Pivoting Between Data Sources #365
Labels
arkime
Relating to Malcolm's use of Arkime
dashboards
Relating to Malcolm's OpenSearch Dashboards interface
train-operation
Training topic related to how to use Malcolm to conduct network traffic analysis
training
Related to developing and releasing Malcolm training
For what topic would you like to see training developed?
Illustrate how to use fields like
event.id
(Zeek's UID and FUID) and Community ID to pivot between dashboards and between Dashboards and Arkime.What format would be best suited for this training?
A video
Is there existing Malcolm documentation that could be improved by including this topic?
Correlating Zeek logs and Arkime Sessions
The text was updated successfully, but these errors were encountered: