stamusnetworks / kts7 Goto Github PK
View Code? Open in Web Editor NEWKibana 7 Templates for Suricata IDPS Threat Hunting
License: GNU General Public License v3.0
Kibana 7 Templates for Suricata IDPS Threat Hunting
License: GNU General Public License v3.0
Received 'Could not locate that index-pattern-field (id: http.accept_encoding.keyword)' in the http dashboard. The logstash-http-* index does not contain the field; it does contain 'http.accept' and 'http.accept_keyword' fields. Setup is from suricata and filebeat on a router -> logstash -> elasticsearch.
While this may have been a previous issue, it did not come up when searching 'accept_encoding' in either this repo or the SELKS repo.
Received errors loading objects. Please advise.
{"success":true,"successCount":22}{"success":false,"successCount":23,"errors":[{"id":"fed9ba80-7319-11ea-b5dd-05bd1e5fbf82","type":"index-pattern","title":"logstash-anomaly-","error":{"type":"conflict"}},{"id":"e2f3d2c0-73e0-11ea-abd9-295bc1fa20bb","type":"index-pattern","title":"logstash-snmp-","error":{"type":"conflict"}},{"id":"cc5489c0-06e2-11eb-bd80-0b9cf2e814b3","type":"index-pattern","title":"logstash-mqtt-","error":{"type":"conflict"}},{"id":"84c3b570-c190-11e8-9888-3f5bc9c31629","type":"index-pattern","title":"logstash-dhcp-","error":{"type":"conflict"}},{"id":"06e1e3c0-c1c7-11e8-9888-3f5bc9c31629","type":"index-pattern","title":"logstash-smb-","error":{"type":"conflict"}},{"id":"35f3ece0-cae5-11e8-9f69-c36de0ada098","type":"index-pattern","title":"logstash-nfs-","error":{"type":"conflict"}},{"id":"de695070-74c3-11ea-bb42-278f04c43ada","type":"index-pattern","title":"logstash-rfb-","error":{"type":"conflict"}},{"id":"defa6c90-cae7-11e8-9f69-c36de0ada098","type":"index-pattern","title":"logstash-krb5-","error":{"type":"conflict"}},{"id":"770c39b0-c1c8-11e8-9888-3f5bc9c31629","type":"index-pattern","title":"logstash-tftp-","error":{"type":"conflict"}},{"id":"769209d0-c18a-11e8-9888-3f5bc9c31629","type":"index-pattern","title":"logstash-ikev2-","error":{"type":"conflict"}},{"id":"logstash-alert-","type":"index-pattern","title":"logstash-alert-","error":{"type":"conflict"}},{"id":"logstash-","type":"index-pattern","title":"logstash-","error":{"type":"conflict"}},{"id":"logstash-dns-","type":"index-pattern","title":"logstash-dns-","error":{"type":"conflict"}},{"id":"logstash-fileinfo-","type":"index-pattern","title":"logstash-fileinfo-","error":{"type":"conflict"}},{"id":"logstash-flow-","type":"index-pattern","title":"logstash-flow-","error":{"type":"conflict"}},{"id":"logstash-http-","type":"index-pattern","title":"logstash-http-","error":{"type":"conflict"}},{"id":"logstash-smtp-","type":"index-pattern","title":"logstash-smtp-","error":{"type":"conflict"}},{"id":"logstash-ssh-","type":"index-pattern","title":"logstash-ssh-","error":{"type":"conflict"}},{"id":"logstash-tls-","type":"index-pattern","title":"logstash-tls-","error":{"type":"conflict"}},{"id":"699cedb0-d31b-11e8-8a07-17cc065d3fe1","type":"index-pattern","title":"logstash-dnp3-","error":{"type":"conflict"}},{"id":"92edee20-74c4-11ea-bb42-278f04c43ada","type":"index-pattern","title":"logstash-sip-","error":{"type":"conflict"}},{"id":"036d9030-74eb-11ea-bb42-278f04c43ada","type":"index-pattern","title":"logstash-rdp-","error":{"type":"conflict"}}]}{"success":false,"successCount":390,"errors":[{"id":"92edee20-74c4-11ea-bb42-278f04c43ada","type":"index-pattern","title":"logstash-sip-","error":{"type":"conflict"}},{"id":"06e1e3c0-c1c7-11e8-9888-3f5bc9c31629","type":"index-pattern","title":"logstash-smb-","error":{"type":"conflict"}},{"id":"770c39b0-c1c8-11e8-9888-3f5bc9c31629","type":"index-pattern","title":"logstash-tftp-","error":{"type":"conflict"}},{"id":"de695070-74c3-11ea-bb42-278f04c43ada","type":"index-pattern","title":"logstash-rfb-","error":{"type":"conflict"}},{"id":"e2f3d2c0-73e0-11ea-abd9-295bc1fa20bb","type":"index-pattern","title":"logstash-snmp-","error":{"type":"conflict"}},{"id":"35f3ece0-cae5-11e8-9f69-c36de0ada098","type":"index-pattern","title":"logstash-nfs-","error":{"type":"conflict"}},{"id":"84c3b570-c190-11e8-9888-3f5bc9c31629","type":"index-pattern","title":"logstash-dhcp-","error":{"type":"conflict"}},{"id":"036d9030-74eb-11ea-bb42-278f04c43ada","type":"index-pattern","title":"logstash-rdp-","error":{"type":"conflict"}},{"id":"defa6c90-cae7-11e8-9f69-c36de0ada098","type":"index-pattern","title":"logstash-krb5-","error":{"type":"conflict"}},{"id":"cc5489c0-06e2-11eb-bd80-0b9cf2e814b3","type":"index-pattern","title":"logstash-mqtt-","error":{"type":"conflict"}},{"id":"fed9ba80-7319-11ea-b5dd-05bd1e5fbf82","type":"index-pattern","title":"logstash-anomaly-","error":{"type":"conflict"}},{"id":"logstash-flow-","type":"index-pattern","title":"logstash-flow-","error":{"type":"conflict"}},{"id":"logstash-fileinfo-","type":"index-pattern","title":"logstash-fileinfo-","error":{"type":"conflict"}},{"id":"699cedb0-d31b-11e8-8a07-17cc065d3fe1","type":"index-pattern","title":"logstash-dnp3-","error":{"type":"conflict"}},{"id":"logstash-tls-","type":"index-pattern","title":"logstash-tls-","error":{"type":"conflict"}},{"id":"logstash-alert-","type":"index-pattern","title":"logstash-alert-","error":{"type":"conflict"}},{"id":"logstash-ssh-","type":"index-pattern","title":"logstash-ssh-","error":{"type":"conflict"}},{"id":"logstash-http-","type":"index-pattern","title":"logstash-http-","error":{"type":"conflict"}},{"id":"769209d0-c18a-11e8-9888-3f5bc9c31629","type":"index-pattern","title":"logstash-ikev2-","error":{"type":"conflict"}},{"id":"logstash-smtp-","type":"index-pattern","title":"logstash-smtp-","error":{"type":"conflict"}},{"id":"logstash-","type":"index-pattern","title":"logstash-","error":{"type":"conflict"}},{"id":"logstash-dns-","type":"index-pattern","title":"logstash-dns-","error":{"type":"conflict"}}]}{"success":false,"successCount":28,"errors":[{"id":"06e1e3c0-c1c7-11e8-9888-3f5bc9c31629","type":"index-pattern","title":"logstash-smb-","error":{"type":"conflict"}},{"id":"fab31360-c1c8-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-EventsOverTime","error":{"type":"conflict"}},{"id":"13b4a300-c1ca-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-Top20DestPort","error":{"type":"conflict"}},{"id":"c8657640-c1c9-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-Top20DestIP","error":{"type":"conflict"}},{"id":"fd1577f0-c1c9-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-Top20SrcPort","error":{"type":"conflict"}},{"id":"e41ad0b0-c1c9-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-Top20SrcIP","error":{"type":"conflict"}},{"id":"ec437ac0-c1ca-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-Function","error":{"type":"conflict"}},{"id":"01acef80-c1cc-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-KerberosSnames","error":{"type":"conflict"}},{"id":"65d35270-c1cb-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-ClientDialect","error":{"type":"conflict"}},{"id":"2b23dd60-c1cc-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-NtlmsspDomain","error":{"type":"conflict"}},{"id":"40d1f1b0-c1cc-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-NtlmsspUser","error":{"type":"conflict"}},{"id":"561165b0-c1cc-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-NtlmsspHost","error":{"type":"conflict"}},{"id":"b9784930-c1cb-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-ServerGUID","error":{"type":"conflict"}},{"id":"49460e90-c1cb-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-Dialect","error":{"type":"conflict"}},{"id":"80f4d150-c1cb-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-Status","error":{"type":"conflict"}},{"id":"ae4b74f0-c1cc-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-Filename","error":{"type":"conflict"}},{"id":"8fc3c0a0-c1cc-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-Share","error":{"type":"conflict"}},{"id":"19f31700-c1d0-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-SMB-GeoIP","error":{"type":"conflict"}},{"id":"7dbcee70-c2f5-11e8-9eb1-af8fa48f4c1b","type":"visualization","title":"SN-SMB-Total","error":{"type":"conflict"}},{"id":"2d3f4020-c1c8-11e8-9888-3f5bc9c31629","type":"search","title":"SN-SMB-EventsList","error":{"type":"conflict"}},{"id":"e2f3d2c0-73e0-11ea-abd9-295bc1fa20bb","type":"index-pattern","title":"logstash-snmp-","error":{"type":"conflict"}},{"id":"64d48d40-73f3-11ea-abd9-295bc1fa20bb","type":"visualization","title":"SN-SNMP-TotalCount","error":{"type":"conflict"}},{"id":"bbf76020-73f3-11ea-abd9-295bc1fa20bb","type":"visualization","title":"SN-SNMP-EventsOverTime","error":{"type":"conflict"}},{"id":"97436e00-73f2-11ea-abd9-295bc1fa20bb","type":"visualization","title":"SN-SNMP-Top100-SrcIP","error":{"type":"conflict"}},{"id":"ae49bf50-73f2-11ea-abd9-295bc1fa20bb","type":"visualization","title":"SN-SNMP-Top100-DestIP","error":{"type":"conflict"}},{"id":"d45f0ba0-73f2-11ea-abd9-295bc1fa20bb","type":"visualization","title":"SN-SNMP-Top100-SrcPort","error":{"type":"conflict"}},{"id":"18409990-73f5-11ea-abd9-295bc1fa20bb","type":"visualization","title":"SN-SNMP-Version","error":{"type":"conflict"}},{"id":"c6659f50-73f2-11ea-abd9-295bc1fa20bb","type":"visualization","title":"SN-SNMP-Top100-DestPort","error":{"type":"conflict"}},{"id":"d6358e70-73f4-11ea-abd9-295bc1fa20bb","type":"visualization","title":"SN-SNMP-Usm","error":{"type":"conflict"}},{"id":"640f7da0-73f5-11ea-abd9-295bc1fa20bb","type":"visualization","title":"SN-SNMP-Community","error":{"type":"conflict"}},{"id":"eafe1a30-73f3-11ea-abd9-295bc1fa20bb","type":"visualization","title":"SN-SNMP-ByVlan","error":{"type":"conflict"}},{"id":"995f5e40-73f4-11ea-abd9-295bc1fa20bb","type":"visualization","title":"SN-SNMP-Vars","error":{"type":"conflict"}},{"id":"04e045d0-73f5-11ea-abd9-295bc1fa20bb","type":"visualization","title":"SN-SNMP-Pdu","error":{"type":"conflict"}},{"id":"16f5d170-73f2-11ea-abd9-295bc1fa20bb","type":"search","title":"SN-SNMP-EventsList","error":{"type":"conflict"}},{"id":"logstash-","type":"index-pattern","title":"logstash-","error":{"type":"conflict"}},{"id":"SN-Mean-flow-age-and-count","type":"visualization","title":"SN-Mean flow age and count","error":{"type":"conflict"}},{"id":"SN-Application-protocol","type":"visualization","title":"SN-Application protocol","error":{"type":"conflict"}},{"id":"logstash-flow-","type":"index-pattern","title":"logstash-flow-","error":{"type":"conflict"}},{"id":"SN-FLOW-EventsList","type":"search","title":"SN-FLOW-EventsList","error":{"type":"conflict"}},{"id":"logstash-tls-","type":"index-pattern","title":"logstash-tls-","error":{"type":"conflict"}},{"id":"SN-TLS-versions","type":"visualization","title":"SN-TLS versions","error":{"type":"conflict"}},{"id":"SN-TLS-TCP-ports","type":"visualization","title":"SN-TLS TCP ports","error":{"type":"conflict"}},{"id":"logstash-dns-","type":"index-pattern","title":"logstash-dns-","error":{"type":"conflict"}},{"id":"SN-DNS-Rrname","type":"visualization","title":"SN-DNS-Rrname","error":{"type":"conflict"}},{"id":"SN-TLS-BySni","type":"visualization","title":"SN-TLS-BySni","error":{"type":"conflict"}},{"id":"d2061990-7d8c-11ea-af8c-954c77eacc8f","type":"visualization","title":"SN-TLS-ByJa3SHash","error":{"type":"conflict"}},{"id":"2cf8aef0-cb44-11e8-8e2b-bf314673d4bf","type":"visualization","title":"SN-TLS-ByJa3Hash","error":{"type":"conflict"}},{"id":"logstash-http-","type":"index-pattern","title":"logstash-http-","error":{"type":"conflict"}},{"id":"SN-HTTP-Top-user-agents","type":"visualization","title":"SN-HTTP Top user agents","error":{"type":"conflict"}},{"id":"fed9ba80-7319-11ea-b5dd-05bd1e5fbf82","type":"index-pattern","title":"logstash-anomaly-","error":{"type":"conflict"}},{"id":"5f1a83f0-7d8f-11ea-af8c-954c77eacc8f","type":"visualization","title":"SN-ANOMALY-EventType","error":{"type":"conflict"}},{"id":"SN-HTTP-Top-hostnames","type":"visualization","title":"SN-HTTP Top hostnames","error":{"type":"conflict"}},{"id":"SN-HTTP-Servers","type":"visualization","title":"SN-HTTP-Servers","error":{"type":"conflict"}},{"id":"a987de80-1cdf-11ea-9ee1-11f0d2cd99c4","type":"visualization","title":"SN-ThreatHunt-HTTP-PossibleC2Beacons-BySrcIP","error":{"type":"conflict"}},{"id":"logstash-alert-","type":"index-pattern","title":"logstash-alert-","error":{"type":"conflict"}},{"id":"2e044410-3dc3-11ea-9663-b39dc1f7db8b","type":"visualization","title":"SN-ThreatHunt-ALERTS-MutlipleUniqueAlertOnSrcIP","error":{"type":"conflict"}},{"id":"428c5020-38fb-11ea-9ee1-11f0d2cd99c4","type":"visualization","title":"SN-ThreatHunt-ALERTS-MutlipleUniqueAlertOnDestIP","error":{"type":"conflict"}},{"id":"SN-ALERT-EventsList","type":"search","title":"SN-ALERT-EventsList","error":{"type":"conflict"}},{"id":"logstash-fileinfo-","type":"index-pattern","title":"logstash-fileinfo-","error":{"type":"conflict"}},{"id":"acba4210-c1d6-11e8-9888-3f5bc9c31629","type":"visualization","title":"SN-FILE-ByAppProto","error":{"type":"conflict"}},{"id":"SN-FILE-ByTypeOverTime","type":"visualization","title":"SN-FILE-ByTypeOverTime","error":{"type":"conflict"}},{"id":"SN-FILE-EventsList","type":"search","title":"SN-FILE-EventsList","error":{"type":"conflict"}},{"id":"036d9030-74eb-11ea-bb42-278f04c43ada","type":"index-pattern","title":"logstash-rdp-","error":{"type":"conflict"}},{"id":"3ee767e0-74ef-11ea-bb42-278f04c43ada","type":"visualization","title":"SN-RDP-ClientCookie","error":{"type":"conflict"}},{"id":"logstash-ssh-","type":"index-pattern","title":"logstash-ssh-","error":{"type":"conflict"}},{"id":"35c3bd80-0621-11eb-bd80-0b9cf2e814b3","type":"visualization","title":"SN-SSH-ByServerHashByServerIPByPort","error":{"type":"conflict"}},{"id":"8451e8a0-0621-11eb-bd80-0b9cf2e814b3","type":"visualization","title":"SN-SSH-ByClientHashByClientIPByPort","error":{"type":"conflict"}},{"id":"SN-HTTP-EventsList","type":"search","title":"SN-HTTP-EventsList","error":{"type":"conflict"}},{"id":"92edee20-74c4-11ea-bb42-278f04c43ada","type":"index-pattern","title":"logstash-sip-","error":{"type":"conflict"}},{"id":"574dce20-74de-11ea-bb42-278f04c43ada","type":"visualization","title":"SN-SIP-TotalEvents","error":{"type":"conflict"}},{"id":"34a287d0-74de-11ea-bb42-278f04c43ada","type":"visualization","title":"SN-SIP-EventsOverTime","error":{"type":"conflict"}},{"id":"d5c45630-74dd-11ea-bb42-278f04c43ada","type":"visualization","title":"SN-SIP-Top100-SrcIP","error":{"type":"conflict"}},{"id":"00c602c0-74de-11ea-bb42-278f04c43ada","type":"visualization","title":"SN-SIP-Top100-DestIP","error":{"type":"conflict"}},{"id":"c3997530-74dd-11ea-bb42-278f04c43ada","type":"visualization","title":"SN-SIP-Top100-SrcPort","error":{"type":"conflict"}},{"id":"00dbb830-74df-11ea-bb42-278f04c43ada","type":"visualization","title":"SN-SIP-SipVersion","error":{"type":"conflict"}},{"id":"8e02e410-74dd-11ea-bb42-278f04c43ada","type":"visualization","title":"SN-SIP-Top100-DestPort","error":{"type":"conflict"}},{"id":"e67a7c10-74de-11ea-bb42-278f04c43ada","type":"visualization","title":"SN-SIP-SipCode","error":{"type":"conflict"}},{"id":"4a915930-74df-11ea-bb42-278f04c43ada","type":"visualization","title":"SN-SIP-SipUri","error":{"type":"conflict"}},{"id":"15d06790-74df-11ea-bb42-278f04c43ada","type":"visualization","title":"SN-SIP-SipMethod","error":{"type":"conflict"}},{"id":"8c64b280-74df-11ea-bb42-278f04c43ada","type":"visualization","title":"SN-SIP-SipReason","error":{"type":"conflict"}},{"id":"e55e2180-74dc-11ea-bb42-278f04c43ada","type":"search","title":"SN-SIP-EventsList","error":{"type":"conflict"}},{"id":"cc5489c0-06e2-11eb-bd80-0b9cf2e814b3","type":"index-pattern","title":"logstash-mqtt-","error":{"type":"conflict"}},{"id":"2a0d0b20-0817-11eb-bd80-0b9cf2e814b3","type":"visualization","title":"SN-MQTT-Total","error":{"type":"conflict"}},{"id":"995b2750-0817-11eb-bd80-0b9cf2e814b3","type":"visualization","title":"SN-MQTT-MqttOverTime","error":{"type":"conflict"}},{"id":"7012e330-081a-11eb-bd80-0b9cf2e814b3","type":"visualization","title":"SN-MQTT-Top20SrcIP","error":{"type":"conflict"}},{"id":"6195c7f0-081a-11eb-bd80-0b9cf2e814b3","type":"visualization","title":"SN-MQTT-Top20SrcPort","error":{"type":"conflict"}},{"id":"79bdb5e0-081a-11eb-bd80-0b9cf2e814b3","type":"visualization","title":"SN-MQTT-Top20DestIP","error":{"type":"conflict"}},{"id":"7f717a40-0819-11eb-bd80-0b9cf2e814b3","type":"visualization","title":"SN-MQTT-Top20DestPort","error":{"type":"conflict"}},{"id":"3cc02790-081a-11eb-bd80-0b9cf2e814b3","type":"visualization","title":"SN-MQTT-ConnProtoString","error":{"type":"conflict"}},{"id":"e4aa4cb0-081a-11eb-bd80-0b9cf2e814b3","type":"visualization","title":"SN-MQTT-ConnUsernames","error":{"type":"conflict"}},{"id":"13c631e0-081a-11eb-bd80-0b9cf2e814b3","type":"visualization","title":"SN-MQTT-ConnProtoVersion","error":{"type":"conflict"}},{"id":"1a67b1a0-0819-11eb-bd80-0b9cf2e814b3","type":"search","title":"SN-MQTT-EventsList","error":{"type":"conflict"}},{"id":"de�
OpenSearch is a open source clone of ElasticSearch which has gone source available only with restrictive licensing (SSPL/Elasticv2). We are preferring OpenSearch for this reason. For now the dashboards will probably work out of the box (since they didn't really deviate), but this might change in the future.
Could you support OpenSearch as well?
Hello,
is it possible to use the dashboards with filebeat as well? I am not using logstash, rather filebeat with suricata.
Thanks
Hello,
Already running an ELK setup with KTS7, but how to updates these dashboards? When running the curl import commands, it complains of conflicting indices. Logical because they already exist, but nothing is now imported. Removed kibana alias and indices and started a new import but to no avail.
Cheers,
Andre
Hi Ive tried to import the dashboards following the method
Request to Elasticsearch failed: {"error":{"root_cause":[{"type":"script_exception","reason":"runtime error","script_stack":["org.elasticsearch.search.lookup.LeafDocLookup.get(LeafDocLookup.java:94)","org.elasticsearch.search.lookup.LeafDocLookup.get(LeafDocLookup.java:41)","doc['flow_id'].value"," ^---- HERE"],"script":"doc['flow_id'].value","lang":"painless"}],"type":"search_phase_execution_exception","reason":"all shards failed","phase":"query","grouped":true,"failed_shards":[{"shard":0,"index":"logstash-2020.04.29-000001","node":"RmOnDn2mSsWSKkNKg2bgsA","reason":{"type":"script_exception","reason":"runtime error","script_stack":["org.elasticsearch.search.lookup.LeafDocLookup.get(LeafDocLookup.java:94)","org.elasticsearch.search.lookup.LeafDocLookup.get(LeafDocLookup.java:41)","doc['flow_id'].value"," ^---- HERE"],"script":"doc['flow_id'].value","lang":"painless","caused_by":{"type":"illegal_argument_exception","reason":"No field found for [flow_id] in mapping with types []"}}}]},"status":400}
Im reading from a Remote PFSENSE via Filebeats. The logs hit Elastic after all of the filtering etc..
Thank you
Opensearch + Dashboards at 2.0.0, linked to issue: #6
Importing gives error:
[opensearch-dashboards@dashboards-556c54898c-wmfbh config]$ ./importsuricata.sh
% Total % Received % Xferd Average Speed Time Time Time Current
Dload Upload Total Spent Left Speed
100 503k 100 503k 0 0 1863k 0 --:--:-- --:--:-- --:--:-- 1858k
{"statusCode":422,"error":"Unprocessable Entity","message":"Document \"036d9030-74eb-11ea-bb42-278f04c43ada\" has property \"index-pattern\" which belongs to a more recent version of OpenSearch Dashboards [7.11.0]. The last known version is [7.6.0]"} % Total % Received % Xferd Average Speed Time Time Time Current
Dload Upload Total Spent Left Speed
100 524k 100 524k 0 0 1024k 0 --:--:-- --:--:-- --:--:-- 1023k
{"statusCode":422,"error":"Unprocessable Entity","message":"Document \"036d9030-74eb-11ea-bb42-278f04c43ada\" has property \"index-pattern\" which belongs to a more recent version of OpenSearch Dashboards [7.11.0]. The last known version is [7.6.0]"} % Total % Received % Xferd Average Speed Time Time Time Current
Dload Upload Total Spent Left Speed
100 1050k 100 1050k 0 0 3696k 0 --:--:-- --:--:-- --:--:-- 3698k
{"statusCode":422,"error":"Unprocessable Entity","message":"Document \"92edee20-74c4-11ea-bb42-278f04c43ada\" has property \"index-pattern\" which belongs to a more recent version of OpenSearch Dashboards [7.11.0]. The last known version is [7.6.0]"} % Total % Received % Xferd Average Speed Time Time Time Current
Dload Upload Total Spent Left Speed
100 1094k 100 1094k 0 0 2536k 0 --:--:-- --:--:-- --:--:-- 2534k
{"statusCode":422,"error":"Unprocessable Entity","message":"Document \"92edee20-74c4-11ea-bb42-278f04c43ada\" has property \"index-pattern\" which belongs to a more recent version of OpenSearch Dashboards [7.11.0]. The last known version is [7.6.0]"} % Total % Received % Xferd Average Speed Time Time Time Current
Dload Upload Total Spent Left Speed
100 3366 100 3366 0 0 17532 0 --:--:-- --:--:-- --:--:-- 17623
{"successCount":5,"success":true,"successResults":[{"type":"query","id":"Hidden+Executables+-1","meta":{"title":"Hidden Executables -1","icon":"search"}},{"type":"query","id":"Large+DNS+flows","meta":{"title":"Large DNS flows","icon":"search"}},{"type":"query","id":"Larger+DNS+TXT+records","meta":{"title":"Larger DNS TXT records","icon":"search"}},{"type":"query","id":"Larger+ICMP+flows","meta":{"title":"Larger ICMP flows","icon":"search"}},{"type":"query","id":"Non+standard+TLS+port+with+older+TLS+versions","meta":{"title":"Non standard TLS port with older TLS versions","icon":"search"}}]}[opensearch-dashboards@dashboards-556c54898c-wmfbh config]$
Dashboard/SN-ALERTS with error
Error fetching data
Bad Request
Error: Bad Request
at Fetch._callee3$ (http://10.10.84.201/32141/bundles/commons.bundle.js:3:1292397)
at l (http://10.10.84.201/32141/bundles/kbn-ui-shared-deps/kbn-ui-shared-deps.js:288:969217)
at Generator._invoke (http://10.10.84.201/32141/bundles/kbn-ui-shared-deps/kbn-ui-shared-deps.js:288:968970)
at Generator.forEach.e. [as next] (http://10.10.84.201/32141/bundles/kbn-ui-shared-deps/kbn-ui-shared-deps.js:288:969574)
at asyncGeneratorStep (http://10.10.84.201/32141/bundles/commons.bundle.js:3:1285920)
at _next (http://10.10.84.201/32141/bundles/commons.bundle.js:3:1286231)
A declarative, efficient, and flexible JavaScript library for building user interfaces.
🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. 📊📈🎉
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google ❤️ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.