IMPORTANT: No additional bug fixes or documentation updates
will be released for this version. For the latest information, see the
current release documentation.
Turn off diagnostic data for Elastic Defend
editTurn off diagnostic data for Elastic Defend
editBy default, Elastic Defend streams diagnostic data to your cluster, which Elastic uses to tune protection features. You can stop producing this diagnostic data by configuring the advanced settings in the Elastic Defend integration policy.
Kibana also collects usage telemetry, which includes Elastic Defend diagnostic data. You can modify telemetry preferences in Advanced Settings.
- In the Elastic Security app, go to Manage → Endpoints to view the Endpoints list.
- Locate the endpoint for which you want to disable diagnostic data, then click the integration policy in the Policy column.
- Scroll down to the bottom of the policy and click Show advanced settings.
-
Enter
false
for these settings:-
windows.advanced.diagnostic.enabled
-
linux.advanced.diagnostic.enabled
-
mac.advanced.diagnostic.enabled
-
- Click Save.