Dashboard Reference Dashboards and widgets provided by different packages are listed below. PackageDashboardapache/http-serverError log analysisapache/http-serverHTTP errorsapache/http-serverIOC matches for client IPapache/http-serverIOC matches for referer domainapache/http-serverOverviewapache/http-serverVisitor insightsapache/kafka-metricbeatKafka Monitoringcisco/asaEventscisco/asaOverviewcloudflare/area1emailsecurityCloudflare Email Security Startercrowdstrike/falcon-devicesCrowdStrike Falcon Devices: Overviewcrowdstrike/falcon-devicesCrowdStrike Falcon Devices: Policiescrowdstrike/fdr00 - FDR Package Announcement - Please Readcrowdstrike/fdrDetections by Instancecrowdstrike/fdrDetections by Typecrowdstrike/fdrDomain Searchcrowdstrike/fdrFile Vantagecrowdstrike/fdrHash Searchcrowdstrike/fdrHost Searchcrowdstrike/fdrIP Searchcrowdstrike/fdrMonitor Deploymentcrowdstrike/fdrProcess Context Eventscrowdstrike/fdrDev - Software Inventorycrowdstrike/fdrThreat Huntingcrowdstrike/fltr-coreAudit - Falcon UI Logscrowdstrike/fltr-coreDetections - By AgentIdcrowdstrike/fltr-coreDetections - By Alert Typecrowdstrike/fltr-coreDetections - Event Summarycrowdstrike/fltr-coreDetections - File Vantagecrowdstrike/fltr-coreDetections - MITRE ATT&CK Evaluationcrowdstrike/fltr-coreHealth - Cloud Workload Protectioncrowdstrike/fltr-coreHealth - Inventory of Installed Softwarecrowdstrike/fltr-coreHealth - Linux Sensorscrowdstrike/fltr-coreHealth - Monitor Deploymentcrowdstrike/fltr-coreOS - Windows Account Discoverycrowdstrike/fltr-coreOS - Windows User Logon Activitycrowdstrike/fltr-coreSearch - Acquire Host Detailscrowdstrike/fltr-coreSearch - By AgentIdcrowdstrike/fltr-coreSearch - By DNScrowdstrike/fltr-coreSearch - By File Hashcrowdstrike/fltr-coreSearch - By IP Addresscrowdstrike/fltr-coreSearch - By Process Contextcrowdstrike/fltr-coreSearch - By UserNamecrowdstrike/fltr-coreSearch - Threat Huntingcrowdstrike/fltr-corezBeta - Identify Statistical Anomaliescrowdstrike/fltr-firewall-adversariesNetwork Connections (IP) - IOC / Threat Actorscrowdstrike/fltr-identityprotectionDetections Dashboardcrowdstrike/fltr-identityprotectionEvent Analysis Dashboardcrowdstrike/fltr-identityprotectionIdentity-based Detectionscrowdstrike/fltr-identityprotectionThreat Huntercrowdstrike/fltr-tutorialThe Basics - 01 - Primercrowdstrike/fltr-tutorialThe Basics - 02 - Event Tagscrowdstrike/fltr-tutorialThe Basics - 03 - Field Names Simplifiedcrowdstrike/fltr-tutorialThe Basics - 04 - Commentscrowdstrike/fltr-tutorialThe Basics - 05 - Timestampscrowdstrike/fltr-tutorialThe Basics - 06 - Assignmentcrowdstrike/fltr-tutorialThe Basics - 07 - Regular Expressionscrowdstrike/fltr-tutorialThe Basics - 08 - Case Statementscrowdstrike/fltr-tutorialThe Basics - 09 - Functionscrowdstrike/fltr-tutorialThe Basics - 10 - Formatting Query Outputcrowdstrike/fltr-tutorialThe Basics - 11 - groupBycrowdstrike/fltr-tutorialThe Basics - 12 - Parameterscrowdstrike/fltr-tutorialThe Basics - 13 - Visualizationscrowdstrike/fltr-tutorialThe Basics - 14 - Widget Formattingcrowdstrike/fltr-tutorialThe Basics - 15 - Matchcrowdstrike/fltr-tutorialThe Basics - 16 - Field Extractioncrowdstrike/fltr-tutorialThe Basics - 17 - Query Building 101crowdstrike/fltr-tutorialThe Basics - 18 - Hyperlinkscrowdstrike/fltr-tutorialThe Basics - 19 - Helpful Query Examplescrowdstrike/intel-indicatorsCrowdStrike Intel Indicators: Actorscrowdstrike/intel-indicatorsCrowdStrike Intel Indicators: Malware Familycrowdstrike/intel-indicatorsCrowdStrike Intel Indicators: Overviewcrowdstrike/iocDomain overviewcrowdstrike/iocIP overviewcrowdstrike/iocOverviewcrowdstrike/iocURL overviewcrowdstrike/siem-connectorDetectionscrowdstrike/siem-connectorFirewall Activitycrowdstrike/siem-connectorSummary Dashboardcrowdstrike/siem-connectorUser Activitycrowdstrike/spotlightCrowdStrike Falcon Spotlight: Overviewcrowdstrike/spotlightCrowdStrike Falcon Spotlight: Severity Detailscyberark/pamCyberArk Core PAScyberark/vaultCyberArk Vaultdocker/metricsDocker Overviewextrahop/revealxExtraHop Detection Summaryextrahop/revealxReveal(X): Unmanaged Systemsgithub/eventsGitHub #1github/eventsGitHub #2github/eventsGitHub #3google/chrome-enterprise-security-eventsChromeOS Data Controlsgoogle/chrome-enterprise-security-eventsChromeOS Overviewgoogle/chrome-enterprise-security-eventsEvent Informationgoogle/chrome-enterprise-security-eventsExtension Monitoringgoogle/chrome-enterprise-security-eventsSecurity Overviewgoogle/chronicle-alertschronicle-alertsgoogle/chronicle-iocchronicle-iocsgoogle/gcp-auditAudit Log Summaryhumio/activityAlert Detailshumio/activityAlerts Overviewhumio/activityFDR Ingest Statushumio/activityFilter Alert Detailshumio/activityFilter Alerts Overviewhumio/activityLegacy Alert Detailshumio/activityLegacy Alerts Overviewhumio/activityScheduled Reports Overviewhumio/activityScheduled Search Detailshumio/activityScheduled Searches Overviewhumio/insightsBucket Storagehumio/insightsData transferred for fileshumio/insightsErrorshumio/insightsHardware Scalinghumio/insightsHostshumio/insightsIngesthumio/insightsKafkahumio/insightsLogScale Asset Resolution Service (LARS)humio/insightsLookup tableshumio/insightsOverviewhumio/insightsParsershumio/insightsPermissionshumio/insightsReplicationhumio/insightsRequest-Responsehumio/insightsSearchhumio/insightsSegments And Datasourceshumio/vector-metricsMetricsimperva/cloud-wafAccount Overviewimperva/cloud-wafSearchimperva/cloud-wafWAF Overviewisland/islandIsland Browser Dashboardlinux/system-logsLinux - Auditdlinux/system-logsLinux - Generallinux/system-logsLinux - SSHlinux/system-logsLinux - Sudomicrosoft/iisError log analysis (from HTTPERR log file)microsoft/iisHTTP errorsmicrosoft/iisIOC matches for client IPmicrosoft/iisIOC matches for referer domainmicrosoft/iisOverviewmicrosoft/iisVisitor insightsmicrosoft/microsoft365Email forwarding rulesmicrosoft/microsoft365Email investigationmicrosoft/microsoft365Email IOC detectionsmicrosoft/microsoft365Email overviewmicrosoft/microsoft365Email threat summarymimecast/email-securityAttachment Protectmimecast/email-securityAudit Logmimecast/email-securityData Leak Preventionmimecast/email-securityEmail Activity Summarymimecast/email-securityImpersonation Protectmimecast/email-securityThreat Intel Feed - Regionalmimecast/email-securityThreat Intel Feed - Targetedmimecast/email-securityURL Protectnetskope/casbNetskope Alert Event Overviewnetskope/casbNetskope CASB Overviewnetskope/casbNetskope Detection Overviewnginx/nginxError log analysisnginx/nginxHTTP errorsnginx/nginxIOC matches for client IPnginx/nginxIOC matches for referer domainnginx/nginxOverviewnginx/nginxVisitor insightsobsidiansecurity/actionnotificationObsidian Security Overviewobsidiansecurity/actionnotificationObsidian Security Posture Managementobsidiansecurity/actionnotificationObsidian Security Threat Managementordr/ordrConnected Device Insightspingidentity/pingoneOverviewpingidentity/pingonePassword activitypingidentity/pingonePolicy and MFAredhat/ansibleProcess investigationrubrik/security-cloudRubrik Security Cloudruby/loggerMonitoringservicenow/servicenowServiceNow Incidentstalon/talon-cyber-securityTalon Alerting Activitiestalon/talon-cyber-securityTalon Policy Activitiestalon/talon-cyber-securityTalon User Activitiesvectra/detectionsAuditvectra/detectionsUnified Dashboardveeam/veeamdataplatformVeeam Data Platform Monitoringveeam/veeamdataplatformVeeam Security Activitieszscaler/internet-accessWeb - Threat Activityzscaler/internet-accessWeb - User Investigationzscaler/internet-accessWeb - Web Activity