crowdstrike/siem-connector Dashboards
Detections
Widget | Description | Type |
---|---|---|
Displays a pie chart of detection types.
logscale
| Pie Chart | |
Displays a table of event detections and associated data
(timestamp, sensor ID, ComputerName, User,Severity, Local IP,
etc.)
logscale
| Table | |
Displays a chart of detected event techniques over a 1 hour
timespan.
logscale
| Time Chart | |
Displays a summary of detection events by computer name and
customer IDS string.
logscale
| Gauge | |
Displays a chart of detections by technique.
logscale
| Bar Chart | |
Displays a chart of event detections by tactic.
logscale
| Bar Chart | |
Displays a chart of event tactics over a 1 hour timespan by
computer name and customer IDS string.
logscale
| Time Chart | |
Displays a pie chart of top event tactics.
logscale
| Pie Chart | |
Displays a chart of events by event type using metadata.
logscale
| Bar Chart | |
Displays a list of events over time
logscale
| Time Chart |
Firewall Activity
Widget | Description | Type |
---|---|---|
Displays a table of firewall events and associated data (host
name, device ID, event type, event policy name, etc.)
logscale
| Table | |
Displays a flowchart of outbound blocked requests using firewall
data from local address to remote address.
logscale
| Sankey | |
Displays a list of outbound blocked requests.
logscale
| Gauge | |
Displays a chart of events by event type using metadata.
logscale
| Bar Chart | |
Displays a list of blocked inbound access requests using metadata.
logscale
| Gauge | |
Displays a list of total firewall event activities.
logscale
| Gauge | |
Displays a list of events over time
logscale
| Time Chart | |
Displays a flowchart of inbound blocked requests from remote
address to local address.
logscale
| Sankey |
Summary Dashboard
Widget | Description | Type |
---|---|---|
Displays a list policy events and associated data.
logscale
| Gauge | |
Displays a table of event detections and associated data
(timestamp, sensor ID, ComputerName, User,Severity, Local IP,
etc.)
logscale
| Table | |
Displays aggregated, policy-related events by user using metadata.
logscale
| Pie Chart | |
Displays a chart of detected event techniques over a 1 hour
timespan.
logscale
| Time Chart | |
Displays a summary of detection events by computer name and
customer IDS string.
logscale
| Gauge | |
Displays a table of firewall events and associated data (host
name, device ID, event type, event policy name, etc.)
logscale
| Table | |
Displays a flowchart of outbound blocked requests using firewall
data from local address to remote address.
logscale
| Sankey | |
Displays a list of outbound blocked requests.
logscale
| Gauge | |
Displays a chart of detections by technique.
logscale
| Bar Chart | |
Displays a chart of event detections by tactic.
logscale
| Bar Chart | |
Displays a chart of event tactics over a 1 hour timespan by
computer name and customer IDS string.
logscale
| Time Chart | |
Displays a chart of user activity by username.
logscale
| Bar Chart | |
Displays a pie chart of policy events by type using audit data.
logscale
| Pie Chart | |
Displays a pie chart of top event tactics.
logscale
| Pie Chart | |
Displays a chart of events by event type using metadata.
logscale
| Bar Chart | |
Displays user activity events using customer IDS string.
logscale
| Gauge | |
Displays a table of user activity events and associated data
(customer ID, user ID, service, operation).
logscale
| Table | |
Displays a list of blocked inbound access requests using metadata.
logscale
| Gauge | |
Displays a list of identity protection events.
logscale
| Gauge | |
Displays a list of events over time
logscale
| Time Chart | |
Displays a flowchart of inbound blocked requests from remote
address to local address.
logscale
| Sankey |
User Activity
Widget | Description | Type |
---|---|---|
Displays a list policy events and associated data.
logscale
| Gauge | |
Displays aggregated, policy-related events by user using metadata.
logscale
| Pie Chart | |
Displays a chart of user activity by username.
logscale
| Bar Chart | |
Displays a pie chart of policy events by type using audit data.
logscale
| Pie Chart | |
Displays a chart of events by event type using metadata.
logscale
| Bar Chart | |
Displays a pie chart of user activity by operation name.
logscale
| Pie Chart | |
Displays user activity events using customer IDS string.
logscale
| Gauge | |
Displays a table of user activity events and associated data
(customer ID, user ID, service, operation).
logscale
| Table | |
Displays a list of events over time
logscale
| Time Chart |