Demo

Description

This download enhances the Kibana alerting experience. Kibana alerting is an easy to use evolution of the alerting capabilities within the Elastic Stack. All relevant configuations can be easily managed through the Kibana Frontend. However to get an overview about the existing alerts and the status the user have to visit stack management. That makes it hard to get the status and history of alerts into dashboards.

This enhancement is loading the current state of each Kibana alert into a separate index using a watcher script. A second watcher script is saving the current state of each alert into another index to preserve the history of each alert. The download also includes two dashboards. The Alert overview dashboard is showing each Kibana alert and the current status. A Kibana alert could be configured manually, automatically by using Stack Monitoring or the use of Elastic Security Detection rules. The overview dashboard is configured to offer a drilldown into the Alert history dashboard called Alert overview. To trigger the drill down you need to filter on the alert you would like to observe more in depth.

What is Kibana alerting?

Kibana alerting allows you to define rules to detect complex conditions within different Kibana apps and trigger actions when those conditions are met. Alerting is integrated with ObservabilitySecurityMaps and Machine Learning, can be centrally managed from the Management UI, and provides a set of built-in connectors and rules (known as stack rules) for you to use.

Combining the visibility in all those kind of alerts into one single dashboard that can get extended with every other kind of information is extremly valuable for every use case.

Tested versions 7.1, 7.9, 7.10, 7.11, 7.12, 7.13
ECS compliant No

You must log in to submit a review.

Related downloads

Office 365 dashboards

A collection of Kibana dashboards to provide a holistic view of Microsoft Office 365 environments

PI Hole Logstash Pipeline and Dashboard

A filter for Logstash parsing PI-Hole logs + Dashboard to visualize the data

Watcher History Dashboard

This dashboard shows the history of executed watcher jobs.

Elastic Cloud Billing data collection and Kibana dashboard

Pulls Elastic Cloud Billing information from the Billing API then sends it to an Elasticsearch cluster and visualizes the results in Kibana dashboards.

Ask Me Anything Booth – Canvas Example

This is an example canvas page that shows how to visualize using canvas in general.

Threat detection Kibana dashboard

Kibana dashboard example visualizing the results of the Elastic SIEM detection engine

These downloads could be also interesting for you

Sigma Zeek Detection rules

A collection of rules based on the Sigma rules for Zeek based on the Filebeat Zeek module.

Vega Compound Gauge

This is a compund gauge visualization made with Vega. Its very helpful for visualization of percentage values.

Sigma detection rules for proxy server logs

A collection of rules based on the Sigma detection rules for proxy server and web server looks, e.g. zeek or suricata.

Resource Optimization Dashboard

Elastic Resource Optimization Dashboard to seamlessly integrate APM insights with cloud cost data for actionable resource management and cost-saving strategies

Filebeat Suricata Canvas dashboard

A Kibana Canvas dashboard example that visualizes suricata logs collected with Filebeat.

Filebeat Log analysis canvas example

This is a simple canvas dashboard example that analyzes logs created by Filebeat.