amiracle / homemonitor

Splunk app for home | monitor >
25 stars 5 forks source link

Intrusion Dashboard: EventType "wineventlog_security" does not exist or is disabled message #19

Open gawainXX opened 4 years ago

gawainXX commented 4 years ago

I've been in the process of adjusting the search strings for the various dashboards so that they will work with my pfsense instance.

I've encountered an error on the the intrusion page where it says that it could not find the eventtype. II believe that my query is good, there are just no matches. I've looked at the source but cannot figure out where the wineventlog eventtype is being referenced.

Here are some screenshots that show the error message, my modified search, the results when manually searching for it and then a different search without the criteria.

https://imgur.com/a/5YU8YX4

EDIT: I'm now seeing this warning on all pages as I browse the app more.