,
    sum(status) AS Reqs
FROM $table
WHERE $timeFilter
GROUP BY status
ORDER BY Reqs desc
LIMIT 5

Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Ina theannta sin tabharfaidh mé iarratais gan scáileáin scáileáin:

Áireamh http_user_agent:

$columns(http_user_agent, count(*) c) FROM $table

Ráta Mhaith/Drochráta:

$rate(countIf(status = 200) AS good, countIf(status != 200) AS bad) FROM $table

Am Freagartha:

$rate(avg(request_time) as request_time) FROM $table

Am freagartha in aghaidh an tsrutha (1ú am freagartha in aghaidh an tsrutha):

$rate(avg(arrayElement(upstream_response_time,1)) as upstream_response_time) FROM $table

Stádas Comhairimh Tábla do gach vhost:

$columns(status, count(*) as c) from $table

Radharc ginearálta ar an deais

Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Comparáid idir meánlíon() agus cainníocht()

meánlíon()
Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse
cainníocht()
Fóntas Nginx-log-collector ó Avito chun logaí nginx a sheoladh chuig Clickhouse

Conclúid:

Tá súil agam go mbeidh an pobal páirteach i bhforbairt/tástáil agus úsáid nginx-log-collector.
Agus nuair a chuireann duine nginx-log-collector i bhfeidhm, inseoidh siad duit cé mhéad a shábháil siad ar dhiosca, RAM, agus LAP.

Cainéil teileagram:

Milleasoicindí:

Cé acu is ábhar milleasoicindí, scríobh nó vótáil ann eisiúint.

Foinse: will.com

Add a comment