Query Management
- You can query the log database to search for specific events on customer networks.
- The 'Investigation' feature lets you build granular queries, construct correlation rules and create custom dashboards.
- SOCaaP ships with a set of predefined queries for each customer and also allows you to create custom queries.
See the following sections for more details:
- Configure Event Queries
- Long Term Analysis
- Configure Custom Dashboards
- Event Field Selection Settings