I'm very new to ELK, I was trying to create a dashboard based on SourceLocation Filed SourceDestination filed for PaloAlto data.. but getting suspicious values instead it showing just ip address..
Could you please help me guys..
can you paste the value of a document? to see how the data looks in ES.
Also, what are you using to ingest the data?
This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.