I am on Elasticsearch Free Enterprise Trial version 8.12.2
Version
I have enabled the Elastic Defend integration on the integration policy of the agent.
I can see the agent is enabled.
However when I try to issue a command via the Kibana list the processes on that agent I get this error:
["The host does not have Elastic Defend integration installed"],
lesio
(Leszek Kubik)
July 22, 2024, 9:13am
2
Can you confirm that this Policy has Defend included and is applied to the endpoint you were expecting to test? The Integration view doesn't say that.
I suggest opening Fleet view.
Then click on the host of interest and confirm that Defend is indeed added to the policy and is healthy
priamaiai
(Priamai)
August 19, 2024, 6:24am
3
Hi there,
this is what I see on the host:
It seems correct no?
lesio
(Leszek Kubik)
August 26, 2024, 2:03pm
4
I can see you've also got Osquery, so I just wonder which component was used to list the processes.
Did you run the command processes
from response console as described here Endpoint response actions | Elastic Security Solution [8.15] | Elastic
This feature requires relevant license and privileges. Maybe the error is misleading.
system
(system)
Closed
September 23, 2024, 2:03pm
5
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.