在“企业数据洞察”中过滤数据
如需导航到“企业数据洞察”视图,请完成以下步骤:
屏幕右上角是“应用”菜单图标
。点击该图标以打开“应用”下拉菜单。选择企业数据洞察,如下图所示。
“应用”菜单
即会显示“企业数据洞察”视图,其中包含 IOC 网域匹配项和近期提醒。您可以使用滑块调整时间范围,以显示更大的匹配范围和提醒范围。
“企业数据洞察”视图
点击 Chronicle 界面右上角的
图标。过程过滤菜单随即打开,如下图所示。通过“企业数据洞察”,“过程过滤”菜单可让您进一步过滤与企业内的当前提醒和 IOC 相关的信息。
“过滤”选项
“企业数据洞察”中提供了以下“过程过滤”选项:
- ALERT NAME CATEGORIES
- ALERT VENDOR SOURCE
- IOC CATEGORIES
- IOC CONFIDENCE SCORE
- IOC FEED
- IOC/ALERT SEVERITY
- TLD
Except as otherwise noted, the content of this page is licensed under the Creative Commons Attribution 4.0 License, and code samples are licensed under the Apache 2.0 License. For details, see the Google Developers Site Policies. Java is a registered trademark of Oracle and/or its affiliates.
Last updated 2022-05-20 UTC.
[{
"type": "thumb-down",
"id": "hardToUnderstand",
"label":"很难理解"
},{
"type": "thumb-down",
"id": "incorrectInformationOrSampleCode",
"label":"信息或代码不正确"
},{
"type": "thumb-down",
"id": "missingTheInformationSamplesINeed",
"label":"没有我需要的信息/示例"
},{
"type": "thumb-down",
"id": "translationIssue",
"label":"翻译问题"
},{
"type": "thumb-down",
"id": "otherDown",
"label":"其他"
}]
[{
"type": "thumb-up",
"id": "easyToUnderstand",
"label":"易于理解"
},{
"type": "thumb-up",
"id": "solvedMyProblem",
"label":"解决了我的问题"
},{
"type": "thumb-up",
"id": "otherUp",
"label":"其他"
}]