# Grafana and graylog 3

**URL:** <https://community.graylog.org/t/grafana-and-graylog-3/11266>\
**Category:** Graylog Central (peer support)\
**Created:** [July 19, 2019, 9:14am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266 "2019-07-19T09:14:48Z")\
**Posts on this page:** 20\
**Page:** 1

<div class="post-metadata">

**Author:** ![Louis86](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/louis86/32/4752_2.png) [@Louis86](https://community.graylog.org/u/Louis86)\
**Post date:** [July 19, 2019, 9:14am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/1 "2019-07-19T09:14:48Z")

</div>

Hello,

It is possible to show on grafana all the data from Graylog 3 ?

And how to do it ?

Thank you,

---

<div class="post-metadata">

**Author:** ![annguyen0907](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/annguyen0907/32/4617_2.png) [@annguyen0907](https://community.graylog.org/u/annguyen0907)\
**Post date:** [July 19, 2019, 9:27am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/2 "2019-07-19T09:27:25Z")

</div>

Yes, it’s possible. Just use telegraf influxdb to solve it.

---

<div class="post-metadata">

**Author:** ![Louis86](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/louis86/32/4752_2.png) [@Louis86](https://community.graylog.org/u/Louis86)\
**Post date:** [July 19, 2019, 9:33am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/3 "2019-07-19T09:33:50Z")

</div>

how to do this , as I install grafana in another computer , and graylog in the other PC ,

Thank you ,

---

<div class="post-metadata">

**Author:** ![annguyen0907](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/annguyen0907/32/4617_2.png) [@annguyen0907](https://community.graylog.org/u/annguyen0907)\
**Post date:** [July 19, 2019, 9:36am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/4 "2019-07-19T09:36:41Z")

</div>

try to find out and come up here to ask the problem

---

<div class="post-metadata">

**Author:** ![Louis86](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/louis86/32/4752_2.png) [@Louis86](https://community.graylog.org/u/Louis86)\
**Post date:** [July 19, 2019, 9:41am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/5 "2019-07-19T09:41:41Z")

</div>

I upload this dashboard graylog json to grafana

but he said no data found in influxdb

thank you

---

<div class="post-metadata">

**Author:** ![annguyen0907](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/annguyen0907/32/4617_2.png) [@annguyen0907](https://community.graylog.org/u/annguyen0907)\
**Post date:** [July 19, 2019, 10:04am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/6 "2019-07-19T10:04:45Z")

</div>

:))  
Install Telegarf, InfluxDB  
Try setup it manually and you’ll notice the problem

---

<div class="post-metadata">

**Author:** ![Louis86](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/louis86/32/4752_2.png) [@Louis86](https://community.graylog.org/u/Louis86)\
**Post date:** [July 19, 2019, 10:26am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/7 "2019-07-19T10:26:48Z")

</div>

I finish to install telegraph and influx DB but I don’t know how to configure telegraf/graylog.conf ?

how to know the username and password as a token ?

thank you

---

<div class="post-metadata">

**Author:** ![annguyen0907](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/annguyen0907/32/4617_2.png) [@annguyen0907](https://community.graylog.org/u/annguyen0907)\
**Post date:** [July 20, 2019, 5:07am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/8 "2019-07-20T05:07:08Z")

</div>

Reading docs and create one.

Then you must copy x and paste for username token  
 ![image](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/2X/c/cb73bbbdde70da6fc7836cf881ca114fa75cb6da.png)

---

<div class="post-metadata">

**Author:** ![Louis86](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/louis86/32/4752_2.png) [@Louis86](https://community.graylog.org/u/Louis86)\
**Post date:** [July 20, 2019, 9:30am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/9 "2019-07-20T09:30:05Z")

</div>

And how about password token ?

thank you

---

<div class="post-metadata">

**Author:** ![annguyen0907](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/annguyen0907/32/4617_2.png) [@annguyen0907](https://community.graylog.org/u/annguyen0907)\
**Post date:** [July 20, 2019, 11:59am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/10 "2019-07-20T11:59:26Z")

</div>

password default: tokens

---

<div class="post-metadata">

**Author:** ![maniel](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/maniel/32/58_2.png) [@maniel](https://community.graylog.org/u/maniel)\
**Post date:** [July 22, 2019, 11:47am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/11 "2019-07-22T11:47:53Z")

</div>

just to be clear: you need telegraf and api tokens to collect graylog metrics (like those available after clicking metrics by the node name on nodes list) in influxdb and display them in grafana, you don’t need those if you want to display data collected by graylog (logs) in elasticsearch, then you just connect grafana to ES data source and that’s it, then you can visualize data on the graphs like you do in graylog dashboards or kibana

---

<div class="post-metadata">

**Author:** ![BlueTeamNinja](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/blueteamninja/32/11535_2.png) [@BlueTeamNinja](https://community.graylog.org/u/BlueTeamNinja)\
**Post date:** [July 22, 2019, 4:53pm UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/12 "2019-07-22T16:53:10Z")

</div>

Maybe a better question is _what are you trying to show on Grafana_ ?

If you are trying to show the log data, and not the server statistics (which is what Telegraf + InfluxDB would be used for) - then you literally just add the Graylog server as an input like @maniel said. Grafana supports elasticsearch right out of the box.

In fact, that’s exactly how I distribute my reports to the higher-ups. To go a step further, I added an organization in Grafana that allows anonymous RO access and I share a ‘last 30 days’ dashboard in Kiosk mode - with a cron job that sends an HTML-formatted fancy email. Most people think I’ve spent \>$100K on an analytics platform. 🙂

Just add something like `&refresh=5s&from=now-30d&to=now&theme=light&kiosk=tv` onto your grafana url to:

- Refresh the dashboard every 5 seconds
- Show last 30 days (this way the numbers move around live)
- Kiosk Mode (TV)

Maybe I should do another blog post on this one.

You can check the grafana docs for more.

 ![image](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/2X/3/3bd27a8a7b94f316e630dfc0de3ab756e86abacc.png)

---

<div class="post-metadata">

**Author:** ![Louis86](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/louis86/32/4752_2.png) [@Louis86](https://community.graylog.org/u/Louis86)\
**Post date:** [July 23, 2019, 10:48am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/13 "2019-07-23T10:48:21Z")

</div>

Good Morning,

Thank you for the response , I wan to show the Map , the statistic during two hours all the log from fortinet , I would Like to create a stuff like fotianalyzer by using graylog and grafana .

Thank you,

 ![grafana](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/2X/4/4bd805b03f7c9c3d3de0647ebf7d1474395723f2.jpeg)

 ![Grafana%20Http404%20not%20found](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/2X/a/a27deec058651d608aa7ab4707a01710a10bd753.jpeg)

---

<div class="post-metadata">

**Author:** ![BlueTeamNinja](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/blueteamninja/32/11535_2.png) [@BlueTeamNinja](https://community.graylog.org/u/BlueTeamNinja)\
**Post date:** [July 23, 2019, 12:04pm UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/14 "2019-07-23T12:04:19Z")

</div>

From your screenshots it looks like you’ve got the input working AFAIK. If it saves and tests OK now you’re on to the grafana forums to figure out what you need on that tool. 🙂

---

<div class="post-metadata">

**Author:** ![Louis86](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/louis86/32/4752_2.png) [@Louis86](https://community.graylog.org/u/Louis86)\
**Post date:** [July 23, 2019, 12:08pm UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/15 "2019-07-23T12:08:33Z")

</div>

> [@BlueTeamNinja](#):
>
> From your screenshots it looks like you’ve got the input working AFAIK. If it saves and tests OK now you’re on to the grafana forums to figure out what you need on that tool

the problem is that I don’t receive any log after I connect to elasticsearch.

Thanks

---

<div class="post-metadata">

**Author:** ![Louis86](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/louis86/32/4752_2.png) [@Louis86](https://community.graylog.org/u/Louis86)\
**Post date:** [July 24, 2019, 9:31am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/16 "2019-07-24T09:31:02Z")

</div>

Hello,

Grafana and Graylog are in different Host , what should I do ? to show the log from elasticsearch to Grafana

Thank you,

---

<div class="post-metadata">

**Author:** ![annguyen0907](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/annguyen0907/32/4617_2.png) [@annguyen0907](https://community.graylog.org/u/annguyen0907)\
**Post date:** [July 24, 2019, 12:17pm UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/17 "2019-07-24T12:17:06Z")

</div>

InfluxDB and Telegraf, where is it ??

If you want Elasticsearch source, please check port 9000 or 9200 ??

---

<div class="post-metadata">

**Author:** ![Louis86](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/louis86/32/4752_2.png) [@Louis86](https://community.graylog.org/u/Louis86)\
**Post date:** [July 24, 2019, 5:27pm UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/18 "2019-07-24T17:27:49Z")

</div>

It is installed on server , that graylog is installed

thanks

---

<div class="post-metadata">

**Author:** ![annguyen0907](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/annguyen0907/32/4617_2.png) [@annguyen0907](https://community.graylog.org/u/annguyen0907)\
**Post date:** [July 25, 2019, 10:14am UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/19 "2019-07-25T10:14:29Z")

</div>

Please describe to me, please be clear, I still don’t understand what data you want to post on grafana

---

<div class="post-metadata">

**Author:** ![Louis86](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/louis86/32/4752_2.png) [@Louis86](https://community.graylog.org/u/Louis86)\
**Post date:** [July 25, 2019, 1:24pm UTC](https://community.graylog.org/t/grafana-and-graylog-3/11266/20 "2019-07-25T13:24:54Z")

</div>

Then telegraf and graylog is , in the same host

But the grafana is in another host

thank you

[Next page](https://community.graylog.org/t/grafana-and-graylog-3/11266.md?page=2)
