Elastic Stack Monitoring

The Elastic Stack (formerly known as ELK stack) is a very powerful tool for any kind of Search, Monitoring or Security Use Case. Therefore using the stack to monitor itself is a low hanging fruit. The recommended setup is to use the separate Self Monitoring cluster for this purpose.

Elastic comes with a lot of inbuilt monitoring capabilities. The Elastic Agent as well as the Beats do have integrations / modules to collect the necessary data. By using the Elastic Cloud the self monitoring can be activated for any cluster.

Nevertheless using the inbuilt monitoring app can be very helpful. But if a user has already a separate cluster to monitor the production cluster it makes sense to use all available capabilities also for that. Thats the reason we have Elasticsearch Monitoring dashboards as an extension to the normal behavior like this one.

This Elastic Stack Monitoring Dashboard includes the following components:

  1. Create 2 index patterns / data views
  2. Create 1 transform
  3. Create Dashboard from ndjson file

Source: https://github.com/jeffvestal/elastic-stack-monitoring-dashboard

Tested versions 8.x
ECS compliant Yes

You must log in to submit a review.

Related downloads

Vega advanced heat map

Vega example to show GitHub commits per author per hour of day.

Filebeat Log analysis canvas example

This is a simple canvas dashboard example that analyzes logs created by Filebeat.

Cloudflare Kibana dashboards

Cloudflare dashboards and ingest pipelines to visualize cloudflare logs

Threat detection Kibana dashboard

Kibana dashboard example visualizing the results of the Elastic SIEM detection engine

Vega Compound Gauge

This is a compund gauge visualization made with Vega. Its very helpful for visualization of percentage values.

Vega Scatterplot Kibana visualization

A scatterplot visualization made with Vega Lite for Kibana

These downloads could be also interesting for you

Sigma Sysmon detection rules

A collection of rules based on the Sigma detection rules for Windows Sysmon events based on Winlogbeat data.

Sigma AWS Cloudtrail Detection rules

A collection of rules based on the Sigma rules for AWS based on the Filebeat AWS module and Elastic agent integration.

Office 365 dashboards

A collection of Kibana dashboards to provide a holistic view of Microsoft Office 365 environments

Ingest Pipeline Monitoring

This Kibana dashboard can be used monitor your ingest pipelines

Vega advanced heat map

Vega example to show GitHub commits per author per hour of day.

Sigma Zeek Detection rules

A collection of rules based on the Sigma rules for Zeek based on the Filebeat Zeek module.