Obtén información sobre las características mediante demostraciones y anuncios, desde replicación entre clusters e índices congelados en Elasticsearch hasta Kibana Spaces y el conjunto de integraciones de datos en constante crecimiento en Beats y Logstash.
36. Elasticsearch is built for speed
• Every field is indexed
• Indexes built at ingest
• Denormalized data, no joins
• Distributed execution
But needs disk, cpu, memory!
42. Find users who:
• in the previous 12 months
• have used an application
• on today’s Malicious Apps list
• with param “powershell.exe”
43. Find users who:
• in the previous 12 months
• have used an application
• on today’s Malicious Apps list
• with param “powershell.exe”
Limited Join
}
44. Find users who:
• in the previous 12 months
• have used an application
• on today’s Malicious Apps list
• with param “powershell.exe”
Schema on Read}