So I'm coming from a Splunk background, and trying to replicate some of the same sorts of visualizations and dashboards I had built out over there. If I have any gross misconceptions I blame that.
I have a dataset composed of network flow data (source address, dest address, type of traffic, locations of source and dest) and I'm trying to make a dashboard that given a certain IP in the search field, a profile of that IP is returned. One of the things I'd like to do is "Number of times the searched IP is a source address" as a metric. I'm unclear as to how to do that. Also, any suggestions for resources to get better acquainted with Kibana would be appreciated.