ntopng/kibana/dashboard.ndjson
2022-06-21 11:32:50 +02:00

4 lines
30 KiB
Text

{"attributes":{"fieldAttrs":"{\"client.bytes\":{\"count\":2},\"server.geo.city_name\":{\"count\":2},\"server.geo.continent_name\":{\"count\":2},\"client.geo.country_iso_code\":{\"count\":1},\"http.response.status_code\":{\"count\":2},\"server.geo.country_iso_code\":{\"count\":1},\"client.ip\":{\"count\":2}}","fields":"[]","runtimeFieldMap":"{}","timeFieldName":"@timestamp","title":"alerts-ntopng*","typeMeta":"{}"},"coreMigrationVersion":"7.17.4","id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","migrationVersion":{"index-pattern":"7.11.0"},"references":[],"type":"index-pattern","updated_at":"2022-06-20T16:04:04.680Z","version":"Wzc0OTEsM10="}
{"attributes":{"fieldAttrs":"{\"client.ip\":{\"count\":1}}","fields":"[]","runtimeFieldMap":"{}","timeFieldName":"@timestamp","title":"ntopng*","typeMeta":"{}"},"coreMigrationVersion":"7.17.4","id":"99bb6400-e680-11ec-8f1c-7711b68e0efc","migrationVersion":{"index-pattern":"7.11.0"},"references":[],"type":"index-pattern","updated_at":"2022-06-20T16:04:04.680Z","version":"Wzc0OTIsM10="}
{"attributes":{"description":"","hits":0,"kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[]}"},"optionsJSON":"{\"useMargins\":true,\"syncColors\":false,\"hidePanelTitles\":false}","panelsJSON":"[{\"version\":\"7.17.4\",\"type\":\"lens\",\"gridData\":{\"x\":0,\"y\":0,\"w\":8,\"h\":18,\"i\":\"c3371fe1-e481-4731-aa64-76240d2a3b7c\"},\"panelIndex\":\"c3371fe1-e481-4731-aa64-76240d2a3b7c\",\"embeddableConfig\":{\"attributes\":{\"title\":\"\",\"visualizationType\":\"lnsPie\",\"type\":\"lens\",\"references\":[{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-current-indexpattern\",\"type\":\"index-pattern\"},{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-layer-60591eeb-7bab-4409-a7f8-3032722228b5\",\"type\":\"index-pattern\"}],\"state\":{\"visualization\":{\"shape\":\"donut\",\"layers\":[{\"layerId\":\"60591eeb-7bab-4409-a7f8-3032722228b5\",\"groups\":[\"32b31943-6441-4418-ba29-021e9be754f0\"],\"metric\":\"4a9fd2e1-e13e-448d-bf29-c3af84b6d3e6\",\"numberDisplay\":\"percent\",\"categoryDisplay\":\"default\",\"legendDisplay\":\"default\",\"nestedLegend\":false,\"layerType\":\"data\"}]},\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filters\":[],\"datasourceStates\":{\"indexpattern\":{\"layers\":{\"60591eeb-7bab-4409-a7f8-3032722228b5\":{\"columns\":{\"32b31943-6441-4418-ba29-021e9be754f0\":{\"label\":\"Top values of interface.name.keyword\",\"dataType\":\"string\",\"operationType\":\"terms\",\"scale\":\"ordinal\",\"sourceField\":\"interface.name.keyword\",\"isBucketed\":true,\"params\":{\"size\":5,\"orderBy\":{\"type\":\"column\",\"columnId\":\"4a9fd2e1-e13e-448d-bf29-c3af84b6d3e6\"},\"orderDirection\":\"desc\",\"otherBucket\":true,\"missingBucket\":false}},\"4a9fd2e1-e13e-448d-bf29-c3af84b6d3e6\":{\"label\":\"Unique count of interface.name.keyword\",\"dataType\":\"number\",\"operationType\":\"unique_count\",\"scale\":\"ratio\",\"sourceField\":\"interface.name.keyword\",\"isBucketed\":false}},\"columnOrder\":[\"32b31943-6441-4418-ba29-021e9be754f0\",\"4a9fd2e1-e13e-448d-bf29-c3af84b6d3e6\"],\"incompleteColumns\":{}}}}}}},\"hidePanelTitles\":false,\"enhancements\":{}},\"title\":\"Interface Names\"},{\"version\":\"7.17.4\",\"type\":\"lens\",\"gridData\":{\"x\":8,\"y\":0,\"w\":8,\"h\":18,\"i\":\"9b0cc7fa-e61f-4d90-95ca-3269df558fb7\"},\"panelIndex\":\"9b0cc7fa-e61f-4d90-95ca-3269df558fb7\",\"embeddableConfig\":{\"attributes\":{\"title\":\"\",\"visualizationType\":\"lnsXY\",\"type\":\"lens\",\"references\":[{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-current-indexpattern\",\"type\":\"index-pattern\"},{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-layer-728ba3bd-cd6d-4864-86b1-9e5fce77f1cd\",\"type\":\"index-pattern\"}],\"state\":{\"visualization\":{\"legend\":{\"isVisible\":true,\"position\":\"right\"},\"valueLabels\":\"hide\",\"fittingFunction\":\"None\",\"yLeftExtent\":{\"mode\":\"full\"},\"yRightExtent\":{\"mode\":\"full\"},\"axisTitlesVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"tickLabelsVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"labelsOrientation\":{\"x\":0,\"yLeft\":-45,\"yRight\":0},\"gridlinesVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"preferredSeriesType\":\"line\",\"layers\":[{\"layerId\":\"728ba3bd-cd6d-4864-86b1-9e5fce77f1cd\",\"accessors\":[\"bfb3b560-3876-4668-ba65-924e99f39e27\"],\"position\":\"top\",\"seriesType\":\"line\",\"showGridlines\":false,\"layerType\":\"data\",\"xAccessor\":\"ffb5e629-05b3-47fc-9bea-284b768c0147\",\"yConfig\":[{\"forAccessor\":\"bfb3b560-3876-4668-ba65-924e99f39e27\",\"axisMode\":\"auto\",\"color\":\"#ff9d00\"}]}],\"xTitle\":\"Timestamp\"},\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filters\":[],\"datasourceStates\":{\"indexpattern\":{\"layers\":{\"728ba3bd-cd6d-4864-86b1-9e5fce77f1cd\":{\"columns\":{\"ffb5e629-05b3-47fc-9bea-284b768c0147\":{\"label\":\"@timestamp\",\"dataType\":\"date\",\"operationType\":\"date_histogram\",\"sourceField\":\"@timestamp\",\"isBucketed\":true,\"scale\":\"interval\",\"params\":{\"interval\":\"auto\"}},\"bfb3b560-3876-4668-ba65-924e99f39e27X0\":{\"label\":\"Part of Event Risk Score Sum\",\"dataType\":\"number\",\"operationType\":\"sum\",\"sourceField\":\"event.risk_score\",\"isBucketed\":false,\"scale\":\"ratio\",\"customLabel\":true},\"bfb3b560-3876-4668-ba65-924e99f39e27\":{\"label\":\"Event Risk Score Sum\",\"dataType\":\"number\",\"operationType\":\"formula\",\"isBucketed\":false,\"scale\":\"ratio\",\"params\":{\"formula\":\"sum(event.risk_score)\",\"isFormulaBroken\":false},\"references\":[\"bfb3b560-3876-4668-ba65-924e99f39e27X0\"],\"customLabel\":true}},\"columnOrder\":[\"ffb5e629-05b3-47fc-9bea-284b768c0147\",\"bfb3b560-3876-4668-ba65-924e99f39e27\",\"bfb3b560-3876-4668-ba65-924e99f39e27X0\"],\"incompleteColumns\":{}}}}}}},\"hidePanelTitles\":false,\"enhancements\":{}},\"title\":\"Total Event Score\"},{\"version\":\"7.17.4\",\"type\":\"lens\",\"gridData\":{\"x\":16,\"y\":0,\"w\":24,\"h\":18,\"i\":\"40678037-1bcd-414c-87be-7878a4bd3ac9\"},\"panelIndex\":\"40678037-1bcd-414c-87be-7878a4bd3ac9\",\"embeddableConfig\":{\"attributes\":{\"title\":\"\",\"visualizationType\":\"lnsXY\",\"type\":\"lens\",\"references\":[{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-current-indexpattern\",\"type\":\"index-pattern\"},{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-layer-468e9239-096d-470d-bc97-1e2bc2d8db7c\",\"type\":\"index-pattern\"}],\"state\":{\"visualization\":{\"legend\":{\"isVisible\":true,\"position\":\"right\"},\"valueLabels\":\"hide\",\"fittingFunction\":\"Zero\",\"curveType\":\"CURVE_MONOTONE_X\",\"fillOpacity\":0.1,\"xTitle\":\"Timestamp\",\"yTitle\":\"Event Risk Score Sum\",\"hideEndzones\":false,\"yLeftExtent\":{\"mode\":\"full\"},\"yRightExtent\":{\"mode\":\"full\"},\"axisTitlesVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"tickLabelsVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"labelsOrientation\":{\"x\":0,\"yLeft\":-45,\"yRight\":0},\"gridlinesVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"preferredSeriesType\":\"area_stacked\",\"layers\":[{\"palette\":{\"type\":\"palette\",\"name\":\"temperature\"},\"layerId\":\"468e9239-096d-470d-bc97-1e2bc2d8db7c\",\"seriesType\":\"area_stacked\",\"xAccessor\":\"eed729d1-06a1-4a1c-b1e2-1a2b6bbf4c12\",\"splitAccessor\":\"92cbbad7-5763-43cf-aa88-0d945afbd6dc\",\"accessors\":[\"b9a28de7-bde1-4fd4-97b5-1aff6fdb7157\"],\"yConfig\":[{\"forAccessor\":\"b9a28de7-bde1-4fd4-97b5-1aff6fdb7157\",\"axisMode\":\"auto\"}],\"layerType\":\"data\"}]},\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filters\":[],\"datasourceStates\":{\"indexpattern\":{\"layers\":{\"468e9239-096d-470d-bc97-1e2bc2d8db7c\":{\"columns\":{\"92cbbad7-5763-43cf-aa88-0d945afbd6dc\":{\"label\":\"event.risk_score\",\"dataType\":\"number\",\"operationType\":\"range\",\"sourceField\":\"event.risk_score\",\"isBucketed\":true,\"scale\":\"interval\",\"params\":{\"type\":\"histogram\",\"ranges\":[{\"from\":0,\"to\":1000,\"label\":\"\"}],\"maxBars\":\"auto\"}},\"eed729d1-06a1-4a1c-b1e2-1a2b6bbf4c12\":{\"label\":\"@timestamp\",\"dataType\":\"date\",\"operationType\":\"date_histogram\",\"sourceField\":\"@timestamp\",\"isBucketed\":true,\"scale\":\"interval\",\"params\":{\"interval\":\"auto\"}},\"b9a28de7-bde1-4fd4-97b5-1aff6fdb7157X0\":{\"label\":\"Part of sum(event.risk_score)\",\"dataType\":\"number\",\"operationType\":\"sum\",\"sourceField\":\"event.risk_score\",\"isBucketed\":false,\"scale\":\"ratio\",\"customLabel\":true},\"b9a28de7-bde1-4fd4-97b5-1aff6fdb7157\":{\"label\":\"sum(event.risk_score)\",\"dataType\":\"number\",\"operationType\":\"formula\",\"isBucketed\":false,\"scale\":\"ratio\",\"params\":{\"formula\":\"sum(event.risk_score)\",\"isFormulaBroken\":false,\"format\":{\"id\":\"number\",\"params\":{\"decimals\":2}}},\"references\":[\"b9a28de7-bde1-4fd4-97b5-1aff6fdb7157X0\"]}},\"columnOrder\":[\"92cbbad7-5763-43cf-aa88-0d945afbd6dc\",\"eed729d1-06a1-4a1c-b1e2-1a2b6bbf4c12\",\"b9a28de7-bde1-4fd4-97b5-1aff6fdb7157\",\"b9a28de7-bde1-4fd4-97b5-1aff6fdb7157X0\"],\"incompleteColumns\":{}}}}}}},\"hidePanelTitles\":false,\"enhancements\":{}},\"title\":\"Event Risk Score Over Time\"},{\"version\":\"7.17.4\",\"type\":\"lens\",\"gridData\":{\"x\":40,\"y\":0,\"w\":8,\"h\":18,\"i\":\"bd303646-b4c7-4627-b125-ee0cbd469e26\"},\"panelIndex\":\"bd303646-b4c7-4627-b125-ee0cbd469e26\",\"embeddableConfig\":{\"attributes\":{\"title\":\"\",\"visualizationType\":\"lnsDatatable\",\"type\":\"lens\",\"references\":[{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-current-indexpattern\",\"type\":\"index-pattern\"},{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-layer-961cacf2-9e6f-4784-aeb8-fff749aeb9a6\",\"type\":\"index-pattern\"}],\"state\":{\"visualization\":{\"layerId\":\"961cacf2-9e6f-4784-aeb8-fff749aeb9a6\",\"layerType\":\"data\",\"columns\":[{\"columnId\":\"0e905f25-e5f6-41e9-ba2e-20209d6d0705\",\"width\":240,\"alignment\":\"left\"},{\"columnId\":\"bb9dd3f0-6c1c-4e75-b385-ff97473afbe5\",\"width\":164,\"alignment\":\"center\"}]},\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filters\":[],\"datasourceStates\":{\"indexpattern\":{\"layers\":{\"961cacf2-9e6f-4784-aeb8-fff749aeb9a6\":{\"columns\":{\"0e905f25-e5f6-41e9-ba2e-20209d6d0705\":{\"label\":\"Server Country ISO \",\"dataType\":\"string\",\"operationType\":\"terms\",\"scale\":\"ordinal\",\"sourceField\":\"server.geo.country_iso_code.keyword\",\"isBucketed\":true,\"params\":{\"size\":5,\"orderBy\":{\"type\":\"column\",\"columnId\":\"bb9dd3f0-6c1c-4e75-b385-ff97473afbe5\"},\"orderDirection\":\"desc\",\"otherBucket\":true,\"missingBucket\":false},\"customLabel\":true},\"bb9dd3f0-6c1c-4e75-b385-ff97473afbe5\":{\"label\":\"Count \",\"dataType\":\"number\",\"operationType\":\"count\",\"isBucketed\":false,\"scale\":\"ratio\",\"sourceField\":\"Records\",\"customLabel\":true}},\"columnOrder\":[\"0e905f25-e5f6-41e9-ba2e-20209d6d0705\",\"bb9dd3f0-6c1c-4e75-b385-ff97473afbe5\"],\"incompleteColumns\":{}}}}}}},\"hidePanelTitles\":false,\"enhancements\":{}},\"title\":\"Server Top Country\"},{\"version\":\"7.17.4\",\"type\":\"lens\",\"gridData\":{\"x\":0,\"y\":18,\"w\":16,\"h\":21,\"i\":\"349c6512-12b5-4c31-a38f-7feaa217627a\"},\"panelIndex\":\"349c6512-12b5-4c31-a38f-7feaa217627a\",\"embeddableConfig\":{\"attributes\":{\"title\":\"\",\"visualizationType\":\"lnsDatatable\",\"type\":\"lens\",\"references\":[{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-current-indexpattern\",\"type\":\"index-pattern\"},{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-layer-81f03921-d571-4782-aa20-ddecd4292739\",\"type\":\"index-pattern\"}],\"state\":{\"visualization\":{\"layerId\":\"81f03921-d571-4782-aa20-ddecd4292739\",\"layerType\":\"data\",\"columns\":[{\"columnId\":\"2631d325-a229-4428-ad4e-1a2f84f09bbe\",\"alignment\":\"center\",\"width\":303.7777777777777},{\"columnId\":\"c301ee27-b448-484e-8477-b65344327c34\",\"isTransposed\":false,\"hidden\":false,\"width\":299.5,\"alignment\":\"left\"},{\"columnId\":\"9ec50620-dcc1-40e0-a5b2-a489d5d14caf\",\"isTransposed\":false,\"width\":290.7777777777777,\"alignment\":\"center\",\"summaryRow\":\"none\"}],\"sorting\":{\"columnId\":\"2631d325-a229-4428-ad4e-1a2f84f09bbe\",\"direction\":\"desc\"}},\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filters\":[],\"datasourceStates\":{\"indexpattern\":{\"layers\":{\"81f03921-d571-4782-aa20-ddecd4292739\":{\"columns\":{\"2631d325-a229-4428-ad4e-1a2f84f09bbe\":{\"label\":\"Events Count\",\"dataType\":\"number\",\"operationType\":\"count\",\"isBucketed\":false,\"scale\":\"ratio\",\"sourceField\":\"Records\",\"customLabel\":true},\"c301ee27-b448-484e-8477-b65344327c34\":{\"label\":\"Event Name\",\"dataType\":\"string\",\"operationType\":\"terms\",\"scale\":\"ordinal\",\"sourceField\":\"event.action.keyword\",\"isBucketed\":true,\"params\":{\"size\":5,\"orderBy\":{\"type\":\"column\",\"columnId\":\"2631d325-a229-4428-ad4e-1a2f84f09bbe\"},\"orderDirection\":\"desc\",\"otherBucket\":true,\"missingBucket\":false},\"customLabel\":true},\"9ec50620-dcc1-40e0-a5b2-a489d5d14caf\":{\"label\":\"Client IP\",\"dataType\":\"ip\",\"operationType\":\"terms\",\"scale\":\"ordinal\",\"sourceField\":\"client.ip\",\"isBucketed\":true,\"params\":{\"size\":8,\"orderBy\":{\"type\":\"column\",\"columnId\":\"2631d325-a229-4428-ad4e-1a2f84f09bbe\"},\"orderDirection\":\"asc\",\"otherBucket\":true,\"missingBucket\":false},\"customLabel\":true}},\"columnOrder\":[\"c301ee27-b448-484e-8477-b65344327c34\",\"9ec50620-dcc1-40e0-a5b2-a489d5d14caf\",\"2631d325-a229-4428-ad4e-1a2f84f09bbe\"],\"incompleteColumns\":{}}}}}}},\"enhancements\":{},\"hidePanelTitles\":false},\"title\":\"Client Alerts\"},{\"version\":\"7.17.4\",\"type\":\"lens\",\"gridData\":{\"x\":16,\"y\":18,\"w\":24,\"h\":21,\"i\":\"19ae1866-b6ea-4ea6-b78c-bd2828efbba5\"},\"panelIndex\":\"19ae1866-b6ea-4ea6-b78c-bd2828efbba5\",\"embeddableConfig\":{\"attributes\":{\"title\":\"\",\"visualizationType\":\"lnsXY\",\"type\":\"lens\",\"references\":[{\"id\":\"99bb6400-e680-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-current-indexpattern\",\"type\":\"index-pattern\"},{\"id\":\"99bb6400-e680-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-layer-75cae453-fe6e-4823-95b6-3d0c912d5380\",\"type\":\"index-pattern\"}],\"state\":{\"visualization\":{\"legend\":{\"isVisible\":true,\"position\":\"right\"},\"valueLabels\":\"hide\",\"fittingFunction\":\"None\",\"xTitle\":\"Timestamp\",\"yTitle\":\"Server Client Bytes\",\"yLeftExtent\":{\"mode\":\"full\"},\"yRightExtent\":{\"mode\":\"full\"},\"axisTitlesVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"tickLabelsVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"labelsOrientation\":{\"x\":0,\"yLeft\":-45,\"yRight\":0},\"gridlinesVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"preferredSeriesType\":\"bar\",\"layers\":[{\"layerId\":\"75cae453-fe6e-4823-95b6-3d0c912d5380\",\"accessors\":[\"58738d1f-5d5b-4eb0-8fb2-05fc7819b7d2\",\"2c1a70ac-3b18-414c-893a-b18dd66bd885\"],\"position\":\"top\",\"seriesType\":\"bar\",\"showGridlines\":false,\"layerType\":\"data\",\"xAccessor\":\"1c55e0a2-f08d-40b5-bfba-1837842f7b43\",\"yConfig\":[{\"forAccessor\":\"58738d1f-5d5b-4eb0-8fb2-05fc7819b7d2\",\"color\":\"#b35454\"}]}]},\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filters\":[],\"datasourceStates\":{\"indexpattern\":{\"layers\":{\"75cae453-fe6e-4823-95b6-3d0c912d5380\":{\"columns\":{\"1c55e0a2-f08d-40b5-bfba-1837842f7b43\":{\"label\":\"@timestamp\",\"dataType\":\"date\",\"operationType\":\"date_histogram\",\"sourceField\":\"@timestamp\",\"isBucketed\":true,\"scale\":\"interval\",\"params\":{\"interval\":\"auto\"}},\"58738d1f-5d5b-4eb0-8fb2-05fc7819b7d2\":{\"label\":\"Client Bytes\",\"dataType\":\"number\",\"operationType\":\"median\",\"sourceField\":\"client.bytes\",\"isBucketed\":false,\"scale\":\"ratio\",\"customLabel\":true},\"2c1a70ac-3b18-414c-893a-b18dd66bd885\":{\"label\":\"Server Bytes\",\"dataType\":\"number\",\"operationType\":\"median\",\"sourceField\":\"server.bytes\",\"isBucketed\":false,\"scale\":\"ratio\",\"customLabel\":true}},\"columnOrder\":[\"1c55e0a2-f08d-40b5-bfba-1837842f7b43\",\"58738d1f-5d5b-4eb0-8fb2-05fc7819b7d2\",\"2c1a70ac-3b18-414c-893a-b18dd66bd885\"],\"incompleteColumns\":{}}}}}}},\"hidePanelTitles\":false,\"enhancements\":{}},\"title\":\"Total Bytes: Server, Client\"},{\"version\":\"7.17.4\",\"type\":\"lens\",\"gridData\":{\"x\":40,\"y\":18,\"w\":8,\"h\":21,\"i\":\"fb0710ed-efff-45e1-b0ba-12f1f7b06ec4\"},\"panelIndex\":\"fb0710ed-efff-45e1-b0ba-12f1f7b06ec4\",\"embeddableConfig\":{\"attributes\":{\"title\":\"\",\"visualizationType\":\"lnsPie\",\"type\":\"lens\",\"references\":[{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-current-indexpattern\",\"type\":\"index-pattern\"},{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-layer-99bb98a6-2727-4fd7-9f06-5febd68d191f\",\"type\":\"index-pattern\"}],\"state\":{\"visualization\":{\"shape\":\"treemap\",\"layers\":[{\"layerId\":\"99bb98a6-2727-4fd7-9f06-5febd68d191f\",\"groups\":[\"d5806092-052b-4025-b649-beeba96c3741\"],\"metric\":\"6f284a03-1f8a-4d74-8d40-4b1d934ee6e6\",\"numberDisplay\":\"percent\",\"categoryDisplay\":\"default\",\"legendDisplay\":\"default\",\"nestedLegend\":false,\"layerType\":\"data\"}]},\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filters\":[],\"datasourceStates\":{\"indexpattern\":{\"layers\":{\"99bb98a6-2727-4fd7-9f06-5febd68d191f\":{\"columns\":{\"6f284a03-1f8a-4d74-8d40-4b1d934ee6e6\":{\"label\":\"Protocol Count\",\"dataType\":\"number\",\"operationType\":\"count\",\"isBucketed\":false,\"scale\":\"ratio\",\"sourceField\":\"Records\",\"customLabel\":true},\"d5806092-052b-4025-b649-beeba96c3741\":{\"label\":\"Top values of network.protocol.keyword\",\"dataType\":\"string\",\"operationType\":\"terms\",\"scale\":\"ordinal\",\"sourceField\":\"network.protocol.keyword\",\"isBucketed\":true,\"params\":{\"size\":7,\"orderBy\":{\"type\":\"column\",\"columnId\":\"6f284a03-1f8a-4d74-8d40-4b1d934ee6e6\"},\"orderDirection\":\"asc\",\"otherBucket\":true,\"missingBucket\":false}}},\"columnOrder\":[\"d5806092-052b-4025-b649-beeba96c3741\",\"6f284a03-1f8a-4d74-8d40-4b1d934ee6e6\"],\"incompleteColumns\":{}}}}}}},\"enhancements\":{},\"hidePanelTitles\":false},\"title\":\"Protocol\"},{\"version\":\"7.17.4\",\"type\":\"lens\",\"gridData\":{\"x\":0,\"y\":39,\"w\":16,\"h\":18,\"i\":\"41c0101d-fdf2-432d-8fe2-9d7de9dfb759\"},\"panelIndex\":\"41c0101d-fdf2-432d-8fe2-9d7de9dfb759\",\"embeddableConfig\":{\"attributes\":{\"title\":\"\",\"visualizationType\":\"lnsDatatable\",\"type\":\"lens\",\"references\":[{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-current-indexpattern\",\"type\":\"index-pattern\"},{\"id\":\"c54feb30-e703-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-layer-3fa120e7-9b87-448b-aa12-7587947c36d9\",\"type\":\"index-pattern\"}],\"state\":{\"visualization\":{\"columns\":[{\"isTransposed\":false,\"columnId\":\"ca1bda26-1f2f-4752-84db-aa12aa71fcf9\",\"width\":322.16666666666663},{\"isTransposed\":false,\"columnId\":\"2fe40fff-d753-4072-966b-6fd207505afe\",\"width\":270.66666666666663,\"alignment\":\"center\"},{\"columnId\":\"6164f47f-c6d2-415b-944f-ce795d29f730\",\"isTransposed\":false,\"alignment\":\"center\",\"width\":290.16666666666674}],\"layerId\":\"3fa120e7-9b87-448b-aa12-7587947c36d9\",\"layerType\":\"data\"},\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filters\":[],\"datasourceStates\":{\"indexpattern\":{\"layers\":{\"3fa120e7-9b87-448b-aa12-7587947c36d9\":{\"columns\":{\"ca1bda26-1f2f-4752-84db-aa12aa71fcf9\":{\"label\":\"Event Name\",\"dataType\":\"string\",\"operationType\":\"terms\",\"scale\":\"ordinal\",\"sourceField\":\"event.action.keyword\",\"isBucketed\":true,\"params\":{\"size\":5,\"orderBy\":{\"type\":\"column\",\"columnId\":\"2fe40fff-d753-4072-966b-6fd207505afe\"},\"orderDirection\":\"desc\",\"otherBucket\":true,\"missingBucket\":false},\"customLabel\":true},\"2fe40fff-d753-4072-966b-6fd207505afe\":{\"label\":\"Events Count\",\"dataType\":\"number\",\"operationType\":\"count\",\"isBucketed\":false,\"scale\":\"ratio\",\"sourceField\":\"Records\",\"customLabel\":true},\"6164f47f-c6d2-415b-944f-ce795d29f730\":{\"label\":\"Server IP\",\"dataType\":\"ip\",\"operationType\":\"terms\",\"scale\":\"ordinal\",\"sourceField\":\"server.ip\",\"isBucketed\":true,\"params\":{\"size\":4,\"orderBy\":{\"type\":\"column\",\"columnId\":\"2fe40fff-d753-4072-966b-6fd207505afe\"},\"orderDirection\":\"desc\",\"otherBucket\":true,\"missingBucket\":false},\"customLabel\":true}},\"columnOrder\":[\"ca1bda26-1f2f-4752-84db-aa12aa71fcf9\",\"6164f47f-c6d2-415b-944f-ce795d29f730\",\"2fe40fff-d753-4072-966b-6fd207505afe\"],\"incompleteColumns\":{}}}}}}},\"enhancements\":{},\"hidePanelTitles\":false},\"title\":\"Server Alerts\"},{\"version\":\"7.17.4\",\"type\":\"lens\",\"gridData\":{\"x\":16,\"y\":39,\"w\":17,\"h\":18,\"i\":\"afdf8215-db88-4720-a33e-7ea8efaf3e88\"},\"panelIndex\":\"afdf8215-db88-4720-a33e-7ea8efaf3e88\",\"embeddableConfig\":{\"attributes\":{\"title\":\"\",\"visualizationType\":\"lnsXY\",\"type\":\"lens\",\"references\":[{\"id\":\"99bb6400-e680-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-current-indexpattern\",\"type\":\"index-pattern\"},{\"id\":\"99bb6400-e680-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-layer-ae577a51-e55f-4178-8d51-83ed3aa8f6e9\",\"type\":\"index-pattern\"}],\"state\":{\"visualization\":{\"legend\":{\"isVisible\":true,\"position\":\"right\"},\"valueLabels\":\"hide\",\"fittingFunction\":\"None\",\"xTitle\":\"Timestamp\",\"yTitle\":\"Client-Server ports\",\"yLeftExtent\":{\"mode\":\"full\"},\"yRightExtent\":{\"mode\":\"full\"},\"axisTitlesVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"tickLabelsVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"labelsOrientation\":{\"x\":0,\"yLeft\":-45,\"yRight\":0},\"gridlinesVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"preferredSeriesType\":\"bar_percentage_stacked\",\"layers\":[{\"layerId\":\"ae577a51-e55f-4178-8d51-83ed3aa8f6e9\",\"seriesType\":\"bar_percentage_stacked\",\"xAccessor\":\"80eae38b-fb8b-47b4-83fc-8057ddb749a8\",\"accessors\":[\"70f541ef-d85a-43df-921e-8f91fb01dd81\",\"46ec0ee9-a7ab-4ca9-9790-8d9792d5d956\"],\"layerType\":\"data\"}]},\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filters\":[],\"datasourceStates\":{\"indexpattern\":{\"layers\":{\"ae577a51-e55f-4178-8d51-83ed3aa8f6e9\":{\"columns\":{\"80eae38b-fb8b-47b4-83fc-8057ddb749a8\":{\"label\":\"@timestamp\",\"dataType\":\"date\",\"operationType\":\"date_histogram\",\"sourceField\":\"@timestamp\",\"isBucketed\":true,\"scale\":\"interval\",\"params\":{\"interval\":\"auto\"}},\"70f541ef-d85a-43df-921e-8f91fb01dd81\":{\"label\":\"Median of client.port\",\"dataType\":\"number\",\"operationType\":\"median\",\"sourceField\":\"client.port\",\"isBucketed\":false,\"scale\":\"ratio\"},\"46ec0ee9-a7ab-4ca9-9790-8d9792d5d956\":{\"label\":\"Median of server.port\",\"dataType\":\"number\",\"operationType\":\"median\",\"sourceField\":\"server.port\",\"isBucketed\":false,\"scale\":\"ratio\"}},\"columnOrder\":[\"80eae38b-fb8b-47b4-83fc-8057ddb749a8\",\"70f541ef-d85a-43df-921e-8f91fb01dd81\",\"46ec0ee9-a7ab-4ca9-9790-8d9792d5d956\"],\"incompleteColumns\":{}}}}}}},\"enhancements\":{},\"hidePanelTitles\":false},\"title\":\"Percentage Of Client-Server #Ports\"},{\"version\":\"7.17.4\",\"type\":\"lens\",\"gridData\":{\"x\":33,\"y\":39,\"w\":15,\"h\":18,\"i\":\"b6a655c6-95af-4949-97e0-6af67faf4d31\"},\"panelIndex\":\"b6a655c6-95af-4949-97e0-6af67faf4d31\",\"embeddableConfig\":{\"attributes\":{\"title\":\"\",\"visualizationType\":\"lnsXY\",\"type\":\"lens\",\"references\":[{\"id\":\"99bb6400-e680-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-current-indexpattern\",\"type\":\"index-pattern\"},{\"id\":\"99bb6400-e680-11ec-8f1c-7711b68e0efc\",\"name\":\"indexpattern-datasource-layer-1f7c689d-daee-40f9-89f8-8ca660561544\",\"type\":\"index-pattern\"}],\"state\":{\"visualization\":{\"legend\":{\"isVisible\":true,\"position\":\"right\"},\"valueLabels\":\"hide\",\"fittingFunction\":\"None\",\"xTitle\":\"Timestamp\",\"yTitle\":\"Client-Server Packets\",\"yLeftExtent\":{\"mode\":\"full\"},\"yRightExtent\":{\"mode\":\"full\"},\"axisTitlesVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"tickLabelsVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"labelsOrientation\":{\"x\":0,\"yLeft\":-45,\"yRight\":0},\"gridlinesVisibilitySettings\":{\"x\":true,\"yLeft\":true,\"yRight\":true},\"preferredSeriesType\":\"bar_percentage_stacked\",\"layers\":[{\"layerId\":\"1f7c689d-daee-40f9-89f8-8ca660561544\",\"accessors\":[\"4767e77e-439f-45fa-8583-03094e3e4488\",\"1570e562-2536-4338-b2ac-c0adcaee93c7\"],\"position\":\"top\",\"seriesType\":\"bar_percentage_stacked\",\"showGridlines\":false,\"layerType\":\"data\",\"xAccessor\":\"39da563e-7567-4a27-91a2-e8e817c5721f\"}]},\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filters\":[],\"datasourceStates\":{\"indexpattern\":{\"layers\":{\"1f7c689d-daee-40f9-89f8-8ca660561544\":{\"columns\":{\"39da563e-7567-4a27-91a2-e8e817c5721f\":{\"label\":\"@timestamp\",\"dataType\":\"date\",\"operationType\":\"date_histogram\",\"sourceField\":\"@timestamp\",\"isBucketed\":true,\"scale\":\"interval\",\"params\":{\"interval\":\"auto\"}},\"4767e77e-439f-45fa-8583-03094e3e4488\":{\"label\":\"Median of client.packets\",\"dataType\":\"number\",\"operationType\":\"median\",\"sourceField\":\"client.packets\",\"isBucketed\":false,\"scale\":\"ratio\"},\"1570e562-2536-4338-b2ac-c0adcaee93c7\":{\"label\":\"Median of server.packets\",\"dataType\":\"number\",\"operationType\":\"median\",\"sourceField\":\"server.packets\",\"isBucketed\":false,\"scale\":\"ratio\"}},\"columnOrder\":[\"39da563e-7567-4a27-91a2-e8e817c5721f\",\"4767e77e-439f-45fa-8583-03094e3e4488\",\"1570e562-2536-4338-b2ac-c0adcaee93c7\"],\"incompleteColumns\":{}}}}}}},\"enhancements\":{},\"hidePanelTitles\":false},\"title\":\"Percentage Of Client-Server #Packets\"}]","timeRestore":false,"title":"Alerts","version":1},"coreMigrationVersion":"7.17.4","id":"06f94d20-ebcc-11ec-bcc7-c1183ed35370","migrationVersion":{"dashboard":"7.17.3"},"references":[{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"c3371fe1-e481-4731-aa64-76240d2a3b7c:indexpattern-datasource-current-indexpattern","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"c3371fe1-e481-4731-aa64-76240d2a3b7c:indexpattern-datasource-layer-60591eeb-7bab-4409-a7f8-3032722228b5","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"9b0cc7fa-e61f-4d90-95ca-3269df558fb7:indexpattern-datasource-current-indexpattern","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"9b0cc7fa-e61f-4d90-95ca-3269df558fb7:indexpattern-datasource-layer-728ba3bd-cd6d-4864-86b1-9e5fce77f1cd","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"40678037-1bcd-414c-87be-7878a4bd3ac9:indexpattern-datasource-current-indexpattern","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"40678037-1bcd-414c-87be-7878a4bd3ac9:indexpattern-datasource-layer-468e9239-096d-470d-bc97-1e2bc2d8db7c","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"bd303646-b4c7-4627-b125-ee0cbd469e26:indexpattern-datasource-current-indexpattern","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"bd303646-b4c7-4627-b125-ee0cbd469e26:indexpattern-datasource-layer-961cacf2-9e6f-4784-aeb8-fff749aeb9a6","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"349c6512-12b5-4c31-a38f-7feaa217627a:indexpattern-datasource-current-indexpattern","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"349c6512-12b5-4c31-a38f-7feaa217627a:indexpattern-datasource-layer-81f03921-d571-4782-aa20-ddecd4292739","type":"index-pattern"},{"id":"99bb6400-e680-11ec-8f1c-7711b68e0efc","name":"19ae1866-b6ea-4ea6-b78c-bd2828efbba5:indexpattern-datasource-current-indexpattern","type":"index-pattern"},{"id":"99bb6400-e680-11ec-8f1c-7711b68e0efc","name":"19ae1866-b6ea-4ea6-b78c-bd2828efbba5:indexpattern-datasource-layer-75cae453-fe6e-4823-95b6-3d0c912d5380","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"fb0710ed-efff-45e1-b0ba-12f1f7b06ec4:indexpattern-datasource-current-indexpattern","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"fb0710ed-efff-45e1-b0ba-12f1f7b06ec4:indexpattern-datasource-layer-99bb98a6-2727-4fd7-9f06-5febd68d191f","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"41c0101d-fdf2-432d-8fe2-9d7de9dfb759:indexpattern-datasource-current-indexpattern","type":"index-pattern"},{"id":"c54feb30-e703-11ec-8f1c-7711b68e0efc","name":"41c0101d-fdf2-432d-8fe2-9d7de9dfb759:indexpattern-datasource-layer-3fa120e7-9b87-448b-aa12-7587947c36d9","type":"index-pattern"},{"id":"99bb6400-e680-11ec-8f1c-7711b68e0efc","name":"afdf8215-db88-4720-a33e-7ea8efaf3e88:indexpattern-datasource-current-indexpattern","type":"index-pattern"},{"id":"99bb6400-e680-11ec-8f1c-7711b68e0efc","name":"afdf8215-db88-4720-a33e-7ea8efaf3e88:indexpattern-datasource-layer-ae577a51-e55f-4178-8d51-83ed3aa8f6e9","type":"index-pattern"},{"id":"99bb6400-e680-11ec-8f1c-7711b68e0efc","name":"b6a655c6-95af-4949-97e0-6af67faf4d31:indexpattern-datasource-current-indexpattern","type":"index-pattern"},{"id":"99bb6400-e680-11ec-8f1c-7711b68e0efc","name":"b6a655c6-95af-4949-97e0-6af67faf4d31:indexpattern-datasource-layer-1f7c689d-daee-40f9-89f8-8ca660561544","type":"index-pattern"}],"type":"dashboard","updated_at":"2022-06-21T08:53:26.616Z","version":"Wzc2MjgsM10="}
{"excludedObjects":[],"excludedObjectsCount":0,"exportedCount":3,"missingRefCount":0,"missingReferences":[]}