Create flexible visualizations and transform data with our powerful new aggregation builder UI.
Every view has a time range selector to quickly change the time range you want to search in. Start with looking at only an hour of data and then switch to a full week of data with just a click.
Have a task that you or your colleagues are executing regularly? Create a view once and re-use it anytime. Have flexible parameters like an IP address or hostname? Substitute parts of the query with parameters and configure them easily before view execution.
Want to search across multiple streams at once or quickly add another one? The whole result set is now always based on all streams that you select in the streams selector box.
Reports are built using an intuitive GUI-based process. No complicated configuration language, and all the benefits of WYSIWYG.
Configure reports to be sent out at custom intervals. The report will be attached as a PDF to a customizable email.
See when scheduled reports were sent out and who received them.
Download a current PDF report at any time with a click from the web interface.
Deploy, configure, or restart any log collector. Collector configurations can be shared and imported using content packs.
The new configuration UI is text-based and much easier to use than the existing one. Apply different configurations easily, on all or only selected collectors and based on their type.
The sidecar process and the processes it manages are now reporting more status and error information to allow remote debugging and remediation from within the web interface and without ever logging in to the remote machine.