# Analyzing Windows Host Data - Lab

**URL:** <https://discuss.elastic.co/t/analyzing-windows-host-data-lab/239171>\
**Category:** Elastic Training\
**Created:** [June 29, 2020, 6:43pm UTC](https://discuss.elastic.co/t/analyzing-windows-host-data-lab/239171 "2020-06-29T18:43:48Z")\
**Posts on this page:** 10\
**Page:** 1

<div class="post-metadata">

**Author:** ![fadi.alhamwii](https://avatars.discourse-cdn.com/v4/letter/f/edb3f5/32.png) [@fadi.alhamwii](https://discuss.elastic.co/u/fadi.alhamwii)\
**Post date:** [June 29, 2020, 6:43pm UTC](https://discuss.elastic.co/t/analyzing-windows-host-data-lab/239171/1 "2020-06-29T18:43:48Z")

</div>

I have an issue with Analyzing Windows Host Data - Lab.

I could open Strigo page, then can not Access lab instructions

Also left the lab page open (30 min) and still the page is unreachable

---

<div class="post-metadata">

**Author:** ![abdon](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/abdon/32/9195_2.png) [@abdon](https://discuss.elastic.co/u/abdon)\
**Post date:** [June 30, 2020, 7:01am UTC](https://discuss.elastic.co/t/analyzing-windows-host-data-lab/239171/2 "2020-06-30T07:01:36Z")

</div>

Hi Fadi,

With this course's VM, there's an issue with the Docker containers that we use (they are sometimes not automatically brought up).

To resolve this, you can type the following in a Linux terminal in Strigo:

```auto
sudo docker start ca certs web elasticsearch01 elasticsearch02 elasticsearch03 kibana01

```

After a while, everything should be up and running, and you should be able to access the lab instructions and the Elastic Stack.

You may get a privacy error when trying to access Kibana ( `NET::ERR_CERT_AUTHORITY_INVALID` ), but you can ignore that and just move on to Kibana.

---

<div class="post-metadata">

**Author:** ![fadi.alhamwii](https://avatars.discourse-cdn.com/v4/letter/f/edb3f5/32.png) [@fadi.alhamwii](https://discuss.elastic.co/u/fadi.alhamwii)\
**Post date:** [June 30, 2020, 12:16pm UTC](https://discuss.elastic.co/t/analyzing-windows-host-data-lab/239171/3 "2020-06-30T12:16:56Z")

</div>

Thank You .

---

<div class="post-metadata">

**Author:** ![georges](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/georges/32/46479_2.png) [@georges](https://discuss.elastic.co/u/georges)\
**Post date:** [July 28, 2020, 5:40am UTC](https://discuss.elastic.co/t/analyzing-windows-host-data-lab/239171/4 "2020-07-28T05:40:11Z")

</div>

Hello Guys!

I had the same issue with this Analyzing Windows Host Data course.  
Time allocated for that lab already went over for me and with no success in following the course.

Could somebody help me providing those pre-built dashboars used in this lab? (I tired to find them some github repos but with no luck)  
While doing the course below URLs were indicated do download pre-built dashboards, but that host was not reachable.  
[[http://18.197.102.125/resources/windows.json](http://18.197.102.125/resources/windows.json)]  
[[http://18.197.102.125/resources/sysmon.json](http://18.197.102.125/resources/sysmon.json)]

Thank you!

---

<div class="post-metadata">

**Author:** ![abdon](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/abdon/32/9195_2.png) [@abdon](https://discuss.elastic.co/u/abdon)\
**Post date:** [July 28, 2020, 8:31am UTC](https://discuss.elastic.co/t/analyzing-windows-host-data-lab/239171/5 "2020-07-28T08:31:24Z")

</div>

Hey SG,

Sorry to hear about your issues with this lab. I have shared the two files for you to download here: [https://gist.github.com/abdonpijpelink/817fd34eef92c9acbd5744d5b6d72cba](https://gist.github.com/abdonpijpelink/817fd34eef92c9acbd5744d5b6d72cba)

---

<div class="post-metadata">

**Author:** ![georges](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/georges/32/46479_2.png) [@georges](https://discuss.elastic.co/u/georges)\
**Post date:** [July 28, 2020, 11:51am UTC](https://discuss.elastic.co/t/analyzing-windows-host-data-lab/239171/6 "2020-07-28T11:51:32Z")

</div>

No worries  
Thank you for provided files!  
George

---

<div class="post-metadata">

**Author:** ![georges](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/georges/32/46479_2.png) [@georges](https://discuss.elastic.co/u/georges)\
**Post date:** [July 29, 2020, 7:58am UTC](https://discuss.elastic.co/t/analyzing-windows-host-data-lab/239171/7 "2020-07-29T07:58:15Z")

</div>

Importing provided files to 7.6.1 Kibana version got some errors.

Support for JSON files is going away  
Use our updated export to generate NDJSON files, and you'll be all set.

Could you provide NDJSON format or indicate how would be easier to translate them to newer format?

Thank you!

---

<div class="post-metadata">

**Author:** ![abdon](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/abdon/32/9195_2.png) [@abdon](https://discuss.elastic.co/u/abdon)\
**Post date:** [July 29, 2020, 9:15am UTC](https://discuss.elastic.co/t/analyzing-windows-host-data-lab/239171/8 "2020-07-29T09:15:38Z")

</div>

Hi George,

That message is just a warning. You should still be able to import the JSON files with Kibana 7.6.

If you want an NDJSON file, you can export the objects yourself from your Kibana instance, after you have imported them. That will then create an NDJSON file.

Abdon

---

<div class="post-metadata">

**Author:** ![georges](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/georges/32/46479_2.png) [@georges](https://discuss.elastic.co/u/georges)\
**Post date:** [July 29, 2020, 5:53pm UTC](https://discuss.elastic.co/t/analyzing-windows-host-data-lab/239171/9 "2020-07-29T17:53:16Z")

</div>

Great!  
Thank you Abdon!

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [August 28, 2020, 5:53pm UTC](https://discuss.elastic.co/t/analyzing-windows-host-data-lab/239171/10 "2020-08-28T17:53:19Z")

</div>

This topic was automatically closed 30 days after the last reply. New replies are no longer allowed.
