Unable to see DNS queries though it shows count

Hi Team,

My elastic stack version is 7.15 and have windows AD which has DNS roles on it. I configured the SIEM APP and enrolled the server with elastic agent and fleet server. However in Security App/Kibana under Network I see DNS queries only count but unable to see the exact queries been used. Am I missing anything?

You may want to ask this question in another section of the forums as this section deals mostly with logstash.

Oops!! My bad. I will do that accordingly

Thanks for heads up.

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.