/** * Elasticsearch / Elastic Cloud connector. * * Uses `@elastic/elasticsearch` with `search_after` pagination (cheaper * and deeper than the deprecated `scroll` API). Supports both API key auth * and basic auth. */ import type { SiemConnector } from './index.js'; /** * Stratified-sampling bucket count for Elasticsearch / OpenSearch pulls. * Exported for the offline export-plan emitter, which must draw the same * sample this connector draws. See CLOUDWATCH_BUCKET_COUNT. */ export declare const ELASTICSEARCH_BUCKET_COUNT = 24; /** `size` used per `_search` page inside one bucket. */ export declare const ELASTICSEARCH_PAGE_SIZE = 1000; /** Default index pattern when the caller gives no scope. */ export declare const ELASTICSEARCH_DEFAULT_INDEX = "logs-*"; export declare const elasticsearchConnector: SiemConnector;