I have set up both the 'Windows' and 'Suricata' integrations, using the same Agent Policy. Both integrations are showing that my client machine is connected. On the client, I have installed the Elastic Agent, however only the Windows logs are appearing in Elastic Cloud. I have verified Suricata is running on the client and the eve.json is populating with new events. I am new to Elastic Cloud, so is there something else I missed?
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.