I'm trying to create a table, where there would be @timestamp of event, source IP and count of occurrences when someone tried/succeeded to connect to a specific network port.
But I only manage to create a table where all ports are shown. How could I filter them out (if it's possible). This table would be a part of a dashboard and I would like it to work without using global filters:
I hope somebody will understand my problem and thank you in advance.