Update beats-general-config.yml - Comment out the add_cloud_metadata processor within the Beats general configuration. Add comments to the when.network.source.ip and when.network.destination.ip sections.
Create beats-on-macOS/auditbeat.yml - Initial Auditbeat example for Beats on MacOS
Create beats-on-macOS/packetbeat.yml - Initial Packetbeat example for Beats on MacOS
SIEM at Home example updates:
beats-general-config.yml
- Comment out theadd_cloud_metadata
processor within the Beats general configuration. Add comments to thewhen.network.source.ip
andwhen.network.destination.ip
sections.beats-on-macOS/auditbeat.yml
- Initial Auditbeat example for Beats on MacOSbeats-on-macOS/packetbeat.yml
- Initial Packetbeat example for Beats on MacOS