Hi Brenno,
The recommended approach to create data visualizations for alert data is to use the
Custom Dashboards, which among other things can help building visualizations based on the indexed alert data (your
data.mon_* fields in this case).
You can start by checking the following documentation:
-
Creating custom dashboards - Wazuh dashboard · Wazuh documentationYou can select the index where your data is stored, the type of visualization (bar charts, line charts, heat maps, etc) and the fields that will be represented in the visualization for a given visual feature like the x and y position or the color.
Please follow the steps defined in the documentation and I will be happy to help you build the visualization you require.
Best regards,
- Nicolai R.