Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Info

Wazuh is Cloudaware HIDS application built on Kibana platform. The Breeze agent needs to be installed before access to Wazuh is provided in Cloudaware Launcher.

...

The following options are available can be used for filtering the information on the dashboard:

...

3. Hover mouse to the values in the table charts to locate 'zoom plusin' and 'zoom minusout' icons. For example, click 'zoom plusin' near a rule ID to view all related events:

...

To undo zooming, go to the time picker in the upper right corner, click the tab 'Quick' and select the time period in question.

In row data UI you can add filters by clicking 'zoom in' and 'zoom out' signs or add them manually. 

For example, refer to the list of available fields on the left. Click on a field to expand details about top-5 values. Click Add to add the field as a column into the log display table on the right to analyze data.

...

Click 'zoom in' to filter by this value. As a result, the value in question will be highlighted yellow:

...