The SIEM app is now a part of the Elastic Security solution.
Click
here to view SIEM documentation for previous releases.
Elastic Security fields and object schemas
edit
IMPORTANT: This documentation is no longer updated. Refer to Elastic's version policy and the latest documentation.
Elastic Security fields and object schemas
editThis reference section provides details on the ECS fields Elastic Security uses to display data in the UI and Elastic Security JSON object schemas: