timesketch
timesketch copied to clipboard
Sigma Overview page 2.0
trafficstars
Stuff that people would like to see on the Sigma overview page:
- aggregation which rules matched how often
- Sort table of rules after matches
- create a view to filter after OS / product etc
aggregation which rules matched how often
From a UX perspective, I would just plainly say "which rules have hits in our sketch"
create a view to filter after os / product
Not sure what you mean by this, can you elaborate what the user journey for this would look like?
Will close this issue as we are tracking several of those efforts in different places like aggregations.