How to trigger an Alert by creating play in playbook when someone execute sudo command #12319
Replies: 1 comment 7 replies
-
Does the query
Return results in Hunt? |
Beta Was this translation helpful? Give feedback.
7 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Uh oh!
There was an error while loading. Please reload this page.
Uh oh!
There was an error while loading. Please reload this page.
-
Hi,


i created a play
I'm able to see about the play in kibana>discover dashboard when someone execute sudo command

but not in security onion alert dashboard.
do i have do anything else apart from this because im not getting alert still!
please reply!
Beta Was this translation helpful? Give feedback.
All reactions