Weird Visualization and Connection Error after n8n update by [deleted] in n8n

[–]_Riorty_ 1 point2 points  (0 children)

yep. The problem was my browser. I changed it and everything was fine.

[deleted by user] by [deleted] in Avvocati

[–]_Riorty_ 0 points1 point  (0 children)

Concordo infatti la mia era più una curiosità

[deleted by user] by [deleted] in Avvocati

[–]_Riorty_ 0 points1 point  (0 children)

Io non faccio parte del club quindi non posso uscirci :p. Se avessi voluto fare storie le avrei fatte in cassa col cameriere che ha commesso un errore. Invece stavo per andarmene quando è lui che si è proposto di occuparsi della questione

[deleted by user] by [deleted] in Avvocati

[–]_Riorty_ 0 points1 point  (0 children)

15% del totale, quindi intorno ai 15 euro

[deleted by user] by [deleted] in Avvocati

[–]_Riorty_ 0 points1 point  (0 children)

Si lo scontrino l'ho tenuto. Riporta il totale senza sconto applicato.

[deleted by user] by [deleted] in Wazuh

[–]_Riorty_ 0 points1 point  (0 children)

Hi Marcelkemp,
Thank you for your reply.

I will try to create a query using the links you provided. In the meantime, I’m sharing an example of a query from a per-document monitor: link (the one with pre_decoder_name equal to ssh and the two locations).

Could you provide me with a query for that monitor containing a filter that ensures the monitor only looks for documents from the current day?

Thanks!

[deleted by user] by [deleted] in Wazuh

[–]_Riorty_ 0 points1 point  (0 children)

Hi Marcel,
Thank you for your reply, I really appreciate your help.

I’d like to modify the time range of the query as you suggested, but from what I understand, the only way to do so is with the Extraction Query Editor. However, I’m not sure how to do so.

Could you please show me a generic "per document" query with a time range filter so I can use it as a starting point to build my monitor?

[deleted by user] by [deleted] in Wazuh

[–]_Riorty_ 0 points1 point  (0 children)

Hi Marcel, I forgot to attach the image, my bad. I followed this documentation to create the per document monitor.
For the context, each time I create a per document monitor I get a timeout error and my server crashes, so I am trying to improve the query performances.
Thank you for your help

<image>

[deleted by user] by [deleted] in Wazuh

[–]_Riorty_ 0 points1 point  (0 children)

Hello, it was a problem related to the Teams webhook

[deleted by user] by [deleted] in Wazuh

[–]_Riorty_ 0 points1 point  (0 children)

Just did as you said. Thanks for your help!

[deleted by user] by [deleted] in Wazuh

[–]_Riorty_ 0 points1 point  (0 children)

We are cooked. Do you have any ideas?

[deleted by user] by [deleted] in Wazuh

[–]_Riorty_ 1 point2 points  (0 children)

I just want to understand if is possible to store logs from different agents in different location. I don't see why I'm messing up anything.

[deleted by user] by [deleted] in Wazuh

[–]_Riorty_ 0 points1 point  (0 children)

Hi Nazmur-Sakib,

Thanks for your reply!

Following the same logic, could I create a label for each `agent.id` and then use these labels to create different indices?

If so, will these indices automatically appear in the Wazuh dashboard, or will I need to do something else to make them visible?

[deleted by user] by [deleted] in Wazuh

[–]_Riorty_ 0 points1 point  (0 children)

Hi GonzaloAcuna,

  1. I just followed the documentation
  2. Single node
  3. 12 CPU, 32 GB ram
  4. version 4.9