diff --git a/docs/getting-started/images/install-endpoint/add-agent.png b/docs/getting-started/images/install-endpoint/add-agent.png deleted file mode 100644 index 79d48bdce0..0000000000 Binary files a/docs/getting-started/images/install-endpoint/add-agent.png and /dev/null differ diff --git a/docs/getting-started/images/install-endpoint/add-elastic-endpoint-security.png b/docs/getting-started/images/install-endpoint/add-elastic-endpoint-security.png deleted file mode 100644 index 33a37ffa0c..0000000000 Binary files a/docs/getting-started/images/install-endpoint/add-elastic-endpoint-security.png and /dev/null differ diff --git a/docs/getting-started/images/install-endpoint/endpoint-cloud-sec-add-agent-detail.png b/docs/getting-started/images/install-endpoint/endpoint-cloud-sec-add-agent-detail.png new file mode 100644 index 0000000000..965a8a26d3 Binary files /dev/null and b/docs/getting-started/images/install-endpoint/endpoint-cloud-sec-add-agent-detail.png differ diff --git a/docs/getting-started/images/install-endpoint/endpoint-cloud-sec-add-agent.png b/docs/getting-started/images/install-endpoint/endpoint-cloud-sec-add-agent.png new file mode 100644 index 0000000000..648bede150 Binary files /dev/null and b/docs/getting-started/images/install-endpoint/endpoint-cloud-sec-add-agent.png differ diff --git a/docs/getting-started/images/install-endpoint/endpoint-cloud-sec-integrations-page.png b/docs/getting-started/images/install-endpoint/endpoint-cloud-sec-integrations-page.png new file mode 100644 index 0000000000..c1248070c0 Binary files /dev/null and b/docs/getting-started/images/install-endpoint/endpoint-cloud-sec-integrations-page.png differ diff --git a/docs/getting-started/images/install-endpoint/endpoint-cloud-security-configuration.png b/docs/getting-started/images/install-endpoint/endpoint-cloud-security-configuration.png new file mode 100644 index 0000000000..029252e02a Binary files /dev/null and b/docs/getting-started/images/install-endpoint/endpoint-cloud-security-configuration.png differ diff --git a/docs/getting-started/images/install-endpoint/endpoint-configuration.png b/docs/getting-started/images/install-endpoint/endpoint-configuration.png deleted file mode 100644 index 17393bd1d9..0000000000 Binary files a/docs/getting-started/images/install-endpoint/endpoint-configuration.png and /dev/null differ diff --git a/docs/getting-started/images/install-endpoint/security-integration.png b/docs/getting-started/images/install-endpoint/security-integration.png deleted file mode 100644 index 3836fa720b..0000000000 Binary files a/docs/getting-started/images/install-endpoint/security-integration.png and /dev/null differ diff --git a/docs/getting-started/install-endpoint.asciidoc b/docs/getting-started/install-endpoint.asciidoc index ede74354e6..9f8bff3098 100644 --- a/docs/getting-started/install-endpoint.asciidoc +++ b/docs/getting-started/install-endpoint.asciidoc @@ -1,10 +1,10 @@ [[install-endpoint]] [role="xpack"] -= Configure and install the Endpoint Security integration += Configure and install the {endpoint-cloud-sec} integration -Like other Elastic integrations, Endpoint Security can be integrated into the Elastic Agent through {fleet-guide}/fleet-overview.html[{fleet}]. Upon configuration, the integration allows the Elastic Agent to monitor for events on your host and send data to the {security-app}. +Like other Elastic integrations, {endpoint-cloud-sec} can be integrated into the {agent} through {fleet-guide}/fleet-overview.html[{fleet}]. Upon configuration, the integration allows the {agent} to monitor for events on your host and send data to the {security-app}. -NOTE: To configure the Endpoint Security integration on the {agent}, you must have permission to use {fleet} in {kib}. You must also have admin permissions in {kib} to access the **Endpoints** page in the {security-app}. +NOTE: To configure the {endpoint-cloud-sec} integration on the {agent}, you must have permission to use {fleet} in {kib}. You must also have admin permissions in {kib} to access the **Endpoints** page in the {security-app}. [discrete] [[security-before-you-begin]] @@ -14,20 +14,20 @@ If you're using macOS, some versions may require you to grant Full Disk Access t [discrete] [[add-security-integration]] -== Add the Endpoint Security integration +== Add the {endpoint-cloud-sec} integration -. In {kib}, select **Security** -> **Endpoints**. If this is not your first time using {es-sec}, select **Management** -> **Integrations**, then search for and select **Endpoint Security**. +. In {kib}, select **Security** -> **Endpoints**. If this is not your first time using {es-sec}, select **Management** -> **Integrations**, then search for and select **{endpoint-cloud-sec}**. + [role="screenshot"] -image::images/install-endpoint/security-integration.png[Search result for "Endpoint Security" on the Integrations page.] +image::images/install-endpoint/endpoint-cloud-sec-integrations-page.png[Search result for "Endpoint and Cloud Security" on the Integrations page.] + -. Select **Add Endpoint Security** on either the Endpoints page of the {security-app} or the Endpoint Security integration page (*Management* -> *Integrations*). The integration configuration page appears. +. Select **Add {endpoint-cloud-sec}** on either the Endpoints page of the {security-app} or the {endpoint-cloud-sec} integration page (*Management* -> *Integrations*). The integration configuration page appears. + [role="screenshot"] -image::images/install-endpoint/add-elastic-endpoint-security.png[Add Endpoint Security integration page.] +image::images/install-endpoint/endpoint-cloud-security-configuration.png[Add Endpoint and Cloud Security integration page.] + -. Configure the Endpoint Security integration with an **Integration name** and optional **Description**. -. Enter a name for the agent policy in **New agent policy name**. If other agent policies already exist, you can click the **Existing hosts** tab and select an existing policy instead. For more details on {agent} configuration settings, refer to {fleet-guide}/agent-policy.html[{agent} policies]. +. Configure the {endpoint-cloud-sec} integration with an **Integration name** and optional **Description**. +. Enter a name for the agent policy in **New agent policy name**. If other agent policies already exist, you can click the **Existing hosts** tab and select an existing policy instead. For more details on {agent} configuration settings, refer to {fleet-guide}/agent-policy.html[{agent} policies]. . When the configuration is complete, click **Save and continue**. . To complete the integration, continue to the next section to install the {agent} on your hosts. @@ -35,13 +35,13 @@ image::images/install-endpoint/add-elastic-endpoint-security.png[Add Endpoint Se [[enroll-security-agent]] == Configure and enroll the {agent} -To configure the {agent}, Endpoint Security requires enrollment through Fleet to enable the integration. +To enable the {endpoint-cloud-sec} integration, you must enroll agents in the relevant policy using {fleet}. [IMPORTANT] ===== Before you add an {agent}, a {fleet-server} must be running. Refer to {fleet-guide}/add-a-fleet-server.html[Add a {fleet-server}]. -{endpoint-sec} cannot be integrated with an {agent} in standalone mode. +{endpoint-cloud-sec} cannot be integrated with an {agent} in standalone mode. ===== [discrete] @@ -63,16 +63,16 @@ If you have upgraded to an {stack} version that includes {fleet-server} 7.13.0 o . Go to *{fleet}* -> *Agents* -> **Add agent**. + [role="screenshot"] -image::images/install-endpoint/add-agent.png[Add agent flyout on the Fleet page.] +image::images/install-endpoint/endpoint-cloud-sec-add-agent.png[Add agent flyout on the Fleet page.] . Select an agent policy for the {agent}. You can select an existing policy, or select **Create new agent policy** to create a new one. For more details on {agent} configuration settings, refer to {fleet-guide}/agent-policy.html[{agent} policies]. + -The selected agent policy should include {endpoint-sec}. +The selected agent policy should include {endpoint-cloud-sec}. + [role="screenshot"] -image::images/install-endpoint/endpoint-configuration.png[Add agent flyout with Endpoint Security integration highlighted.,575] +image::images/install-endpoint/endpoint-cloud-sec-add-agent-detail.png[Add agent flyout with Endpoint and Cloud Security integration highlighted.,575] -. Ensure that the **Enroll in {fleet}** option is selected. {endpoint-sec} cannot be integrated with {agent} in standalone mode. +. Ensure that the **Enroll in {fleet}** option is selected. {endpoint-cloud-sec} cannot be integrated with {agent} in standalone mode. . Select the appropriate platform or operating system for the host, then copy the provided commands. @@ -80,7 +80,7 @@ image::images/install-endpoint/endpoint-configuration.png[Add agent flyout with . (Optional) Return to the **Add agent** flyout in {fleet}, and observe the **Confirm agent enrollment** and **Confirm incoming data** steps automatically checking the host connection. It may take a few minutes for data to arrive in {es}. -. After you have enrolled the {agent} on your host, you can click **View enrolled agents** to access the list of agents enrolled in {fleet}. Otherwise, select **Close**. +. After you have enrolled the {agent} on your host, you can click **View enrolled agents** to access the list of agents enrolled in {fleet}. Otherwise, select **Close**. + The host will now appear on the **Endpoints** page in the {security-app}. It may take another minute or two for endpoint data to appear in {elastic-sec}.