# encoding: utf-8 require "logstash/inputs/base" require "logstash/namespace" require "logstash/timestamp" require "logstash/util" require "logstash/json" # Read events from the twitter streaming api. class LogStash::Inputs::Twitter < LogStash::Inputs::Base config_name "twitter" # Your twitter app's consumer key # # Don't know what this is? You need to create an "application" # on twitter, see this url: config :consumer_key, :validate => :string, :required => true # Your twitter app's consumer secret # # If you don't have one of these, you can create one by # registering a new application with twitter: # config :consumer_secret, :validate => :password, :required => true # Your oauth token. # # To get this, login to twitter with whatever account you want, # then visit # # Click on your app (used with the consumer_key and consumer_secret settings) # Then at the bottom of the page, click 'Create my access token' which # will create an oauth token and secret bound to your account and that # application. config :oauth_token, :validate => :string, :required => true # Your oauth token secret. # # To get this, login to twitter with whatever account you want, # then visit # # Click on your app (used with the consumer_key and consumer_secret settings) # Then at the bottom of the page, click 'Create my access token' which # will create an oauth token and secret bound to your account and that # application. config :oauth_token_secret, :validate => :password, :required => true # Any keywords to track in the twitter stream config :keywords, :validate => :array, :required => true # Record full tweet object as given to us by the Twitter stream api. config :full_tweet, :validate => :boolean, :default => false public def register require "twitter" # monkey patch twitter gem to ignore json parsing error. # at the same time, use our own json parser # this has been tested with a specific gem version, raise if not the same raise("Incompatible Twitter gem version and the LogStash::Json.load") unless Twitter::Version.to_s == "5.12.0" Twitter::Streaming::Response.module_eval do def on_body(data) @tokenizer.extract(data).each do |line| next if line.empty? begin @block.call(LogStash::Json.load(line, :symbolize_keys => true)) rescue LogStash::Json::ParserError # silently ignore json parsing errors end end end end @client = Twitter::Streaming::Client.new do |c| c.consumer_key = @consumer_key c.consumer_secret = @consumer_secret.value c.access_token = @oauth_token c.access_token_secret = @oauth_token_secret.value end end public def run(queue) @logger.info("Starting twitter tracking", :keywords => @keywords) begin @client.filter(:track => @keywords.join(",")) do |tweet| if tweet.is_a?(Twitter::Tweet) @logger.debug? && @logger.debug("Got tweet", :user => tweet.user.screen_name, :text => tweet.text) if @full_tweet event = LogStash::Event.new(LogStash::Util.stringify_symbols(tweet.to_hash)) event.timestamp = LogStash::Timestamp.new(tweet.created_at) else event = LogStash::Event.new( LogStash::Event::TIMESTAMP => LogStash::Timestamp.new(tweet.created_at), "message" => tweet.full_text, "user" => tweet.user.screen_name, "client" => tweet.source, "retweeted" => tweet.retweeted?, "source" => "http://twitter.com/#{tweet.user.screen_name}/status/#{tweet.id}" ) event["in-reply-to"] = tweet.in_reply_to_status_id if tweet.reply? unless tweet.urls.empty? event["urls"] = tweet.urls.map(&:expanded_url).map(&:to_s) end end decorate(event) queue << event end end # client.filter rescue LogStash::ShutdownSignal return rescue Twitter::Error::TooManyRequests => e @logger.warn("Twitter too many requests error, sleeping for #{e.rate_limit.reset_in}s") sleep(e.rate_limit.reset_in) retry rescue => e @logger.warn("Twitter client error", :message => e.message, :exception => e, :backtrace => e.backtrace) retry end end # def run end # class LogStash::Inputs::Twitter