Added endgame-* index and new heading 3 Elastic Endpoint SMP. (#51071)

This commit is contained in:
Janeen Mikell-Straughn 2019-11-21 16:46:34 -05:00 committed by GitHub
parent c3c1a2be8a
commit 1142f4b277
No known key found for this signature in database
GPG key ID: 4AEE18F83AFDEB23

View file

@ -24,7 +24,7 @@ Kibana provides step-by-step instructions to help you add data. The
detailed information and instructions.
[float]
=== {Beats}
=== {Beats}
https://www.elastic.co/products/beats/auditbeat[{auditbeat}],
https://www.elastic.co/products/beats/filebeat[{filebeat}],
@ -33,9 +33,14 @@ https://www.elastic.co/products/beats/packetbeat[{packetbeat}]
send security events and other data to Elasticsearch.
The default index patterns for SIEM events are `auditbeat-*`, `winlogbeat-*`,
`filebeat-*`, and `packetbeat-*``. You can change the default index patterns in
`filebeat-*`, `endgame-*`, and `packetbeat-*``. You can change the default index patterns in
*Kibana > Management > Advanced Settings > siem:defaultIndex*.
[float]
=== Elastic Endpoint Sensor Management Platform
The Elastic Endpoint Sensor Management Platform (SMP) ships host and network events directly to the SIEM application, and is fully ECS compliant.
[float]
=== Elastic Common Schema (ECS) for normalizing data