Console utility app to retrieve and cat files stored in AWS S3
S3tail is a simple tool to help access log files stored in an S3 bucket in the same way one might use the *nix tail command (with far fewer options, most notably the lack of follow).
- Free software: MIT license
- Documentation: https://s3tail.readthedocs.io.
Simplest install method is via pip install s3tail (see installation for other methods).
S3tail downloads and displays the content of files stored in S3, optionally starting at a specific prefix. For example, the following will start dumping all the log file contents found for August the fourth in the order S3 provides from that prefix onward:
$ s3tail s3://my-logs/production-s3-access-2016-08-04
When s3tail is stopped or interrupted, it’ll print a bookmark to be used to pick up at the exact spot following the last log printed in a previous run. Something like the following might be used to leverage this ability to continue tailing from a previous stopping point:
$ s3tail s3://my-logs/production-s3-access-2016-08-04 ... ...a-bunch-of-file-output... ... Bookmark: production-s3-access-2016-08-04-00-20-31-61059F36E0DBF36E:706
This can then be used to pick up at line 707 later on, like this:
$ s3tail s3://my-logs/production-s3-access-2016-08-04 \ --bookmark production-s3-access-2016-08-04-00-20-31-61059F36E0DBF36E:706
Additionally, it’s often useful to let s3tail track where things were left off and pick up at that spot without needing to copy and paste the previous bookmark. This is where “named bookmarks” come in handy. The examples above could have been reduced to these operations:
$ s3tail --bookmark my-special-spot s3://my-logs/production-s3-access-2016-08-04 ... ^C $ s3tail --bookmark my-special-spot s3://my-logs/production-s3-access Starting production-s3-access-2016-08-04-02-22-32-415AE699C8233AC3 Found production-s3-access-2016-08-04-02-22-32-415AE699C8233AC3 in cache Picked up at line 707 ...
It’s safe to rerun s3tail sessions when working with piped commands searching for data in the stream (e.g. grep). S3tail keeps files in a local file system cache (for 24 hours by default) and will always read and display from the cache before downloading from S3. This is done in a best-effort background thread to avoid impacting performance. The file cache is stored in the user’s HOME directory, in an .s3tailcache subdirectory, where the file names are the S3 keys hashed with SHA-256.
Check out usage for more details and examples (like how to leverage GoAccess to generate beautiful traffic reports!).
- Fix incorrect final bookmark when no more logs to read from key.
- Fix bug in prefix matching when using named bookmarks.
- Added timestamps to logs.
- Added “named” bookmarks to pick up automatically from last position when possible.
- Added option to disable cache entirely.
- Better perf when reading from cache.
- Improved docs.
- Refactor into classes and provide some minimal docs.
- First release on PyPI.
Release history Release notifications | RSS feed
Download the file for your platform. If you're not sure which to choose, learn more about installing packages.
|Filename, size||File type||Python version||Upload date||Hashes|
|Filename, size s3tail-0.1.7-py2.py3-none-any.whl (12.7 kB)||File type Wheel||Python version 2.7||Upload date||Hashes View|
|Filename, size s3tail-0.1.7.tar.gz (28.5 kB)||File type Source||Python version None||Upload date||Hashes View|
Hashes for s3tail-0.1.7-py2.py3-none-any.whl