ethical20
(Ethical20)
January 22, 2021, 7:39am
5
yes @wylie I've set up winlogbeat as listed in the documentation, also I've run the command
.\winlogbeat.exe setup -e
again in order to reship the assets (dashboards and index) as advised but with no luck.
Also yes I can see the logs in elasticsearch and most of the visualizations are ok, only the ones I've mentioned.
I can see that other people having same issue here:
Hello,
I am using Elasticsearch, kibana and winlogbeat, all version 7.10.1
I configured winlogbeat and run: .\winlogbeat.exe setup -e and I had no error in my winlogbeat logs, but in kibana there are some dashboards working and some of them I am getting errors:
Could not locate that index-pattern-field (id: powershell.connected_user.name)
Could not locate that index-pattern-field (id: powershell.engine.version)
Could not locate that index-pattern-field (id: powershell.command.name)
Could not …
Any help in this?
Regards,