{"attributes":{"description":"","kibanaSavedObjectMeta":{"searchSourceJSON":"{\"query\":{\"query\":\"\",\"language\":\"kuery\"},\"filter\":[],\"indexRefName\":\"kibanaSavedObjectMeta.searchSourceJSON.index\"}"},"title":"Suricata alerts - the Hive","uiStateJSON":"{}","version":1,"visState":"{\"title\":\"Suricata alerts - the Hive\",\"type\":\"thehive_button\",\"params\":{\"url\":\"https://{{soctoolsproxy}}:9000\",\"apikey\":\"{{lookup('password', '{{playbook_dir}}/secrets/tokens/thehive_kibana_secret_key')}}\",\"owner\":\"{{THEHIVE_KIBANA_USER.username}}\",\"obsFields\":[{\"cnt\":100,\"name\":\"source.ip.keyword\",\"type\":\"ip\"},{\"cnt\":100,\"name\":\"destination.ip.keyword\",\"type\":\"ip\"},{\"cnt\":100,\"name\":\"host.keyword\",\"type\":\"fqdn\"},{\"cnt\":100,\"name\":\"host_domain.keyword\",\"type\":\"domain\"}]},\"aggs\":[{\"id\":\"1\",\"enabled\":true,\"type\":\"count\",\"schema\":\"metric\",\"params\":{}},{\"id\":\"2\",\"enabled\":true,\"type\":\"terms\",\"schema\":\"group\",\"params\":{\"field\":\"source.ip.keyword\",\"order\":\"desc\",\"size\":20,\"orderBy\":\"1\",\"otherBucket\":false,\"otherBucketLabel\":\"Other\",\"missingBucket\":false,\"missingBucketLabel\":\"Missing\"}}]}"},"id":"48992900-62d3-11ea-aaa3-bb2f31340783","migrationVersion":{"visualization":"7.4.2"},"references":[{"id":"e81e23f0-0b75-11ea-bc07-2bc38b4c4b9b","name":"kibanaSavedObjectMeta.searchSourceJSON.index","type":"index-pattern"}],"type":"visualization","updated_at":"2020-12-20T14:01:02.393Z","version":"WzI5LDRd"}