wazuh guide for event search

1,518 views
Skip to first unread message

Gary Woodard

unread,
May 9, 2022, 12:17:02 PM5/9/22
to Wazuh mailing list
Is there a guide for searching for data such as source networks or agent groups? Can I save the view on the event page? 

Jesus Linares

unread,
May 17, 2022, 5:17:17 AM5/17/22
to Wazuh mailing list
Hi,

Wazuh dashboard is based on Opensearch Dashboards, and here you can find a guide about the query language: https://opensearch.org/docs/latest/dashboards/dql/.

You can create your own searches. Go to "Discover", configure your search (filters, columns, etc) and click on the top corner button "save".

I hope it helps.
Reply all
Reply to author
Forward
0 new messages