I want to enable in elastic agent the Windows integration (version 1.2.2) I want to use this integration to ship in Sysmon and powershell log. The agent is connected to a Fleet.
Adding the integration to the agent policy is not so difficult.
But recieving some log is more complicated. The agent is not sending any log, is this because it is not supported yet?
Or do I need to configure some extra settings on the agent. For instance I see that the filebeat YML is pointing as output to Elasticsearch: 127.0.0.1:9200....
Some help in any direction would be appreciated!