Hello I was also wondering the same as I also want to implement this use case but searching all time consumes a lot of resources and I want to decrease it to a shorter time frame. "where num_data_samples >=4" why do u have 4 in your query?
... View more
Hello I'm also working with this query i found there was an error on line 4 in the end , it shouldn't be : by src_ip Should be: All_Traffic.src_ip Other thing is that you need to search All time.
... View more