# Auditbeat-\* No results match your search criteria

**URL:** <https://discuss.elastic.co/t/auditbeat-no-results-match-your-search-criteria/259980>\
**Category:** Beats\
**Tags:** packetbeat, auditbeat, elastic-agent\
**Created:** [December 31, 2020, 8:56pm UTC](https://discuss.elastic.co/t/auditbeat-no-results-match-your-search-criteria/259980 "2020-12-31T20:56:05Z")\
**Posts on this page:** 5\
**Page:** 1

<div class="post-metadata">

**Author:** ![Vigilox](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/vigilox/32/81586_2.png) [@Vigilox](https://discuss.elastic.co/u/Vigilox)\
**Post date:** [December 31, 2020, 8:56pm UTC](https://discuss.elastic.co/t/auditbeat-no-results-match-your-search-criteria/259980/1 "2020-12-31T20:56:05Z")

</div>

Fresh ElasticStack 7.10 deployment on Azure. Elastic Agents have been deployed. The indices for packetbeat-\* and auditbeat-\* are not found. Date range expanded to a YEAR.

 ![image](https://us1.discourse-cdn.com/elastic/original/3X/d/e/de70a77871e68531cf883ab014d26c8ebe8ba70b.png)

Here are the installed Integrations.

 ![Installed2 - Integrations - Fleet - Elastic_ - 13c7337445ee4f64820acd9248d60301.centralus.azure.elastic-cloud.com](https://us1.discourse-cdn.com/elastic/original/3X/d/3/d34631325d52d4facb32409bf44f7ec38307ad07.png)

Neither auditbeat or packetbeat appear in the Datastream.

 ![Data streams - Fleet - Elastic_ - 13c7337445ee4f64820acd9248d60301.centralus.azure.elastic-cloud.com](https://us1.discourse-cdn.com/elastic/original/3X/d/e/de47f5cf863fb83960537848600de6ef91fb6596.png)

 ![Data streams2 - Fleet - Elastic_ - 13c7337445ee4f64820acd9248d60301.centralus.azure.elastic-cloud.com](https://us1.discourse-cdn.com/elastic/original/3X/f/6/f6ed22b3b23dcb70a113907827082d148dc1948e.png)

Thanks in advance for the assist. What have I overlooked?

---

<div class="post-metadata">

**Author:** ![Vigilox](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/vigilox/32/81586_2.png) [@Vigilox](https://discuss.elastic.co/u/Vigilox)\
**Post date:** [December 31, 2020, 9:44pm UTC](https://discuss.elastic.co/t/auditbeat-no-results-match-your-search-criteria/259980/2 "2020-12-31T21:44:10Z")

</div>

Also, seeing Detections and Host Events.

 ![Overview - Host Events- Kibana_ - 13c7337445ee4f64820acd9248d60301.centralus.azure.elastic-cloud.com](https://us1.discourse-cdn.com/elastic/original/3X/3/2/3216e947be35c5d1592dd8af97a72be24d78afa5.png)

The endpoints are a combo of on-premise and cloud assets. However, no Network Events are present.

 ![Overview Network Events- Kibana_ - 13c7337445ee4f64820acd9248d60301.centralus.azure.elastic-cloud.com](https://us1.discourse-cdn.com/elastic/original/3X/5/5/553d5bc65e621b3e12d578882e834788be636428.png)

---

<div class="post-metadata">

**Author:** ![stephenb](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/stephenb/32/40856_2.png) [@stephenb](https://discuss.elastic.co/u/stephenb)\
**Post date:** [January 4, 2021, 1:09am UTC](https://discuss.elastic.co/t/auditbeat-no-results-match-your-search-criteria/259980/3 "2021-01-04T01:09:34Z")

</div>

Hi @Vigilox welcome to the community.  
It looks like you are using the new Elastic Agent and Ingest Manager / Fleet.  
This was newly released in 7.9, and is still in beta in 7.10.x  
Not all the current beats integrations / functionality are supported yet, which include packetbeat and auditbeat functionality. Over time more will be added.

[https://www.elastic.co/blog/whats-new-elastic-observability-7-9-0-unified-agent-kpi-overview-dashboard](https://www.elastic.co/blog/whats-new-elastic-observability-7-9-0-unified-agent-kpi-overview-dashboard).

_"Integrations for popular services and platforms: 7.9 has support for ~40 integrations, with plans to port all 100+ Beats modules over in the next few releases. Integrations ship with prepackaged content like dashboards and a data transformation pipeline that let you go from data to insight in literally minutes."_

---

<div class="post-metadata">

**Author:** ![Vigilox](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/vigilox/32/81586_2.png) [@Vigilox](https://discuss.elastic.co/u/Vigilox)\
**Post date:** [January 4, 2021, 2:37am UTC](https://discuss.elastic.co/t/auditbeat-no-results-match-your-search-criteria/259980/4 "2021-01-04T02:37:29Z")

</div>

Thank you for the warm welcome and the reply.

I previously reviewed the link you provided. However, in my excitement, I overlooked the "Elastic Agent (beta) [currently] supports logs, metrics, and endpoint security data" part.

Apologies. I got ahead of things.

All good. We'll keep watching for additional integrations e.g. auditbeat, packetbeat in upcoming releases.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [February 1, 2021, 4:37am UTC](https://discuss.elastic.co/t/auditbeat-no-results-match-your-search-criteria/259980/5 "2021-02-01T04:37:33Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
