Technical requirements
To follow the recipes in this chapter, you’ll need an Elastic Stack deployment that includes the following:
- Elasticsearch for searching and storing the data
- Kibana for data visualization and stack management (you must be a Kibana user with All privileges on Fleet and Integrations)
- An ML node
Important note
Most of the recipes in this chapter rely heavily on the ML capabilities of the Elastic Stack. Ensure you allocate sufficient RAM to handle the various analyses and tasks effectively. If using a trial deployment on Elastic Cloud, consider increasing the RAM capacity of your ML node from the default 1 GB to at least 4 GB. Refer to the Creating and setting up additional Elasticsearch nodes recipe in Chapter 1. The same recommendation applies if you are operating a self-managed Elastic Stack.