An ECS compliant Kibana index pattern must be configured to view event data on the map

Hi Marcus,

To confirm, you need two things:

  1. Add cisco-* for "SIEM Elasticsearch indices" under the Kibana Advanced Settings
  2. A Kibana index pattern for cisco-*, which you can add under Kibana Management / Index Patterns.

Do you have both?