2016-12-05 19:01:49 +00:00
< md-content flex layout = "column" ng-if = "!load && submenuNavItem == 'general' && tabView == 'panels'" ng-controller = "overviewGeneralController" layout-align = "space-around" >
2016-11-23 20:53:41 +00:00
< kbn-searchbar > < / kbn-searchbar >
2016-09-12 11:57:09 +00:00
< div layout = "row" layout-align = "center stretch" >
< md-card flex layout = "column" >
2016-09-20 08:55:43 +00:00
< md-card-content >
2016-12-12 13:09:23 +00:00
< kbn-vis vis-height = "70px" vis-type = "metric" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(customLabel:'Alerts'),schema:metric,type:count)),listeners:(),params:(fontSize:20,handleNoResults:!t),title:'New%20Visualization',type:metric))"
2016-11-09 13:26:14 +00:00
vis-filter="*">
2016-09-20 08:55:43 +00:00
< / kbn-vis >
< / md-card-content >
2016-09-12 11:57:09 +00:00
< / md-card >
2016-09-20 08:55:43 +00:00
2016-09-12 11:57:09 +00:00
< md-card flex layout = "column" >
2016-09-20 08:55:43 +00:00
< md-card-content >
2016-12-12 13:09:23 +00:00
< kbn-vis vis-height = "70px" vis-type = "metric" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(customLabel:'Level 10 or above alerts'),schema:metric,type:count)),listeners:(),params:(fontSize:20,handleNoResults:!t),title:'New%20Visualization22',type:metric))"
2016-09-22 12:02:46 +00:00
vis-filter="rule.AlertLevel:[10 TO *]"
>
2016-09-20 08:55:43 +00:00
< / kbn-vis >
2016-11-30 00:43:43 +00:00
2016-09-20 08:55:43 +00:00
< / md-card-content >
2016-09-12 11:57:09 +00:00
< / md-card >
2016-09-20 08:55:43 +00:00
2016-09-12 11:57:09 +00:00
< md-card flex layout = "column" >
2016-09-20 08:55:43 +00:00
< md-card-content >
2016-12-12 13:09:23 +00:00
< kbn-vis vis-height = "70px" vis-type = "metric" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'rule.groups:%20authentication_failed')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(customLabel:'Authentication failure'),schema:metric,type:count)),listeners:(),params:(fontSize:20,handleNoResults:!t),title:'New%20Visualization',type:metric))"
2016-09-22 12:02:46 +00:00
vis-filter="rule.groups: authentication_failed"
>
2016-09-20 08:55:43 +00:00
< / kbn-vis >
< / md-card-content >
2016-09-12 11:57:09 +00:00
< / md-card >
2016-09-20 08:55:43 +00:00
2016-09-12 11:57:09 +00:00
< md-card flex layout = "column" >
2016-09-20 08:55:43 +00:00
< md-card-content >
2016-12-12 13:09:23 +00:00
< kbn-vis vis-height = "70px" vis-type = "metric" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'rule.groups:%20authentication_success')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(customLabel:'Authentication success'),schema:metric,type:count)),listeners:(),params:(fontSize:20,handleNoResults:!t),title:'New%20Visualization',type:metric))"
2016-09-22 12:02:46 +00:00
vis-filter="rule.groups: authentication_success"
>
2016-09-20 08:55:43 +00:00
< / kbn-vis >
< / md-card-content >
< / md-card >
< / div >
< div layout = "row" layout-align = "center stretch" >
2016-11-30 00:43:43 +00:00
< md-card flex = "100" >
2016-09-20 08:55:43 +00:00
< md-card-content >
< span class = "md-headline" > Events< / span >
2016-12-12 13:09:23 +00:00
< kbn-vis vis-height = "120px" vis-type = "histogram" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(legendOpen:!f)),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(customInterval:'2h',extended_bounds:(),field:'@timestamp',interval:'auto',min_doc_count:1),schema:segment,type:date_histogram)),listeners:(),params:(addLegend:!t,addTimeMarker:!f,addTooltip:!t,defaultYExtents:!f,mode:stacked,scale:linear,setYExtents:!f,shareYAxis:!t,times:!(),yAxis:()),title:'New%20Visualization',type:histogram))"
2016-09-22 12:02:46 +00:00
vis-filter="*"
>
2016-09-20 08:55:43 +00:00
< / kbn-vis >
< / md-card-content >
< / md-card >
2016-11-30 00:43:43 +00:00
< / div >
< div layout = "row" layout-align = "center stretch" >
< md-card flex = "65" >
< md-card-content >
< span class = "md-headline" > Agents< / span >
2016-12-12 13:09:23 +00:00
< kbn-vis vis-height = "160px" vis-type = "area" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(customInterval:'2h',extended_bounds:(),field:'@timestamp',interval:auto,min_doc_count:1),schema:segment,type:date_histogram),(enabled:!t,id:'3',params:(field:AgentName,order:desc,orderBy:'1',size:10),schema:group,type:terms)),listeners:(),params:(addLegend:!t,addTimeMarker:!f,addTooltip:!t,defaultYExtents:!f,interpolate:linear,legendPosition:right,mode:overlap,scale:linear,setYExtents:!f,shareYAxis:!t,smoothLines:!t,times:!(),yAxis:()),title:'New%20Visualization',type:area))"
2016-11-30 00:43:43 +00:00
vis-filter="*"
>
< / kbn-vis >
< / md-card-content >
< / md-card >
< md-card layout = "column" flex = "45" >
2016-09-20 08:55:43 +00:00
< md-card-content >
2016-09-22 11:08:59 +00:00
< span class = "md-headline" > Agents status< / span >
2016-12-05 10:31:02 +00:00
< kbn-vis vis-height = "160px" vis-type = "line" vis-index-pattern = "wazuh-monitoring-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'2',params:(customInterval:'2h',extended_bounds:(),field:'@timestamp',interval:'auto',min_doc_count:1),schema:segment,type:date_histogram),(enabled:!t,id:'3',params:(field:id),schema:metric,type:cardinality),(enabled:!t,id:'4',params:(field:status,order:asc,orderBy:'3',size:5),schema:group,type:terms)),listeners:(),params:(addLegend:!t,addTimeMarker:!f,addTooltip:!t,defaultYExtents:!f,drawLinesBetweenPoints:!t,interpolate:linear,radiusRatio:9,scale:linear,setYExtents:!f,shareYAxis:!t,showCircles:!t,smoothLines:!f,times:!(),yAxis:()),title:'Agents Status',type:line))"
2016-09-20 08:55:43 +00:00
vis-filter="*">
< / kbn-vis >
< / md-card-content >
2016-09-12 11:57:09 +00:00
< / md-card >
2016-09-02 10:01:01 +00:00
2016-07-22 11:34:36 +00:00
2016-09-20 08:55:43 +00:00
< / div >
< div layout = "row" layout-align = "center stretch" >
< md-card flex layout = "column" >
< md-card-content style = "text-align: center;" >
2016-12-12 13:09:23 +00:00
< kbn-vis-value vis-height = "37px" vis-type = "table" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:srcuser,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'New%20Visualization',type:table))" vis-filter = "*" > < / kbn-vis-value >
2016-11-24 01:19:08 +00:00
< div class = "ng-binding" > Top source user< / div >
2016-09-20 08:55:43 +00:00
< / md-card-content >
< / md-card >
< md-card flex layout = "column" >
< md-card-content style = "text-align: center;" >
2016-12-12 13:09:23 +00:00
< kbn-vis-value vis-height = "37px" vis-type = "table" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:srcip,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'New%20Visualization',type:table))" vis-filter = "*" > < / kbn-vis-value >
2016-09-20 08:55:43 +00:00
< div class = "ng-binding" > Top source ip< / div >
< / md-card-content >
< / md-card >
< md-card flex layout = "column" >
< md-card-content style = "text-align: center;" >
2016-12-12 13:09:23 +00:00
< kbn-vis-value vis-height = "37px" vis-type = "table" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:rule.groups,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'New%20Visualization',type:table))" vis-filter = "*" > < / kbn-vis-value >
2016-09-20 08:55:43 +00:00
< div class = "ng-binding" > Top group< / div >
2016-11-23 20:53:41 +00:00
< / md-card-content >
2016-09-20 08:55:43 +00:00
< / md-card >
< md-card flex layout = "column" >
< md-card-content style = "text-align: center;" >
2016-12-12 13:09:23 +00:00
< kbn-vis-value vis-height = "37px" vis-type = "table" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:rule.PCI_DSS,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'New%20Visualization',type:table))" vis-filter = "*" > < / kbn-vis-value >
2016-09-20 08:55:43 +00:00
< div class = "ng-binding" > Top PCI DSS requirement< / div >
< / md-card-content >
< / md-card >
< / div >
2016-09-12 11:57:09 +00:00
2016-10-30 19:23:04 +00:00
< div layout = "row" layout-align = "center stretch" >
2016-09-22 11:08:59 +00:00
< md-card flex = "50" >
< md-card-content >
< span class = "md-headline" > Groups< / span >
2016-12-12 13:09:23 +00:00
< kbn-vis vis-height = "215px" vis-type = "histogram" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'3',params:(field:rule.groups,order:desc,orderBy:'1',size:10),schema:group,type:terms),(enabled:!t,id:'2',params:(customInterval:'2h',extended_bounds:(),field:'@timestamp',interval:'auto',min_doc_count:1),schema:segment,type:date_histogram)),listeners:(),params:(addLegend:!t,addTimeMarker:!f,addTooltip:!t,defaultYExtents:!f,interpolate:linear,mode:stacked,scale:linear,setYExtents:!f,shareYAxis:!t,smoothLines:!f,times:!(),yAxis:()),title:'Signature:%20Area%20Chart',type:area))"
2016-11-23 21:29:44 +00:00
vis-filter="*"
2016-09-22 11:08:59 +00:00
< / kbn-vis >
< / md-card-content >
< / md-card >
< md-card layout = "column" flex = "50" >
< md-card-content >
< span class = "md-headline" > Alert level evolution< / span >
2016-12-12 13:09:23 +00:00
< kbn-vis vis-height = "215px" vis-type = "line" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(customInterval:'1h',extended_bounds:(),field:'@timestamp',interval:'auto',min_doc_count:1),schema:segment,type:date_histogram),(enabled:!t,id:'3',params:(field:rule.AlertLevel,order:desc,orderBy:'1',size:10),schema:group,type:terms)),listeners:(),params:(addLegend:!t,addTimeMarker:!f,addTooltip:!t,defaultYExtents:!f,drawLinesBetweenPoints:!t,interpolate:linear,radiusRatio:9,scale:linear,setYExtents:!f,shareYAxis:!t,showCircles:!t,smoothLines:!f,times:!(),yAxis:()),title:'Alert level evolution',type:line))"
2016-11-23 21:29:44 +00:00
vis-filter="*"
2016-09-22 11:08:59 +00:00
< / kbn-vis >
< / md-card-content >
< / md-card >
< / div >
2016-09-20 08:55:43 +00:00
< div layout = "row" layout-align = "center stretch" >
< md-card flex >
< md-card-title >
< md-card-title-text >
2016-09-20 18:07:07 +00:00
< span class = "md-headline" > Alerts summary< / span >
2016-09-20 08:55:43 +00:00
< / md-card-title-text >
< / md-card-title >
< md-card-content >
2016-12-12 13:09:23 +00:00
< kbn-vis vis-height = "460px" vis-type = "table" vis-index-pattern = "wazuh-alerts-*" vis-a = "(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:5,direction:desc)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(customLabel:'Rule ID',field:rule.sidid,order:desc,orderBy:'1',size:20),schema:bucket,type:terms),(enabled:!t,id:'3',params:(customLabel:Description,field:rule.description,order:desc,orderBy:'1',size:1),schema:bucket,type:terms),(enabled:!t,id:'4',params:(customLabel:Level,field:rule.AlertLevel,order:desc,orderBy:'1',size:1),schema:bucket,type:terms),(enabled:!t,id:'5',params:(customLabel:Groups,field:rule.groups,order:desc,orderBy:'1',size:1),schema:bucket,type:terms),(enabled:!t,id:'6',params:(customLabel:'PCI DSS',field:rule.PCI_DSS,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:10,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:5,direction:desc),totalFunc:sum),title:'New%20Visualization',type:table))"
2016-09-20 18:07:07 +00:00
vis-filter="*">
< / kbn-vis >
2016-09-20 08:55:43 +00:00
< / md-card-content >
< / md-card >
< / div >
2016-07-22 11:34:36 +00:00
2016-09-20 08:55:43 +00:00
< div flex > < / div >
2016-09-05 16:39:10 +00:00
2016-09-20 08:55:43 +00:00
< / md-content >