Hello @bex ,
I would check the following things:
- Was the integration also rolled out via an Elastic Agent Policy. If not then role this out.
- If this integration was rolled out then I would check if the agent can communicate with the elasticsearch.
As you can see in your error message from image 1, this role would currently run into the void because there is currently no data from Elastic defend in elasticsearch.
Regards,
Sebastian