When using the Symantec Endpoint Detection and Response (SEDR) appliance you notice the disk usage for the elasticsearch partition is high (80%+) and the SEDR is dropping events.
Broadcom Engineering has resolved this issue in EDR version 4.8.0. Please update to EDR 4.8.0 at your earliest convenience to receive this fix.