We are using ES (7.6.1 OSS version) with Open Distro ( LDAP security ). We are using Elasticsearch telegraf plugin to get the metrics Elasticsearch Plugin
We know that there is an audit log which we could parse and use input.exec plugin of telegraf to identify unauthorized requests. However, we do not want to write custom code.
Could you please help us to know if there are any plugins (telegraf) or any other way in which we directly get these unauthorized metrics?
To echo Christian's comment; ODFE is an AWS fork of the original Elasticsearch. We do not maintain or support that sorry to say, and you will need to speak to them about this.
Apache, Apache Lucene, Apache Hadoop, Hadoop, HDFS and the yellow elephant
logo are trademarks of the
Apache Software Foundation
in the United States and/or other countries.