Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Advisor

What is the search language used by Smart log?

Hi there,

Wondering if someone can shed light on Smart Log queries? I am keen to know what search language is used by Smart log? Since I am very well versed with Graylog/ES search syntax can those same queries used in smart log? And if not is there a specific SK which describes Search syntax and how to perform complex queries? This is I am inquiring from a threat hunting perspective.

 

Thanks and Regards,

Blason R

0 Kudos
Reply
1 Reply
Admin
Admin

The queries that are allowed are described in the product documentation. In R80.20 for instance, they are in the R80.20 Logging and Monitoring Guide under a section called Query Language Overview. What exact language it is, I'm not sure, but maybe I can ask around.

0 Kudos
Reply