diff --git a/deploy/kubernetes/elastic-agent-managed-kubernetes.yaml b/deploy/kubernetes/elastic-agent-managed-kubernetes.yaml index 882e7b46e21..45c846b8f0f 100644 --- a/deploy/kubernetes/elastic-agent-managed-kubernetes.yaml +++ b/deploy/kubernetes/elastic-agent-managed-kubernetes.yaml @@ -19,6 +19,9 @@ spec: effect: NoSchedule serviceAccountName: elastic-agent hostNetwork: true + # Sharing the host process ID namespace gives visibility of all processes running on the same host. + # This enables the Elastic Security integration to observe all process exec events on the host. + hostPID: true dnsPolicy: ClusterFirstWithHostNet containers: - name: elastic-agent diff --git a/deploy/kubernetes/elastic-agent-managed/elastic-agent-managed-daemonset.yaml b/deploy/kubernetes/elastic-agent-managed/elastic-agent-managed-daemonset.yaml index 097d9786e03..10c3687b844 100644 --- a/deploy/kubernetes/elastic-agent-managed/elastic-agent-managed-daemonset.yaml +++ b/deploy/kubernetes/elastic-agent-managed/elastic-agent-managed-daemonset.yaml @@ -19,6 +19,9 @@ spec: effect: NoSchedule serviceAccountName: elastic-agent hostNetwork: true + # Sharing the host process ID namespace gives visibility of all processes running on the same host. + # This enables the Elastic Security integration to observe all process exec events on the host. + hostPID: true dnsPolicy: ClusterFirstWithHostNet containers: - name: elastic-agent