# Security overview doesn't show any data

**URL:** <https://discuss.elastic.co/t/security-overview-doesnt-show-any-data/246099>\
**Category:** Elastic Security\
**Created:** [August 24, 2020, 10:33am UTC](https://discuss.elastic.co/t/security-overview-doesnt-show-any-data/246099 "2020-08-24T10:33:25Z")\
**Posts on this page:** 7\
**Page:** 1

<div class="post-metadata">

**Author:** ![s\_elk](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/s_elk/32/51976_2.png) [@s\_elk](https://discuss.elastic.co/u/s_elk)\
**Post date:** [August 24, 2020, 10:33am UTC](https://discuss.elastic.co/t/security-overview-doesnt-show-any-data/246099/1 "2020-08-24T10:33:25Z")

</div>

Hi,  
I've installed the new version 7.9.  
I've 4 hosts (Linux/Windows) online in my Fleet tab under Ingest Manager (I've installed elastic agent correctly on them) with some active integrations (Elastic Endpoint Security is one of them, and I can see data in .ds-\* indices) and one host with auditbeat ingesting data correctly in the auditbeat-7.9.0-... index, but when I open the Security overview I can´t see anything but the original message 'Welcome to Elastic Security. Let’s get you started....' like no security indices are present in my cluster. The same happens in the rest of the tabs (detections, hosts, network) and the Administration tab shows the original message 'Next step: Enroll an Agent with Elastic Endpoint Security' like no agents are enrolled.

Any help on why the Security overview is not showing my data hosts?

Thanks in advance,  
Regards

---

<div class="post-metadata">

**Author:** ![christos.nasikas](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/christos.nasikas/32/45611_2.png) [@christos.nasikas](https://discuss.elastic.co/u/christos.nasikas)\
**Post date:** [August 24, 2020, 11:08am UTC](https://discuss.elastic.co/t/security-overview-doesnt-show-any-data/246099/2 "2020-08-24T11:08:58Z")

</div>

Hi @s_elk,

Could you go to Stack Management -\> Advanced Settings (under Kibana section) -\> Security Solution and check your Elasticsearch indices ? The defaults are `apm-*-transaction*, auditbeat-*, endgame-*, filebeat-*, logs-*, packetbeat-*, winlogbeat-*`.

Best,  
Christos

---

<div class="post-metadata">

**Author:** ![s\_elk](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/s_elk/32/51976_2.png) [@s\_elk](https://discuss.elastic.co/u/s_elk)\
**Post date:** [August 24, 2020, 11:21am UTC](https://discuss.elastic.co/t/security-overview-doesnt-show-any-data/246099/3 "2020-08-24T11:21:56Z")

</div>

Thanks Christos for your answer.

Yes, I forgot to say that I've kept the defaults (so the auditbeat-\* is there) and added ', \*elastic.agent\*' to test...

Regards

---

<div class="post-metadata">

**Author:** ![s\_elk](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/s_elk/32/51976_2.png) [@s\_elk](https://discuss.elastic.co/u/s_elk)\
**Post date:** [August 24, 2020, 3:04pm UTC](https://discuss.elastic.co/t/security-overview-doesnt-show-any-data/246099/4 "2020-08-24T15:04:40Z")

</div>

Reinstalled and solved...

Thanks

---

<div class="post-metadata">

**Author:** ![christos.nasikas](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/christos.nasikas/32/45611_2.png) [@christos.nasikas](https://discuss.elastic.co/u/christos.nasikas)\
**Post date:** [August 24, 2020, 3:52pm UTC](https://discuss.elastic.co/t/security-overview-doesnt-show-any-data/246099/5 "2020-08-24T15:52:23Z")

</div>

That's great news! Wonder why to be honest 🙂

---

<div class="post-metadata">

**Author:** ![enrico\_villa](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/enrico_villa/32/78353_2.png) [@enrico\_villa](https://discuss.elastic.co/u/enrico_villa)\
**Post date:** [November 4, 2020, 12:54am UTC](https://discuss.elastic.co/t/security-overview-doesnt-show-any-data/246099/6 "2020-11-04T00:54:24Z")

</div>

What was the problem ?  
I'm in the same situation on 7.9.1 : 1 agent is enrolled , online and shipping data using a conf with 4 integrations as agent acivity log reports.  
But still cant see any new index named as per the security section of kibana adv settings..  
Also, i got looped in security \> administration : kibana keeps to ask to enroll an agent onto the integration, but one is already enrolled and runnig with same signature..  
Any idea why no index were written ?  
tnx

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [November 4, 2022, 8:11am UTC](https://discuss.elastic.co/t/security-overview-doesnt-show-any-data/246099/7 "2022-11-04T08:11:09Z")

</div>


