Skip to content
Discussion options

You must be logged in to vote

Those hyperlinks are not in 2.4 and I've updated the documentation to reflect that:
https://docs.securityonion.net/en/2.4/kibana.html

You should be able to do something similar by copying the log.id.uid field value and then searching SOC Dashboards or Hunt for it.

Most folks avoid this issue altogether by simply using SOC Dashboards as their primary dashboards interface:
https://docs.securityonion.net/en/2.4/dashboards.html

Replies: 3 comments 8 replies

Comment options

You must be logged in to vote
0 replies
Comment options

You must be logged in to vote
8 replies
@dougburks
Comment options

@pdwheelerjr
Comment options

@dougburks
Comment options

@pdwheelerjr
Comment options

@TOoSmOotH
Comment options

Answer selected by argwfm
Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
2.4
Labels
None yet
5 participants