Elastic Audit Logs
Overview
Log Formats
{
"type":"audit",
"timestamp":"2023-12-08T05:06:56,473+0000",
"cluster.uuid":"kXrjmQofTJWWwA_XXXX-MQ",
"node.id":"J_-jlr-3Qo-XXXXXXXXX",
"event.type":"transport",
"event.action":"access_granted",
"authentication.type":"API_KEY",
"user.name":"elastic/fleet-server",
"user.realm":"_service_account",
"user.roles":[
"elastic/fleet-server"
],
"apikey.id":"y4UDQ4wB31InbpVXXXX",
"apikey.name":"00bcf078-XXXXX-4946-a680-XXXXXXXX:default",
"origin.type":"rest",
"origin.address":"10.42.13.244:43252",
"request.id":"zOeZEqYyQtW_GPIZG4yFZA",
"action":"indices:data/write/bulk[s]",
"request.name":"BulkShardRequest",
"indices":[
"metrics-kubernetes.node-default"
],
"x_forwarded_for":"118.179.32.193"
}Optimization Strategies
Aggregate Bulk Shard Requests

Aggregate All Requests

Last updated
Was this helpful?

