custom_subsets/elastic_endpoint/metrics/metrics.yaml (63 lines of code) (raw):

--- name: metrics fields: base: fields: "@timestamp": {} message: {} agent: fields: version: {} type: {} id: {} data_stream: fields: "*" ecs: fields: version: {} Endpoint: fields: metrics: fields: "*" host: fields: architecture: {} domain: {} hostname: {} id: {} ip: {} mac: {} name: {} type: {} uptime: {} os: fields: family: {} full: {} kernel: {} platform: {} version: {} name: {} type: {} Ext: fields: variant: {} event: fields: action: {} category: {} created: {} code: {} dataset: {} end: {} hash: {} id: {} ingested: {} kind: {} module: {} outcome: {} provider: {} sequence: {} severity: {} start: {} type: {}