| 
            
            
              Over 110 detections crash SIEM application and Kibana plugins
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            19
           | 
          
            2095
           | 
          
            April 4, 2022
           | 
        
        
          | 
            
            
              Hosts tab in SIEM and WEF
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            17
           | 
          
            2161
           | 
          
            October 14, 2019
           | 
        
        
          | 
            
            
              ElasticSIEM unable to find [logs-endpoint.alerts
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            12
           | 
          
            4174
           | 
          
            August 18, 2021
           | 
        
        
          | 
            
            
              Trouble with Index Patterns
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            13
           | 
          
            3878
           | 
          
            August 2, 2019
           | 
        
        
          | 
            
            
              SIEM doesn't show any Winlogbeat events, despite ES receiving them
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            12
           | 
          
            3622
           | 
          
            May 8, 2020
           | 
        
        
          | 
            
            
              Can't access Detections from a different space
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            10
           | 
          
            2035
           | 
          
            June 3, 2021
           | 
        
        
          | 
            
            
              Detection Custom Rule not working
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            18
           | 
          
            2557
           | 
          
            March 28, 2020
           | 
        
        
          | 
            
            
              Questions re elksiem
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            34
           | 
          
            1825
           | 
          
            February 9, 2021
           | 
        
        
          | 
            
            
              Indicator Match Detection Rule Not Matched and Mapped to Intel Feeds
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            17
           | 
          
            2462
           | 
          
            April 1, 2021
           | 
        
        
          | 
            
            
              Elastic 7.9.1 - Security (SIEM) - Your visualization has error(s) - [illegal_argument_exception]
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            16
           | 
          
            2293
           | 
          
            November 9, 2020
           | 
        
        
          | 
            
            
              Filebeat for Sophos XG Firewall
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            9
           | 
          
            2989
           | 
          
            September 4, 2019
           | 
        
        
          | 
            
            
              Detections with custom query
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            15
           | 
          
            2361
           | 
          
            November 27, 2020
           | 
        
        
          | 
            
            
              SIEM Hosts/All Hosts Tables Empty
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            12
           | 
          
            2585
           | 
          
            September 2, 2019
           | 
        
        
          | 
            
            
              Include custom Elasticsearch index in SIEM default dashboards
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            15
           | 
          
            2227
           | 
          
            August 4, 2020
           | 
        
        
          | 
            
            
              (ELK 7.9.1) Security - Hosts and Security - Network missing data
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            20
           | 
          
            1852
           | 
          
            October 15, 2020
           | 
        
        
          | 
            
            
              Threshold rules not triggering on selfmade index
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            16
           | 
          
            2032
           | 
          
            November 6, 2020
           | 
        
        
          | 
            
            
              SIEM detection engine is not getting started
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            13
           | 
          
            2203
           | 
          
            October 18, 2020
           | 
        
        
          | 
            
            
              SIEM Command Line Auditing 4688 - 4689
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            11
           | 
          
            2315
           | 
          
            November 11, 2019
           | 
        
        
          | 
            
            
              Elastic SIEM. Security rules doesn't work
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            12
           | 
          
            2176
           | 
          
            December 27, 2021
           | 
        
        
          | 
            
            
              Issue with rules creation
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            15
           | 
          
            1863
           | 
          
            May 5, 2022
           | 
        
        
          | 
            
            
              Crete alerts for disabled accounts
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            15
           | 
          
            1757
           | 
          
            October 7, 2022
           | 
        
        
          | 
            
            
              SIEM can't detect DNS activity to Internet
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            21
           | 
          
            1497
           | 
          
            July 15, 2020
           | 
        
        
          | 
            
            
              Host not showing up despite events being present
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            9
           | 
          
            2218
           | 
          
            April 10, 2020
           | 
        
        
          | 
            
            
              [ URLHaus threat intelligence ]: create a new rule
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            18
           | 
          
            1601
           | 
          
            February 16, 2021
           | 
        
        
          | 
            
            
              Why filebeat pipelines disappoint or SIEM missing authentication patterns
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            13
           | 
          
            990
           | 
          
            September 20, 2022
           | 
        
        
          | 
            
            
              Shards failed warning on Network dashboard in SIEM app
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            9
           | 
          
            2081
           | 
          
            March 31, 2020
           | 
        
        
          | 
            
            
              Unable to run endpoint-security through Elastic Agent
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            12
           | 
          
            1785
           | 
          
            September 4, 2020
           | 
        
        
          | 
            
            
              Compare two fields in SIEM
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            14
           | 
          
            1639
           | 
          
            December 14, 2020
           | 
        
        
          | 
            
            
              Using Elastic SIEM and ML with Beats and Logstash
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            13
           | 
          
            1677
           | 
          
            September 8, 2020
           | 
        
        
          | 
            
            
              Yet Another Elastic SIEM Not Showing Hosts
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            11
           | 
          
            1743
           | 
          
            August 20, 2020
           | 
        
        
          | 
            
            
              Signal Detection Rules
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            12
           | 
          
            1645
           | 
          
            May 19, 2020
           | 
        
        
          | 
            
            
              Not able to edit rules
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            12
           | 
          
            1574
           | 
          
            October 18, 2022
           | 
        
        
          | 
            
            
              Authentications tab shows "All values returned zero"
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            15
           | 
          
            1396
           | 
          
            October 6, 2020
           | 
        
        
          | 
            
            
              Fetching Cisco , Firewall logs from syslog-ng server
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            11
           | 
          
            1596
           | 
          
            July 6, 2020
           | 
        
        
          | 
            
            
              Customize Detection Columns?
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            11
           | 
          
            1524
           | 
          
            December 11, 2020
           | 
        
        
          | 
            
            
              Threat Hunting Report for Elasticsearch
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            11
           | 
          
            1491
           | 
          
            October 7, 2020
           | 
        
        
          | 
            
            
              SIEM app doesn't use Timezone setting
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            13
           | 
          
            1361
           | 
          
            March 13, 2020
           | 
        
        
          | 
            
            
              For example, I have machine A running as a Server and I would like to manage other clients such as machine B, C, D,...etc So, how to do that? How to get many hosts?
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            21
           | 
          
            1052
           | 
          
            November 19, 2019
           | 
        
        
          | 
            
            
              Integration sophos Firewall with elastic
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            11
           | 
          
            1406
           | 
          
            May 7, 2023
           | 
        
        
          | 
            
            
              Prebuilt ML Jobs cant be activated
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            11
           | 
          
            1382
           | 
          
            May 23, 2020
           | 
        
        
          | 
            
            
              Timeline result of events not showing
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            9
           | 
          
            1472
           | 
          
            June 24, 2021
           | 
        
        
          | 
            
            
              Alerting and customizing SIEM app
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            12
           | 
          
            1267
           | 
          
            July 23, 2020
           | 
        
        
          | 
            
            
              7.6.0 vs new signals and futher enrich ingestion
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
           | 
          
            10
           | 
          
            1343
           | 
          
            April 6, 2020
           | 
        
        
          | 
            
            
              Kibana SIEM app performance
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            11
           | 
          
            1234
           | 
          
            June 26, 2020
           | 
        
        
          | 
            
            
              Error activating rule…
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            9
           | 
          
            1229
           | 
          
            October 13, 2020
           | 
        
        
          | 
            
            
              SIEM detection signals not showing up
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            9
           | 
          
            1223
           | 
          
            August 31, 2020
           | 
        
        
          | 
            
            
              SIEM created and closed cases report
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            10
           | 
          
            1161
           | 
          
            June 16, 2021
           | 
        
        
          | 
            
            
              Alert and connect mail format error
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            10
           | 
          
            1103
           | 
          
            April 30, 2021
           | 
        
        
          | 
            
            
              Fortinet.tmp.*
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            9
           | 
          
            1150
           | 
          
            April 14, 2021
           | 
        
        
          | 
            
            
              Unable to use SIEM module
            
            
           | 
          
              
                 
              
              
                 
              
              
                 
              
              
                 
              
           | 
          
            11
           | 
          
            1040
           | 
          
            May 6, 2021
           |