Is it normal that Elastic Agent utilizes around 500MB of ram on Windows 10 Endpoint
I have disabled for test Detection/Protection in the Policy.
I have disabled all events collection DNS, Network etc...
Between the elastic-agent and the sub services utilization is around 500MB
While I enjoy the Fleet... I'm thinking about rolling out Winlogbeat with Sysmon to improve performance. ( I'm guessing that all the rules in Elastic Security should work with Winlogbeats ? )