{ "title": "Plaso", "services": { "query": { "idQueue": [ 1, 2, 3, 4 ], "list": { "0": { "query": "*", "alias": "", "color": "#7EB26D", "id": 0, "pin": false, "type": "lucene" } }, "ids": [ 0 ] }, "filter": { "idQueue": [ 0, 1, 2 ], "list": {}, "ids": [] } }, "rows": [ { "title": "Histogram", "height": "200px", "editable": true, "collapse": false, "collapsable": true, "panels": [ { "span": 12, "editable": true, "type": "histogram", "loadingEditor": false, "mode": "count", "time_field": "datetime", "queries": { "mode": "all", "ids": [ 0 ] }, "value_field": null, "auto_int": true, "resolution": 100, "interval": "1y", "intervals": [ "auto", "1s", "1m", "5m", "10m", "30m", "1h", "3h", "12h", "1d", "1w", "1M", "1y" ], "fill": 0, "linewidth": 3, "timezone": "browser", "spyable": true, "zoomlinks": true, "bars": true, "stack": true, "points": false, "lines": false, "legend": true, "x-axis": true, "y-axis": true, "percentage": false, "interactive": true, "options": true, "tooltip": { "value_type": "cumulative", "query_as_alias": false }, "title": "Histogram" } ], "notice": false }, { "title": "Graph", "height": "250px", "editable": true, "collapse": false, "collapsable": true, "panels": [ { "error": false, "span": 4, "editable": true, "type": "terms", "loadingEditor": false, "queries": { "mode": "selected", "ids": [ 0 ] }, "field": "source_short", "exclude": [], "missing": true, "other": true, "size": 10, "order": "count", "style": { "font-size": "10pt" }, "donut": false, "tilt": false, "labels": true, "arrangement": "horizontal", "chart": "bar", "counter_pos": "below", "spyable": true, "title": "Source Distribution" }, { "error": false, "span": 4, "editable": true, "type": "terms", "loadingEditor": false, "queries": { "mode": "selected", "ids": [] }, "field": "parser", "exclude": [], "missing": true, "other": true, "size": 10, "order": "count", "style": { "font-size": "10pt" }, "donut": false, "tilt": false, "labels": true, "arrangement": "horizontal", "chart": "table", "counter_pos": "above", "spyable": true, "title": "Parser Count" }, { "error": false, "span": 4, "editable": true, "type": "terms", "loadingEditor": false, "queries": { "mode": "selected", "ids": [] }, "field": "hostname", "exclude": [], "missing": true, "other": true, "size": 10, "order": "count", "style": { "font-size": "10pt" }, "donut": false, "tilt": false, "labels": true, "arrangement": "horizontal", "chart": "bar", "counter_pos": "above", "spyable": true, "title": "Hosts" } ], "notice": false }, { "title": "Events", "height": "650px", "editable": true, "collapse": false, "collapsable": true, "panels": [ { "error": false, "span": 12, "editable": true, "group": [ "default" ], "type": "table", "size": 100, "pages": 5, "offset": 0, "sort": [ "datetime", "desc" ], "style": { "font-size": "9pt" }, "overflow": "min-height", "fields": [ "datetime", "timestamp_desc", "hostname", "username", "source_short", "source_long", "message", "tag", "display_name" ], "highlight": [], "sortable": true, "header": true, "paging": true, "spyable": true, "queries": { "mode": "all", "ids": [ 0 ] }, "field_list": true, "status": "Stable", "trimFactor": 300, "normTimes": true, "title": "Documents", "all_fields": false } ], "notice": false } ], "editable": true, "index": { "interval": "none", "pattern": "[logstash-]YYYY.MM.DD", "default": "_all" }, "style": "light", "failover": false, "panel_hints": true, "loader": { "save_gist": false, "save_elasticsearch": true, "save_local": true, "save_default": true, "save_temp": true, "save_temp_ttl_enable": true, "save_temp_ttl": "30d", "load_gist": true, "load_elasticsearch": true, "load_elasticsearch_size": 20, "load_local": true, "hide": false }, "pulldowns": [ { "type": "query", "collapse": false, "notice": false, "query": "*", "pinned": true, "history": [], "remember": 10, "enable": true }, { "type": "filtering", "collapse": true, "notice": false, "enable": true } ], "nav": [ { "type": "timepicker", "collapse": false, "notice": false, "status": "Stable", "time_options": [ "5m", "15m", "1h", "6h", "12h", "24h", "2d", "7d", "30d" ], "refresh_intervals": [ "5s", "10s", "30s", "1m", "5m", "15m", "30m", "1h", "2h", "1d" ], "timefield": "@timestamp", "enable": true } ], "refresh": false }