Query to see incidents logged by correlation search in ES incident review dashboard

Query to see incidents logged by correlation search in ES incident review dashboard

| `incident_review`
|search rule_name="<correlation_search_name>"
Share This:
Tagged:

Leave A Comment?