# Agent with Endpoint Security is not detected

**URL:** <https://discuss.elastic.co/t/agent-with-endpoint-security-is-not-detected/310385>\
**Category:** Elastic Security\
**Tags:** integrations\
**Created:** [July 22, 2022, 10:25am UTC](https://discuss.elastic.co/t/agent-with-endpoint-security-is-not-detected/310385 "2022-07-22T10:25:09Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![Mr.Sucuk](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/mr.sucuk/32/108695_2.png) [@Mr.Sucuk](https://discuss.elastic.co/u/Mr.Sucuk)\
**Post date:** [July 22, 2022, 10:25am UTC](https://discuss.elastic.co/t/agent-with-endpoint-security-is-not-detected/310385/1 "2022-07-22T10:25:09Z")

</div>

Dear all,

my self managed fleet server is not able to detect the agends with endpoint integrations on the Endpoint menu. They tell me just to add/roll out a new agend with a token. But my deployment has got two agends with endpoint security. where is here the trouble? Why it not detect the endpoint security agend?

However on Host-Isolation, we still read that there is a bugfix on **v8.1.1** and this was fixed there. So must be urgently updatet to **v8.1.1** or is there also a possibility in **v7.17**? (we have currently). Unfortunately we can not use this feature at the moment. ☹

By the way, what is the main different between the self managed fleet server and the cloud managed?

Thanks and best regards

---

<div class="post-metadata">

**Author:** ![lesio](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/lesio/32/89323_2.png) [@lesio](https://discuss.elastic.co/u/lesio)\
**Post date:** [July 25, 2022, 10:35am UTC](https://discuss.elastic.co/t/agent-with-endpoint-security-is-not-detected/310385/2 "2022-07-25T10:35:56Z")

</div>

Hello,  
I'm not familiar with the self managed setup, but just out of the top of my head you could try `test output` command on the two machines to see if the fleet server is reachable.  
The exact path depends on the OS:  
Linux: `/opt/Elastic/Endpoint/elastic-endpoint test output`  
macOS: `/Library/Elastic/Endpoint/elastic-endpoint test output`  
Windows: `C:\Program Files\Elastic\Endpoint\elastic-endpoint.exe test output`

Similarly Elastic Agent has some self-diagnostic commands.

---

<div class="post-metadata">

**Author:** ![Mr.Sucuk](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/mr.sucuk/32/108695_2.png) [@Mr.Sucuk](https://discuss.elastic.co/u/Mr.Sucuk)\
**Post date:** [July 25, 2022, 12:39pm UTC](https://discuss.elastic.co/t/agent-with-endpoint-security-is-not-detected/310385/3 "2022-07-25T12:39:55Z")

</div>

Hey,

I tested the output.

 ![MicrosoftTeams-image (1)](https://us1.discourse-cdn.com/elastic/original/3X/a/c/ac9ea5a6f6ae50568d0c764ce6a50e5961566246.png)

It has a successful connection to the self-managed fleet server, and the endpoints and their data are showing up like they should in the Kibana Security Tab. Only in the "Endpoints" Tab they are not recognized.

Could you explain why? Do the Endpoints only show up under Security\>Endpoints if they are managed by an ECE Fleet Server?

---

<div class="post-metadata">

**Author:** ![lesio](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/lesio/32/89323_2.png) [@lesio](https://discuss.elastic.co/u/lesio)\
**Post date:** [July 25, 2022, 5:53pm UTC](https://discuss.elastic.co/t/agent-with-endpoint-security-is-not-detected/310385/4 "2022-07-25T17:53:36Z")

</div>

This is a good question, unfortunately I'm not familiar with that part. I'll let you know if I find out something.

Best,

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [August 22, 2022, 5:53pm UTC](https://discuss.elastic.co/t/agent-with-endpoint-security-is-not-detected/310385/5 "2022-08-22T17:53:52Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
