mirror of
https://github.com/valitydev/wazuh-kibana-app.git
synced 2024-11-07 02:15:24 +00:00
Using new visualization directive
This commit is contained in:
parent
df3482958e
commit
7fd4b26217
@ -100,7 +100,7 @@ app.controller('overviewController', function ($scope, appState, $window, generi
|
||||
var deferred = $q.defer();
|
||||
|
||||
genericReq.request('POST', '/api/wazuh-elastic/alerts-count/', payload).then(function (data) {
|
||||
if(data.data != 0){
|
||||
if(data.data.data != 0){
|
||||
deferred.resolve(true);
|
||||
}
|
||||
else
|
||||
|
@ -236,7 +236,6 @@ require('ui/modules').get('app/wazuh', []).controller('discoverW', function($sco
|
||||
$state.query = ($scope.stateQuery ? $scope.stateQuery : '');
|
||||
|
||||
function getStateDefaults() {
|
||||
console.log($scope.indexPattern.id);
|
||||
return {
|
||||
query: $scope.disFilter ? $scope.disFilter : '',
|
||||
sort: disDecoded.sort.length > 0 ? disDecoded.sort : getSort.array(savedSearch.sort, $scope.indexPattern),
|
||||
@ -664,7 +663,6 @@ require('ui/modules').get('app/wazuh', []).controller('discoverW', function($sco
|
||||
});
|
||||
|
||||
function resolveIndexPatternLoading() {
|
||||
console.log($scope._ip);
|
||||
const props = $scope._ip;
|
||||
const loaded = props.loaded;
|
||||
const stateVal = props.stateVal;
|
||||
|
@ -6,6 +6,8 @@ import { FilterBarClickHandlerProvider } from 'ui/filter_bar/filter_bar_click_ha
|
||||
import { SavedObjectsClientProvider } from 'ui/saved_objects';
|
||||
import { StateProvider } from 'ui/state_management/state';
|
||||
import { migrateLegacyQuery } from 'ui/utils/migrateLegacyQuery';
|
||||
import { VisRequestHandlersRegistryProvider } from 'ui/registry/vis_request_handlers';
|
||||
import { VisResponseHandlersRegistryProvider } from 'ui/registry/vis_response_handlers';
|
||||
|
||||
|
||||
|
||||
@ -85,6 +87,13 @@ require('ui/modules').get('app/wazuh', []).controller('VisController', function
|
||||
// Render visualization
|
||||
$rootScope.visCounter++;
|
||||
$scope.savedVis = $scope.newVis;
|
||||
$scope.vis = $scope.savedVis.vis;
|
||||
$scope.vis.editorMode = false;
|
||||
$scope.vis.visualizeScope = true;
|
||||
|
||||
if (!$scope.appState) $scope.appState = getAppState();
|
||||
|
||||
|
||||
renderVisualization();
|
||||
},function () {
|
||||
console.log("Error: Could not load visualization: "+visDecoded.vis.title);
|
||||
@ -174,7 +183,37 @@ require('ui/modules').get('app/wazuh', []).controller('VisController', function
|
||||
|
||||
// Fetch visualization
|
||||
$scope.fetch = function ()
|
||||
{
|
||||
{
|
||||
const requestHandlers = Private(VisRequestHandlersRegistryProvider);
|
||||
const responseHandlers = Private(VisResponseHandlersRegistryProvider);
|
||||
|
||||
function getHandler(from, name) {
|
||||
if (typeof name === 'function') return name;
|
||||
return from.find(handler => handler.name === name).handler;
|
||||
}
|
||||
|
||||
const requestHandler = getHandler(requestHandlers, $scope.vis.type.requestHandler);
|
||||
const responseHandler = getHandler(responseHandlers, $scope.vis.type.responseHandler);
|
||||
|
||||
requestHandler($scope.vis, $scope.appState, $scope.uiState, $scope.queryFilter, $scope.savedVis.searchSource)
|
||||
.then(requestHandlerResponse => {
|
||||
const canSkipResponseHandler = (
|
||||
$scope.previousRequestHandlerResponse && $scope.previousRequestHandlerResponse === requestHandlerResponse &&
|
||||
$scope.previousVisState && _.isEqual($scope.previousVisState, $scope.vis.getState())
|
||||
);
|
||||
|
||||
$scope.previousVisState = $scope.vis.getState();
|
||||
$scope.previousRequestHandlerResponse = requestHandlerResponse;
|
||||
return canSkipResponseHandler ? $scope.visData : responseHandler($scope.vis, requestHandlerResponse);
|
||||
|
||||
})
|
||||
.then(resp => {
|
||||
$scope.visData = resp;
|
||||
$scope.$apply();
|
||||
$scope.$broadcast('render');
|
||||
return resp;
|
||||
});
|
||||
|
||||
if($scope.visIndexPattern == "wazuh-alerts-*"){
|
||||
$scope.searchSource.set('filter', $scope.queryFilter.getFilters());
|
||||
$scope.searchSource.set('query', migrateLegacyQuery($scope.filter.current));
|
||||
|
@ -3,6 +3,10 @@ body{
|
||||
width:100%;
|
||||
}
|
||||
|
||||
.vis-type-metric{
|
||||
margin-top:-60px;
|
||||
}
|
||||
|
||||
.no-legend .metric {
|
||||
text-align: center;
|
||||
}
|
||||
@ -865,40 +869,41 @@ md-content._md.layout-row {
|
||||
display: none;
|
||||
}
|
||||
|
||||
.kibanaVisualizationValue thead{
|
||||
kbn-vis-value thead{
|
||||
display: none;
|
||||
}
|
||||
|
||||
.kibanaVisualizationValue .table>tbody>tr>td {
|
||||
border: none;
|
||||
kbn-vis-value td {
|
||||
border: none !important;
|
||||
padding: 0px;
|
||||
}
|
||||
.kibanaVisualizationValue .numeric-value {
|
||||
kbn-vis-value .numeric-value {
|
||||
display: none;
|
||||
}
|
||||
.kibanaVisualizationValue .pagination-container {
|
||||
kbn-vis-value .pagination-container {
|
||||
display: none;
|
||||
}
|
||||
|
||||
.kibanaVisualizationValue .table {
|
||||
kbn-vis-value .table {
|
||||
margin-bottom: 0px;
|
||||
}
|
||||
|
||||
.kibanaVisualizationValue .cell-hover {
|
||||
kbn-vis-value .cell-hover {
|
||||
color: rgba(0,0,0,0.87);
|
||||
font-size: 16pt;
|
||||
border: none;
|
||||
}
|
||||
|
||||
.kibanaVisualizationValue .agg-table-paginated .cell-hover:hover {
|
||||
kbn-vis-value .agg-table-paginated .cell-hover:hover {
|
||||
background-color: white;
|
||||
}
|
||||
.kibanaVisualizationValue h2 {
|
||||
kbn-vis-value h2 {
|
||||
display: none;
|
||||
}
|
||||
.kibanaVisualizationValue .h4, .kibanaVisualizationValue .h5, .kibanaVisualizationValue .h6, .kibanaVisualizationValue h4, .kibanaVisualizationValue h5, .kibanaVisualizationValue h6 {
|
||||
kbn-vis-value .h4, kbn-vis-value .h5, kbn-vis-value .h6, kbn-vis-value h4, kbn-vis-value h5, kbn-vis-value h6 {
|
||||
margin: 0px;
|
||||
}
|
||||
.kibanaVisualizationValue .table .table-condensed td:nth-child(2) {
|
||||
kbn-vis-value .table .table-condensed td:nth-child(2) {
|
||||
display: none
|
||||
}
|
||||
|
||||
|
@ -23,7 +23,7 @@
|
||||
|
||||
<div flex ng-show="hideRing(15) && results && !loading" ng-if="tabView == 'panels' && !load" layout="column">
|
||||
<md-progress-linear class="md-accent" md-mode="indeterminate" ng-show="load"></md-progress-linear>
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="10" layout="column">
|
||||
<md-card-content class="metric">
|
||||
<kbn-vis-value vis-height="80px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source user',type:table))" vis-filter="rule.groups: audit AND rule.id: 80790"></kbn-vis-value>
|
||||
@ -57,7 +57,7 @@
|
||||
</md-content>
|
||||
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="33">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -97,7 +97,7 @@
|
||||
</md-card>
|
||||
</md-content>
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="100">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -113,7 +113,7 @@
|
||||
</md-content>
|
||||
|
||||
|
||||
<md-content style="height: 448px" layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content style="height: 448px" layout="row" layout-align="center stretch">
|
||||
<md-content flex="20" layout="column" layout-align="center stretch">
|
||||
|
||||
<md-card flex="50">
|
||||
@ -189,7 +189,7 @@
|
||||
|
||||
</md-content>
|
||||
|
||||
<md-content layout-align="center stretch" class="no-legend">
|
||||
<md-content layout-align="center stretch">
|
||||
<md-card flex>
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
|
@ -24,7 +24,7 @@
|
||||
<!-- View: Panels -->
|
||||
<div flex layout="column" ng-show='hideRing(8) && results && !loading' ng-if="tabView == 'panels' && !load">
|
||||
<md-progress-linear class="md-accent" md-mode="indeterminate" ng-show="load"></md-progress-linear>
|
||||
<md-content layout="row" class="no-legend">
|
||||
<md-content layout="row">
|
||||
<md-card flex="33">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -60,7 +60,7 @@
|
||||
</md-card>
|
||||
|
||||
</md-content>
|
||||
<md-content layout="row" class="no-legend">
|
||||
<md-content layout="row">
|
||||
<md-card flex>
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -71,7 +71,7 @@
|
||||
</kbn-vis>
|
||||
</md-card>
|
||||
</md-content>
|
||||
<md-content layout="row" class="no-legend">
|
||||
<md-content layout="row">
|
||||
<md-card flex="33">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -111,7 +111,7 @@
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
</md-content>
|
||||
<div layout="row" layout-align="space-between stretch" class="no-legend">
|
||||
<div layout="row" layout-align="space-between stretch">
|
||||
<md-card flex="100">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
|
@ -24,7 +24,7 @@
|
||||
|
||||
<div flex ng-show="hideRing(13) && results && !loading" ng-if="tabView == 'panels' && !load" layout="column">
|
||||
<md-progress-linear class="md-accent" md-mode="indeterminate" ng-show="load"></md-progress-linear>
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="20" layout="column">
|
||||
<md-card-content class="metric">
|
||||
<kbn-vis-value style="margin-top: 6px" vis-height="37px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(field:data.oscap.scan.score),schema:metric,type:max)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:max),title:'Highest score',type:table))" vis-filter="agent.name: {{_agent.name ? _agent.name : '*'}}"></kbn-vis-value>
|
||||
@ -52,7 +52,7 @@
|
||||
</md-content>
|
||||
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="25">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -104,7 +104,7 @@
|
||||
</md-card>
|
||||
</md-content>
|
||||
|
||||
<md-content layout="row" layout-align="start stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="start stretch">
|
||||
<md-card flex>
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -120,7 +120,7 @@
|
||||
</md-content>
|
||||
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="50">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -149,7 +149,7 @@
|
||||
|
||||
</md-content>
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="100" layout="column">
|
||||
<md-card-content style="text-align: center;">
|
||||
<kbn-vis-value vis-height="44px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:data.oscap.check.title,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'New%20Visualization',type:table))" vis-filter="data.oscap.check.result: fail AND rule.groups:oscap">
|
||||
@ -160,7 +160,7 @@
|
||||
</md-content>
|
||||
|
||||
|
||||
<md-content layout-align="center stretch" class="no-legend">
|
||||
<md-content layout-align="center stretch">
|
||||
<md-card flex>
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
|
@ -4,7 +4,7 @@
|
||||
<kbn-searchbar ng-if="tabView == 'panels'"></kbn-searchbar>
|
||||
<div class='uil-ring-css' ng-if="tabView == 'panels'" ng-show='!hideRing(7)'><div></div></div>
|
||||
<div ng-show='hideRing(7) && !loading' ng-if="tabView == 'panels'">
|
||||
<md-content class="no-legend" layout="row" class="no-legend">
|
||||
<md-content layout="row">
|
||||
<md-card flex layout="column">
|
||||
<md-card-content style="text-align: center;">
|
||||
<div class="metric-value ng-binding" style="font-size: 14pt;">{{agentInfo.name}}</div>
|
||||
@ -32,7 +32,7 @@
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
</md-content>
|
||||
<md-content layout="row" class="no-legend">
|
||||
<md-content layout="row">
|
||||
<md-card flex layout="column" ng-show="agentInfo.id != '000'">
|
||||
<md-card-content style="text-align: center;">
|
||||
<div class="metric-value ng-binding" style="font-size: 14pt;">{{agentInfo.lastKeepAlive}}</div>
|
||||
@ -88,7 +88,7 @@
|
||||
|
||||
<!-- View: Panels -->
|
||||
<div ng-show='hideRing(7) && results' ng-if="tabView == 'panels' && !load">
|
||||
<md-content layout="row" class="no-legend">
|
||||
<md-content layout="row">
|
||||
<md-card flex="33">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -127,7 +127,7 @@
|
||||
</md-card>
|
||||
|
||||
</md-content>
|
||||
<md-content layout="row" layout-align="start stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="start stretch">
|
||||
<md-card flex class="visBox-alert-level-evolution">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -155,7 +155,7 @@
|
||||
</md-card>
|
||||
|
||||
</md-content>
|
||||
<md-content layout="row" class="no-legend">
|
||||
<md-content layout="row">
|
||||
<md-card flex="60">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
|
@ -24,7 +24,7 @@
|
||||
|
||||
<div flex ng-show="hideRing(3) && results && !loading" ng-if="tabView == 'panels' && !load" layout="column">
|
||||
<md-progress-linear class="md-accent" md-mode="indeterminate" ng-show="load"></md-progress-linear>
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex>
|
||||
<md-tabs md-selected="selectedIndex" md-border-bottom md-dynamic-height id="pciReq_tab">
|
||||
<md-tab ng-repeat="tab in tabs" ng-disabled="tab.disabled" label="{{tab.title}}">
|
||||
@ -37,7 +37,7 @@
|
||||
</md-card>
|
||||
</md-content>
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="70">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -64,7 +64,7 @@
|
||||
</md-card>
|
||||
</md-content>
|
||||
|
||||
<md-content layout-align="center stretch" class="no-legend">
|
||||
<md-content layout-align="center stretch">
|
||||
<md-card flex>
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
|
@ -24,7 +24,7 @@
|
||||
|
||||
<div flex ng-show="hideRing(4) && results && !loading" ng-if="tabView == 'panels' && !load" layout="column">
|
||||
<md-progress-linear class="md-accent" md-mode="indeterminate" ng-show="load"></md-progress-linear>
|
||||
<md-content layout="row" class="no-legend">
|
||||
<md-content layout="row">
|
||||
<md-card flex="50">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -64,7 +64,7 @@
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
</md-content>
|
||||
<div layout="row" layout-align="space-between stretch" class="no-legend">
|
||||
<div layout="row" layout-align="space-between stretch">
|
||||
<md-card flex="100">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
|
@ -42,18 +42,13 @@
|
||||
|
||||
<div class="vis-editor-content">
|
||||
<div class="vis-editor-canvas" flex="auto">
|
||||
<visualize
|
||||
show-spy-panel="chrome.getVisible()"
|
||||
editor-mode="true"
|
||||
saved-obj="savedVis"
|
||||
app-state="state"
|
||||
<visualization
|
||||
vis="vis"
|
||||
vis-data="visData"
|
||||
ui-state="uiState"
|
||||
data-shared-item
|
||||
data-title="{{savedVis.lastSavedTitle}}"
|
||||
data-description="{{savedVis.description}}"
|
||||
render-counter
|
||||
>
|
||||
</visualize>
|
||||
search-source="savedVis.searchSource"
|
||||
show-spy-panel="true"
|
||||
/>
|
||||
|
||||
</div>
|
||||
</div>
|
||||
|
@ -42,19 +42,14 @@
|
||||
|
||||
<div class="vis-editor-content">
|
||||
<div class="vis-editor-canvas" flex="auto">
|
||||
<visualize
|
||||
class="kibanaVisualizationValue"
|
||||
show-spy-panel="chrome.getVisible()"
|
||||
editor-mode="true"
|
||||
saved-obj="savedVis"
|
||||
app-state="state"
|
||||
<visualization
|
||||
vis="vis"
|
||||
vis-data="visData"
|
||||
ui-state="uiState"
|
||||
data-shared-item
|
||||
data-title="{{savedVis.lastSavedTitle}}"
|
||||
data-description="{{savedVis.description}}"
|
||||
render-counter
|
||||
>
|
||||
</visualize>
|
||||
search-source="savedVis.searchSource"
|
||||
show-spy-panel="true"
|
||||
/>
|
||||
|
||||
|
||||
</div>
|
||||
</div>
|
||||
|
@ -24,7 +24,7 @@
|
||||
|
||||
<!-- View: Panels -->
|
||||
<div ng-show="hideRing(16) && results && !loading" ng-if="tabView == 'panels'">
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="10" layout="column">
|
||||
<md-card-content class="metric">
|
||||
<kbn-vis-value vis-height="44px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source user',type:table))" vis-filter="rule.groups: audit AND rule.id: 80790"></kbn-vis-value>
|
||||
@ -58,7 +58,7 @@
|
||||
</md-content>
|
||||
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="25">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -110,7 +110,7 @@
|
||||
</md-card>
|
||||
</md-content>
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="100">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -126,7 +126,7 @@
|
||||
</md-content>
|
||||
|
||||
|
||||
<md-content style="height: 448px" layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content style="height: 448px" layout="row" layout-align="center stretch">
|
||||
<md-content flex="20" layout="column" layout-align="center stretch">
|
||||
|
||||
<md-card flex="50">
|
||||
@ -202,7 +202,7 @@
|
||||
|
||||
</md-content>
|
||||
|
||||
<md-content layout-align="center stretch" class="no-legend">
|
||||
<md-content layout-align="center stretch">
|
||||
<md-card flex>
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
|
@ -27,27 +27,26 @@
|
||||
<md-content layout="row">
|
||||
<div flex="10" layout="column" class="no-legend">
|
||||
<md-card>
|
||||
<md-card-content class="metric wide-metric">
|
||||
<kbn-vis-value vis-height="44px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'rule.groups:%22syscheck%22')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source user',type:table))" vis-filter="rule.id: 554"></kbn-vis-value>
|
||||
<div class="ng-binding">Added</div>
|
||||
<md-card-content>
|
||||
<kbn-vis vis-height="165px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'rule.groups:%22syscheck%22')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(customLabel:Added),schema:metric,type:count)),listeners:(),params:(fontSize:20,handleNoResults:!t),title:'New%20Visualization',type:metric))" vis-filter='rule.id: 554'>
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
<md-card>
|
||||
<md-card-content class="metric wide-metric">
|
||||
<kbn-vis-value vis-height="44px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'rule.groups:%22syscheck%22%20AND%20full_log:%22Integrity%20checksum%20changed%22%20NOT%20location:%20syscheck-registry')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source user',type:table))" vis-filter="(rule.id: 550 OR rule.id: 551 OR rule.id: 552 OR rule.id: 555)"></kbn-vis-value>
|
||||
<div class="ng-binding">Modified</div>
|
||||
<md-card-content>
|
||||
<kbn-vis vis-height="165px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'rule.groups:%22syscheck%22%20AND%20full_log:%22Integrity%20checksum%20changed%22%20NOT%20location:%20syscheck-registry')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(customLabel:'Modified'),schema:metric,type:count)),listeners:(),params:(fontSize:20,handleNoResults:!t),title:'New%20Visualization',type:metric))" vis-filter='(rule.id: 550 OR rule.id: 551 OR rule.id: 552 OR rule.id: 555)'>
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
<md-card>
|
||||
<md-card-content class="metric wide-metric">
|
||||
<kbn-vis-value vis-height="44px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'rule.groups:%22syscheck%22%20AND%20full_log:%22Integrity%20checksum%20changed%22%20NOT%20location:%20syscheck-registry')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source user',type:table))" vis-filter="rule.id: 553"></kbn-vis-value>
|
||||
<div class="ng-binding">Deleted</div>
|
||||
<md-card-content>
|
||||
<kbn-vis vis-height="165px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'rule.groups:%22syscheck%22%20AND%20full_log:%22was%20deleted%22%20NOT%20location:%20syscheck-registry')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(customLabel:Deleted),schema:metric,type:count)),listeners:(),params:(fontSize:20,handleNoResults:!t),title:'New%20Visualization',type:metric))" vis-filter='rule.id: 553'>
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
|
||||
</div>
|
||||
|
||||
<div flex layout="column" class="no-legend">
|
||||
<div flex layout="column">
|
||||
<md-card>
|
||||
<md-card-content>
|
||||
<span class="md-headline">Events over time</span>
|
||||
@ -58,7 +57,7 @@
|
||||
|
||||
</div>
|
||||
|
||||
<div flex="20" layout="column" class="no-legend">
|
||||
<div flex="20" layout="column">
|
||||
<md-card>
|
||||
<md-card-content>
|
||||
<span class="md-headline">Top user owners</span>
|
||||
@ -78,7 +77,7 @@
|
||||
|
||||
</md-content>
|
||||
|
||||
<md-content class="no-legend" layout="row">
|
||||
<md-content layout="row">
|
||||
<md-card flex layout="column">
|
||||
<md-card-content style="text-align: center;">
|
||||
<kbn-vis-value vis-height="37px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(field:'@timestamp'),schema:metric,type:max),(enabled:!t,id:'2',params:(field:syscheck.path,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'New%20Visualization',type:table))"
|
||||
@ -106,7 +105,7 @@
|
||||
|
||||
</md-content>
|
||||
|
||||
<md-content layout="row" class="no-legend">
|
||||
<md-content layout="row">
|
||||
|
||||
<md-card flex="33">
|
||||
<md-card-title>
|
||||
@ -147,7 +146,7 @@
|
||||
|
||||
</md-content>
|
||||
|
||||
<md-content layout="row" flex="100" class="no-legend">
|
||||
<md-content layout="row" flex="100">
|
||||
<md-card flex="20" layout="column">
|
||||
<md-card-content style="text-align: center;">
|
||||
<kbn-vis-value vis-height="37px" vis-index-pattern="wazuh-alerts-*"vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:agent.name,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'New%20Visualization',type:table))" vis-filter="location: syscheck"></kbn-vis-value>
|
||||
@ -175,7 +174,7 @@
|
||||
|
||||
</md-content>
|
||||
|
||||
<md-content flex layout="row" class="no-legend">
|
||||
<md-content flex layout="row">
|
||||
<md-card flex>
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
|
@ -23,53 +23,42 @@
|
||||
|
||||
<!-- View: Panels -->
|
||||
<div ng-show="hideRing(15) && results && !loading" ng-if="tabView == 'panels'">
|
||||
<div layout="row" layout-align="center stretch" class="no-legend">
|
||||
<div layout="row" layout-align="center stretch">
|
||||
<md-card flex layout="column">
|
||||
<md-card-content class="metric">
|
||||
|
||||
<kbn-vis-value vis-height="35px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:(group:metrics),type:count)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source user',type:table))" vis-filter=""></kbn-vis-value>
|
||||
<div class="ng-binding">Alerts</div>
|
||||
|
||||
<kbn-vis vis-height="115px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(customLabel:'Alerts'),schema:metric,type:count)),listeners:(),params:(fontSize:20,handleNoResults:!t),title:'Metric Alerts',type:metric))"
|
||||
vis-filter="*">
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
|
||||
<md-card flex layout="column">
|
||||
<md-card-content class="metric">
|
||||
|
||||
<kbn-vis-value vis-height="35px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:(group:metrics),type:count)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source user',type:table))" vis-filter="rule.level:[12 TO *]"></kbn-vis-value>
|
||||
<div class="ng-binding">Level 12 or above alerts</div>
|
||||
|
||||
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
|
||||
<md-card flex layout="column">
|
||||
<md-card-content class="metric">
|
||||
|
||||
|
||||
<kbn-vis-value vis-height="35px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source user',type:table))" vis-filter="(rule.groups: authentication_failed OR rule.groups: authentication_failures)"></kbn-vis-value>
|
||||
|
||||
<div class="ng-binding">Authentication failure</div>
|
||||
|
||||
<kbn-vis vis-height="115px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(customLabel:'Level 12 or above alerts'),schema:metric,type:count)),listeners:(),params:(fontSize:20,handleNoResults:!t),title:'Metric Level 12 or above',type:metric))"
|
||||
vis-filter="rule.level:[12 TO *]">
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
|
||||
<md-card flex layout="column">
|
||||
<md-card-content class="metric">
|
||||
|
||||
<kbn-vis-value vis-height="35px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source user',type:table))" vis-filter="rule.groups: authentication_success"></kbn-vis-value>
|
||||
|
||||
<div class="ng-binding">Authentication success</div>
|
||||
<kbn-vis vis-height="115px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(customLabel:'Authentication failure'),schema:metric,type:count)),listeners:(),params:(fontSize:20,handleNoResults:!t),title:'Metric auth failed',type:metric))"
|
||||
vis-filter="(rule.groups: authentication_failed OR rule.groups: authentication_failures)">
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
<md-card flex layout="column">
|
||||
<md-card-content class="metric">
|
||||
<kbn-vis vis-height="115px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(customLabel:'Authentication success'),schema:metric,type:count)),listeners:(),params:(fontSize:20,handleNoResults:!t),title:'Metric auth success',type:metric))"
|
||||
vis-filter="rule.groups: authentication_success">
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
</div>
|
||||
|
||||
<div layout="row" layout-align="start stretch" class="no-legend">
|
||||
<div layout="row" layout-align="start stretch">
|
||||
<md-card flex class="visBox-alert-level-evolution">
|
||||
<md-card-content>
|
||||
<span class="md-headline">Alert level evolution</span>
|
||||
<kbn-vis vis-height="150px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'3',params:(field:rule.level,order:desc,orderBy:'1',size:5),schema:group,type:terms),(enabled:!t,id:'2',params:(customInterval:'1h',extended_bounds:(),field:'@timestamp',interval:custom,min_doc_count:1),schema:segment,type:date_histogram)),listeners:(),params:(addLegend:!t,addTimeMarker:!f,addTooltip:!t,defaultYExtents:!f,drawLinesBetweenPoints:!t,interpolate:cardinal,legendPosition:right,radiusRatio:9,scale:linear,setYExtents:!f,shareYAxis:!t,showCircles:!t,smoothLines:!f,times:!(),yAxis:()),title:'Alert%20level%20evolution',type:line))"
|
||||
vis-filter="">
|
||||
<kbn-vis vis-height="150px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'3',params:(field:rule.level,order:desc,orderBy:'1',size:5),schema:group,type:terms),(enabled:!t,id:'2',params:(customInterval:'1h',extended_bounds:(),field:'@timestamp',interval:'custom',min_doc_count:1),schema:segment,type:date_histogram)),listeners:(),params:(addLegend:!t,addTimeMarker:!f,addTooltip:!t,defaultYExtents:!f,drawLinesBetweenPoints:!t,interpolate:cardinal,legendPosition:right,radiusRatio:9,scale:linear,setYExtents:!f,shareYAxis:!t,showCircles:!t,smoothLines:!f,times:!(),yAxis:()),title:'Alert%20level%20evolution',type:line))"
|
||||
vis-filter="*">
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
@ -77,67 +66,67 @@
|
||||
<md-card-content>
|
||||
<span class="md-headline">Alerts</span>
|
||||
<kbn-vis vis-height="150px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(legendOpen:!f)),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(customInterval:'2h',extended_bounds:(),field:'@timestamp',interval:'custom',min_doc_count:1),schema:segment,type:date_histogram)),listeners:(),params:(addLegend:!t,addTimeMarker:!f,addTooltip:!t,defaultYExtents:!f,mode:stacked,scale:linear,setYExtents:!f,shareYAxis:!t,times:!(),yAxis:()),title:'Alerts',type:histogram))"
|
||||
vis-filter="">
|
||||
vis-filter="*">
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
</div>
|
||||
|
||||
<div layout="row" layout-align="space-between stretch" class="no-legend">
|
||||
<div layout="row" layout-align="space-between stretch">
|
||||
<md-card flex>
|
||||
<md-card-content>
|
||||
<span class="md-headline">Top 5 agents</span>
|
||||
<kbn-vis vis-height="170px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:agent.name,order:desc,orderBy:'1',size:5),schema:segment,type:terms)),listeners:(),params:(addLegend:!t,addTooltip:!t,isDonut:!t,shareYAxis:!t),title:'Top agents',type:pie))"
|
||||
vis-filter="">
|
||||
vis-filter="*">
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
<md-card flex>
|
||||
<md-card-content>
|
||||
<span class="md-headline">Alerts evolution - Top 5 agents</span>
|
||||
<kbn-vis vis-height="193px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'3',params:(field:agent.name,order:desc,orderBy:'1',size:5),schema:group,type:terms),(enabled:!t,id:'2',params:(customInterval:'2h',extended_bounds:(),field:'@timestamp',interval:custom,min_doc_count:1),schema:segment,type:date_histogram)),listeners:(),params:(addLegend:!t,addTimeMarker:!f,addTooltip:!t,defaultYExtents:!f,interpolate:linear,legendPosition:right,mode:stacked,scale:linear,setYExtents:!f,shareYAxis:!t,smoothLines:!t,times:!(),yAxis:()),title:Agents,type:area))"
|
||||
vis-filter=""
|
||||
<span class="md-headline">Alerts evolution - Top 5 agents</span>
|
||||
<kbn-vis vis-height="193px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'3',params:(field:agent.name,order:desc,orderBy:'1',size:5),schema:group,type:terms),(enabled:!t,id:'2',params:(customInterval:'2h',extended_bounds:(),field:'@timestamp',interval:'custom',min_doc_count:1),schema:segment,type:date_histogram)),listeners:(),params:(addLegend:!t,addTimeMarker:!f,addTooltip:!t,defaultYExtents:!f,interpolate:linear,legendPosition:right,mode:stacked,scale:linear,setYExtents:!f,shareYAxis:!t,smoothLines:!t,times:!(),yAxis:()),title:Agents,type:area))"
|
||||
vis-filter="*"
|
||||
>
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
<!--<md-card layout="column" flex="35">
|
||||
<md-card layout="column" flex="35">
|
||||
<md-card-content>
|
||||
<span class="md-headline">Agents status</span>
|
||||
<kbn-vis vis-height="193px" vis-index-pattern="wazuh-monitoring-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'2',params:(customInterval:'2h',extended_bounds:(),field:'@timestamp',interval:'custom',min_doc_count:1),schema:segment,type:date_histogram),(enabled:!t,id:'3',params:(field:id),schema:metric,type:cardinality),(enabled:!t,id:'4',params:(field:status,order:asc,orderBy:'3',size:5),schema:group,type:terms)),listeners:(),params:(addLegend:!t,addTimeMarker:!f,addTooltip:!t,defaultYExtents:!f,drawLinesBetweenPoints:!t,interpolate:linear,radiusRatio:9,scale:linear,setYExtents:!f,shareYAxis:!t,showCircles:!t,smoothLines:!f,times:!(),yAxis:()),title:'Agents Status',type:line))" vis-filter="manager.name: {{defaultManager}}">
|
||||
<kbn-vis vis-height="193px" vis-index-pattern="wazuh-monitoring-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(),vis:(aggs:!((enabled:!t,id:'2',params:(customInterval:'2h',extended_bounds:(),field:'@timestamp',interval:'custom',min_doc_count:1),schema:segment,type:date_histogram),(enabled:!t,id:'3',params:(field:id),schema:metric,type:cardinality),(enabled:!t,id:'4',params:(field:data.status,order:asc,orderBy:'3',size:5),schema:group,type:terms)),listeners:(),params:(addLegend:!t,addTimeMarker:!f,addTooltip:!t,defaultYExtents:!f,drawLinesBetweenPoints:!t,interpolate:linear,radiusRatio:9,scale:linear,setYExtents:!f,shareYAxis:!t,showCircles:!t,smoothLines:!f,times:!(),yAxis:()),title:'Agents Status',type:line))"
|
||||
vis-filter="manager.name: {{defaultManager}}">
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>-->
|
||||
</md-card>
|
||||
</div>
|
||||
|
||||
<div class="no-legend" layout="row" layout-align="center stretch">
|
||||
|
||||
<div layout="row" layout-align="center stretch">
|
||||
<md-card flex layout="column">
|
||||
<md-card-content style="text-align: center;">
|
||||
<kbn-vis-value vis-height="29px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:data.srcuser,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source user',type:table))" vis-filter=""></kbn-vis-value>
|
||||
<kbn-vis-value vis-height="45px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!f,id:'1',params:(),schema:(group:metrics),type:count),(enabled:!t,id:'2',params:(field:data.srcuser,order:desc,orderBy:'1',size:1),schema:(group:buckets),type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source user',type:table))" vis-filter="*"></kbn-vis-value>
|
||||
<div class="ng-binding">Top source user</div>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
<md-card flex layout="column">
|
||||
<md-card-content style="text-align: center;">
|
||||
<kbn-vis-value vis-height="29px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:data.srcip,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source ip',type:table))" vis-filter=""></kbn-vis-value>
|
||||
<kbn-vis-value vis-height="45px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:data.srcip,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top source ip',type:table))" vis-filter="*"></kbn-vis-value>
|
||||
<div class="ng-binding">Top source ip</div>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
<md-card flex layout="column">
|
||||
<md-card-content style="text-align: center;">
|
||||
<kbn-vis-value vis-height="29px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:rule.groups,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top group',type:table))" vis-filter=""></kbn-vis-value>
|
||||
<kbn-vis-value vis-height="45px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:rule.groups,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top group',type:table))" vis-filter="*"></kbn-vis-value>
|
||||
<div class="ng-binding">Top group</div>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
<md-card flex layout="column">
|
||||
<md-card-content style="text-align: center;">
|
||||
<kbn-vis-value vis-height="29px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:rule.pci_dss,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top PCI DSS',type:table))" vis-filter=""></kbn-vis-value>
|
||||
<kbn-vis-value vis-height="45px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(field:rule.pci_dss,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'Top PCI DSS',type:table))" vis-filter="*"></kbn-vis-value>
|
||||
<div class="ng-binding">Top PCI DSS requirement</div>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
</div>
|
||||
|
||||
<div layout="row" layout-align="center stretch" class="no-legend">
|
||||
|
||||
<div layout="row" layout-align="center stretch">
|
||||
<md-card flex="60">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -146,7 +135,7 @@
|
||||
</md-card-title>
|
||||
<md-card-content>
|
||||
<kbn-vis vis-height="450px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:3,direction:desc)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(customLabel:'Rule ID',field:rule.id,order:desc,orderBy:'1',size:999999999),schema:bucket,type:terms),(enabled:!t,id:'3',params:(customLabel:Description,field:rule.description,order:desc,orderBy:'1',size:1),schema:bucket,type:terms),(enabled:!t,id:'4',params:(customLabel:Level,field:rule.level,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:10,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:5,direction:desc),totalFunc:sum),title:'Alerts%20summary',type:table))"
|
||||
vis-filter="">
|
||||
vis-filter="*">
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
@ -158,7 +147,7 @@
|
||||
</md-card-title>
|
||||
<md-card-content>
|
||||
<kbn-vis vis-height="450px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:1,direction:desc)))),vis:(aggs:!((enabled:!t,id:'1',params:(),schema:metric,type:count),(enabled:!t,id:'2',params:(customLabel:Group,field:rule.groups,order:desc,orderBy:'1',size:99999),schema:bucket,type:terms)),listeners:(),params:(perPage:10,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:5,direction:desc),totalFunc:sum),title:'Groups',type:table))"
|
||||
vis-filter="">
|
||||
vis-filter="*">
|
||||
</kbn-vis>
|
||||
</md-card-content>
|
||||
</md-card>
|
||||
|
@ -23,7 +23,7 @@
|
||||
|
||||
<!-- View: Panels -->
|
||||
<div ng-show="hideRing(14) && results && !loading" ng-if="tabView == 'panels'">
|
||||
<md-content class="no-legend" layout="row" layout-align="center stretch">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="20" layout="column">
|
||||
<md-card-content style="text-align: center;">
|
||||
<kbn-vis-value vis-height="37px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(field:'@timestamp'),schema:metric,type:max),(enabled:!t,id:'2',params:(field:data.oscap.scan.score,order:desc,orderBy:'1',size:1),schema:bucket,type:terms)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:sum),title:'New%20Visualization',type:table))" vis-filter="*"></kbn-vis-value>
|
||||
@ -45,7 +45,7 @@
|
||||
</md-content>
|
||||
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="25">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -97,7 +97,7 @@
|
||||
</md-card>
|
||||
</md-content>
|
||||
|
||||
<md-content layout="row" layout-align="start stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="start stretch">
|
||||
<md-card flex>
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -113,7 +113,7 @@
|
||||
</md-content>
|
||||
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="50">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -142,7 +142,7 @@
|
||||
|
||||
</md-content>
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="20" layout="column">
|
||||
<md-card-content class="metric">
|
||||
<kbn-vis-value vis-height="44px" vis-index-pattern="wazuh-alerts-*" vis-a="(filters:!(),linked:!f,query:(query_string:(analyze_wildcard:!t,query:'*')),uiState:(vis:(params:(sort:(columnIndex:!n,direction:!n)))),vis:(aggs:!((enabled:!t,id:'1',params:(field:data.oscap.scan.score),schema:metric,type:max)),listeners:(),params:(perPage:1,showMeticsAtAllLevels:!f,showPartialRows:!f,showTotal:!f,sort:(columnIndex:!n,direction:!n),totalFunc:max),title:'Highest score',type:table))" vis-filter="*"></kbn-vis-value>
|
||||
@ -164,7 +164,7 @@
|
||||
</md-content>
|
||||
|
||||
|
||||
<md-content layout-align="center stretch" class="no-legend">
|
||||
<md-content layout-align="center stretch">
|
||||
<md-card flex>
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
|
@ -24,7 +24,7 @@
|
||||
|
||||
<!-- View: Panels -->
|
||||
<div ng-show="hideRing(5) && results && !loading" ng-if="tabView == 'panels'">
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex>
|
||||
<md-tabs md-selected="selectedIndex" md-border-bottom md-dynamic-height id="pciReq_tab">
|
||||
<md-tab ng-repeat="tab in tabs" ng-disabled="tab.disabled" label="{{tab.title}}">
|
||||
@ -37,7 +37,7 @@
|
||||
</md-card>
|
||||
</md-content>
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="70">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -64,7 +64,7 @@
|
||||
</md-card>
|
||||
</md-content>
|
||||
|
||||
<md-content layout="row" layout-align="center stretch" class="no-legend">
|
||||
<md-content layout="row" layout-align="center stretch">
|
||||
<md-card flex="30">
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
@ -93,7 +93,7 @@
|
||||
|
||||
|
||||
|
||||
<md-content layout-align="center stretch" class="no-legend">
|
||||
<md-content layout-align="center stretch">
|
||||
<md-card flex>
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
|
@ -24,7 +24,7 @@
|
||||
|
||||
<!-- View: Panels -->
|
||||
<div ng-show="hideRing(5) && results && !loading" ng-if="tabView == 'panels'">
|
||||
<div layout="row" layout-align="center stretch" class="no-legend">
|
||||
<div layout="row" layout-align="center stretch">
|
||||
<md-card flex="50">
|
||||
<md-card-content>
|
||||
<span class="md-headline">Events over time</span>
|
||||
@ -55,7 +55,7 @@
|
||||
|
||||
</div>
|
||||
|
||||
<div layout="row" layout-align="center stretch" class="no-legend">
|
||||
<div layout="row" layout-align="center stretch">
|
||||
<md-card flex>
|
||||
<md-card-content>
|
||||
<span class="md-headline">Events per agent evolution</span>
|
||||
@ -67,7 +67,7 @@
|
||||
|
||||
</div>
|
||||
|
||||
<div layout="row" layout-align="center stretch" class="no-legend">
|
||||
<div layout="row" layout-align="center stretch">
|
||||
<md-card flex>
|
||||
<md-card-title>
|
||||
<md-card-title-text>
|
||||
|
Loading…
Reference in New Issue
Block a user