Requirements
Access to your organization's Elastic instance
Access to Kibana for visualizing and managing data
Access to Elasticsearch for storing and searching data.
Depending on how you chose to collect data, you can now configure one of the following in the macOS Security portal:
If you chose to collect logs using an HTTP endpoint, see Creating a Jamf Protect Action Configuration for Elastic.
If you chose to collect logs using AWS S3, see Setting up Data Forwarding with Elastic Using Amazon S3.