{
"attributes": {
"description": "",
"kibanaSavedObjectMeta": {
"searchSourceJSON": {}
},
"savedSearchRefName": "search_0",
"title": "Events Histogram [Filebeat o365]",
"uiStateJSON": {},
"version": 1,
"visState": {
"aggs": [
{
"enabled": true,
"id": "1",
"params": {},
"schema": "metric",
"type": "count"
},
{
"enabled": true,
"id": "2",
"params": {
"field": "event.code",
"missingBucket": false,
"missingBucketLabel": "Missing",
"order": "desc",
"orderBy": "1",
"otherBucket": true,
"otherBucketLabel": "Other",
"size": 50
},
"schema": "group",
"type": "terms"
},
{
"enabled": true,
"id": "3",
"params": {
"drop_partials": false,
"extended_bounds": {},
"field": "@timestamp",
"interval": "auto",
"min_doc_count": 1,
"scaleMetricValues": false,
"timeRange": {
"from": "2020-02-05T03:25:59.045Z",
"to": "2020-02-29T10:59:01.067Z"
},
"useNormalizedEsInterval": true
},
"schema": "segment",
"type": "date_histogram"
}
],
"params": {
"addLegend": true,
"addTimeMarker": false,
"addTooltip": true,
"categoryAxes": [
{
"id": "CategoryAxis-1",
"labels": {
"filter": true,
"show": true,
"truncate": 100
},
"position": "bottom",
"scale": {
"type": "linear"
},
"show": true,
"style": {},
"title": {},
"type": "category"
}
],
"detailedTooltip": true,
"dimensions": {
"series": [
{
"accessor": 0,
"aggType": "terms",
"format": {
"id": "terms",
"params": {
"id": "string",
"missingBucketLabel": "Missing",
"otherBucketLabel": "Other",
"parsedUrl": {
"basePath": "",
"origin": "http://localhost:5601",
"pathname": "/app/kibana"
}
}
},
"label": "event.code: Descending",
"params": {}
}
],
"x": {
"accessor": 1,
"aggType": "date_histogram",
"format": {
"id": "date",
"params": {
"pattern": "YYYY-MM-DD HH:mm"
}
},
"label": "@timestamp per 12 hours",
"params": {
"bounds": {
"max": "2020-02-29T10:59:01.067Z",
"min": "2020-02-05T03:25:59.045Z"
},
"date": true,
"format": "YYYY-MM-DD HH:mm",
"interval": "PT12H",
"intervalESUnit": "h",
"intervalESValue": 12
}
},
"y": [
{
"accessor": 2,
"aggType": "count",
"format": {
"id": "number"
},
"label": "Count",
"params": {}
}
]
},
"grid": {
"categoryLines": false
},
"isVislibVis": true,
"labels": {
"show": false
},
"legendPosition": "right",
"palette": {
"name": "kibana_palette",
"type": "palette"
},
"seriesParams": [
{
"data": {
"id": "1",
"label": "Count"
},
"drawLinesBetweenPoints": true,
"lineWidth": 2,
"mode": "stacked",
"show": true,
"showCircles": true,
"type": "histogram",
"valueAxis": "ValueAxis-1"
}
],
"thresholdLine": {
"color": "#E7664C",
"show": false,
"style": "full",
"value": 10,
"width": 1
},
"times": [],
"type": "histogram",
"valueAxes": [
{
"id": "ValueAxis-1",
"labels": {
"filter": false,
"rotate": 0,
"show": true,
"truncate": 100
},
"name": "LeftAxis-1",
"position": "left",
"scale": {
"mode": "normal",
"type": "linear"
},
"show": true,
"style": {},
"title": {
"text": "Count"
},
"type": "value"
}
]
},
"title": "Events Histogram [Filebeat o365]",
"type": "histogram"
}
},
"coreMigrationVersion": "8.0.0",
"id": "8b033510-685a-11ea-8d6a-292ef5d68366",
"migrationVersion": {
"visualization": "7.14.0"
},
"references": [
{
"id": "fdc14020-6859-11ea-8d6a-292ef5d68366",
"name": "search_0",
"type": "search"
}
],
"type": "visualization",
"updated_at": "2021-08-04T16:33:49.253Z",
"version": "WzQzMDYsMV0="
}