Info |
---|
Wazuh is Cloudaware HIDS application built on Kibana platform. The Breeze agent needs to be installed before access to Wazuh is provided in Cloudaware Launcher. |
...
Filters
The following options are available can be used for filtering the information on the dashboard:
...
3. Hover mouse to the values in the table charts to locate 'zoom plusin' and 'zoom minusout' icons. For example, click 'zoom plusin' near a rule ID to view all related events:
...
To undo zooming, go to the time picker in the upper right corner, click the tab 'Quick' and select the time period in question.
Filters
In row data UI you can add filters by clicking 'zoom in' and 'zoom out' signs or add them manually.
For example, refer to the list of available fields on the left. Click on a field to expand details about top-5 values. Click Add to add the field as a column into the log display table on the right to analyze data.
...
Click 'zoom in' to filter by this value. As a result, the value in question will be highlighted yellow:
...