Elastic Stack Version 7.2: Feature Tour

preview_player
Показать описание

Elastic Stack version 7.2 highlights:
Elastic SIEM makes its debut. Elastic App Search introduces a self-managed downloadable deployment option. Elastic APM adds support for .NET. The new Metrics Explorer brings a more intuitive exploration of infrastructure metrics in the Infrastructure app, and Kubernetes observability story expands further with new data integrations in Beats.

Other updates include: New search_as_you_type field, relevance ranking by geographical or time proximity, OpenID Connect realm in Elasticsearch, feature-level access control in Kibana, and new data integration in Beats & Logstash.
Рекомендации по теме
Комментарии
Автор

Good news for SIEM! Wait for some included rules and the default things for every SIEM! Also wait for extended support of logs sources. For example not only Coredns for DNS logs, but also other solutions!

inokentiy_potapuch