...ends a notable event to ES (this is because I need a per event trigger which correlation doesn't let me do). The alert works and gives me the details I want in ES (basic info such as user details). H...
I've changed an existing correlation search and it's drill-down in the adaptive response actions, but when the notable gets created and you click on the contributing events "View Details." the old drill...
...o make the events in my simpleresultstable to be clickable to further investigate a specific event shown, preferably without redirecting the user to another page.
When you expand the details of a Notable Event in Enterprise Security (ES) 3.x there is a heading called “Contributing Events” that presents a link for the “drill-down search” configured in the C...
I'm trying to set up a drilldown report that will list the events of a transaction, but having issue getting the date to pass through correctly.
This is the code of the original report (edited t...
...ike to push through to OpsGenie.
I look under the Grouped Events tab in the Notable event and then drilldown to one of the alerts details. I would think this is where I could use some form of f...
I created a correlation search in Enterprise Security 2.4.1 which, when triggered, creates notable events with an urgency value of "medium" as opposed to "high". The details of the search f...
I have a map, on which i have tagged IP's according to location. now, on click of a particular location on the map, i need it to redirect to another dashboard. pls help. thanks
...he drilldown simply launch new searches in new tabs/windows, but when I look at a row, I am mostly interested in seeing the rest of the details behind the event or events which created it without l...
Hi,
Currently, If I search for any event in the search tab, I am getting only that particular eventdetails from the log files. I want to get the entire source from the log file. Now to see the s...