Logstash Tutorial
27:06
11 ай бұрын
Elastic Detection Rule 101
20:27
Жыл бұрын
Пікірлер
@catarinaalves5566
@catarinaalves5566 7 күн бұрын
can you go through mock exam questions?
@mohamedsaidani8509
@mohamedsaidani8509 6 сағат бұрын
Thanks for your feedback, for each topic I give some examples
@yassineazza2329
@yassineazza2329 11 күн бұрын
thank u mohamed
@mohamedsaidani8509
@mohamedsaidani8509 11 күн бұрын
@@yassineazza2329 you welcome
@newenkalen109
@newenkalen109 19 күн бұрын
Hello, thanks for your videos, I was wondering what happens in the exam, do they give you the CA trusted fingerpring? Do I have to copy the elastic certificates to the heartbeat machine?
@mohamedsaidani8509
@mohamedsaidani8509 19 күн бұрын
@@newenkalen109 hey they will give you all the necessary information to do the task
@gonghuyang5165
@gonghuyang5165 20 күн бұрын
Thank you ! it's helpful ! but in the winlogbeat8.13, is the evet.code has missed ? and I find event_id instead it.
@mohamedsaidani8509
@mohamedsaidani8509 20 күн бұрын
Hi thanks for your feedback - here's a link where you can find the fields name - www.elastic.co/guide/en/ecs/current/ecs-event.html#field-event-id
@muralikrishnaallaparthi2480
@muralikrishnaallaparthi2480 25 күн бұрын
Sir, If we are having 5 database instances of postgresql running in a single machine. How to monitor a particular db is down with tcp protocol as the service is running on the same port for all dbs.
@mohamedsaidani8509
@mohamedsaidani8509 24 күн бұрын
heartbeat.monitors: - type: tcp id: postgresql-instance-1 name: PostgreSQL Instance 1 hosts: ["localhost:5432"] schedule: '@every 10s' timeout: 16s check.send: "SELECT 1; " check.receive: "1" - type: tcp id: postgresql-instance-2 name: PostgreSQL Instance 2 hosts: ["localhost:5432"] schedule: '@every 10s' timeout: 16s check.send: "SELECT 1 FROM database2; " check.receive: "1" .... you can try something like this and see if it works
@muralikrishnaallaparthi2480
@muralikrishnaallaparthi2480 22 күн бұрын
Thank you sir, will try this.
@sunnyyadav4664
@sunnyyadav4664 Ай бұрын
please upload video on KQL with practical example
@mohamedsaidani8509
@mohamedsaidani8509 Ай бұрын
do you have a specific question! I have made a video for each topic
@sec_engineer
@sec_engineer Ай бұрын
Thank you, make more videos please
@mohamedsaidani8509
@mohamedsaidani8509 Ай бұрын
will do thanks for the support ^^
@razmus9708
@razmus9708 Ай бұрын
Great video Mohamed. I am glad to see you have started another series.
@mohamedsaidani8509
@mohamedsaidani8509 Ай бұрын
Here we go ^^
@msatanzeel
@msatanzeel 2 ай бұрын
Damn, what an explanation, didn't find anyone on youtube with so much of detailing!!
@mohamedsaidani8509
@mohamedsaidani8509 Ай бұрын
thanks man ^^
@kasikasamma7886
@kasikasamma7886 2 ай бұрын
Hi Sir, Thanks for sharing the video. I would request to make the video on how to create visualisation on SIEM alerts in Kibana for particular indexing. Here I can see my default security alert tab we can visualise the count of alerts but I’m unable to find out the alert count for particular index.
@mohamedsaidani8509
@mohamedsaidani8509 2 ай бұрын
Sure I will made new videos dedicated to SIEM ^^
@praveenk7918
@praveenk7918 3 ай бұрын
Hii .. in the dashboard the selected text must be displayed bold.. can we do that.. if so how can we do it..
@mohamedsaidani8509
@mohamedsaidani8509 3 ай бұрын
Not sure if we can do that, never test it
@weilin4872
@weilin4872 3 ай бұрын
Good
@mohamedsaidani8509
@mohamedsaidani8509 3 ай бұрын
Thanks
@InfiniteTechTutorials
@InfiniteTechTutorials 3 ай бұрын
Cool
@mohamedsaidani8509
@mohamedsaidani8509 3 ай бұрын
thanks ^^
@akhilsharma5701
@akhilsharma5701 3 ай бұрын
A little more details on layer would be welcome. We can see the layer has been added but its use case and benefit are still unclear from video.
@mohamedsaidani8509
@mohamedsaidani8509 3 ай бұрын
I'll try to make it clear in the next videos ^^
@akhilsharma5701
@akhilsharma5701 3 ай бұрын
@@mohamedsaidani8509 Thanks a lot! Its just something I think can improve this exam guide. I gave the Elastic certified analyst exam after going through your playlist twice. Passed the exam in first attempt.
@mohamedsaidani8509
@mohamedsaidani8509 3 ай бұрын
@@akhilsharma5701 nice to hear that, Congrats ^^
@Risky_Bit
@Risky_Bit 3 ай бұрын
Brother, plan first before making a video. What are you actually trying to teach here? No one has time to watch you saying "we did it before"
@mohamedsaidani8509
@mohamedsaidani8509 3 ай бұрын
Thanks for your feedback ^^ I'll take it in consideration next time ;)
@Risky_Bit
@Risky_Bit 3 ай бұрын
@@mohamedsaidani8509 I apologise if it came off as aggressive but please plan your sessions
@mustafaelnagar2033
@mustafaelnagar2033 3 ай бұрын
Thanks, Mohamed :)
@mohamedsaidani8509
@mohamedsaidani8509 3 ай бұрын
you welcome Mustafa ^^
@razmus9708
@razmus9708 4 ай бұрын
Hello Mohammed, very nice video. Would you be willing to help me with a personal ELK project? I would like to get pihole logs into kibana and have the proper grok files to help with indexing. I would like to hire you as a consultant if you have the time.
@mohamedsaidani8509
@mohamedsaidani8509 4 ай бұрын
Hi thanks for your feedback ☺️ here's my email: [email protected]
@NeverGiveup-tr4vv
@NeverGiveup-tr4vv 4 ай бұрын
Good job bro, have a question can i have Your Mail id please?
@mohamedsaidani8509
@mohamedsaidani8509 4 ай бұрын
@manikandanp6468
@manikandanp6468 4 ай бұрын
hi
@PowerPulse_Motivation
@PowerPulse_Motivation 4 ай бұрын
This security option not showing me..
@mohamedsaidani8509
@mohamedsaidani8509 4 ай бұрын
Which one is not showing to you? if you're talking about the rules, just follow the steps to Download all of them, also you have to add some configurations to kibana.yml and restart kibana
@yyaappee
@yyaappee 5 ай бұрын
Thank you so much for the video! Are you also have plans for the elastic certified engineer exam? And I am also curious which exam you will prefer to take first from the two elastic certification. I have some experience only on search queries
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
Hi Thanks for your feedback ^^ to answer your question: it depends on your experience with the Stack, if you want, Analyst is about using Kibana, Observability is about the deployment of the Agent and Beats, and the last one is Engineering because for me it's advance and you have to understand how Elasticsearch works behind the scene, the other part yes I'm planning the do training for the other two trainings, but I don't have timeline for now, stay tuned ^^
@martinbaily1949
@martinbaily1949 5 ай бұрын
Hi, If the bucket span is not specified within the exam question would you always use estimate bucket span? thanks
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
Hi Martin ^^ yeah if they didn't mention it keep as it is, it should be the best choice
@Muffinnormangmailcom
@Muffinnormangmailcom 5 ай бұрын
Would it be easier to do the pipeline aggregations in Lens? is that acceptable in the exam?
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
Hi ^^ yes but you have to follow what they asking for, if the scenario to use Lens then use if they didn't specify it, use whatever you want
@xtremeblaze2049
@xtremeblaze2049 5 ай бұрын
Hi, sorry, to clarify, I meant they're not expecting you to know, say, observability which function the sub categories give you access to? Would the question be along the lines of: security need a space for analytics, so you'd give both security and analytics? If only dashboard access, I'd assume that would be within the question.
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
exactly, it will be in the question, so you have to understand the question and read between the lines ^^
@xtremeblaze2049
@xtremeblaze2049 5 ай бұрын
Hi, In the exam would they phrase it: "create space for Security"? Then you just give access to security with the assumption they'd need access to Analytics too i.e. Discover and dashboard? Or only give access to Security as specified. I wasn't clear on this point in the video. thanks
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
Hi ^^ it depends on the question, you should be comfortable with everything around Spaces, and based on the scenario you implement the solution.
@user-wc7sw3js5c
@user-wc7sw3js5c 5 ай бұрын
Amazing Mohamed, thanks really, THANKS
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
Glad you like it ^^
@nivaldoinacios
@nivaldoinacios 5 ай бұрын
🎉🎉 thank you!
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
You're welcome
@user-tq2lu3rx6w
@user-tq2lu3rx6w 5 ай бұрын
Thank you for the great tutorial Mohamed. Highly appreciated.
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
Thanks for your feedback ^^
@mohanbabu65
@mohanbabu65 5 ай бұрын
Hi Mohamed, Thanks for the videos. Really helps some one who want to take exam. I could not find videos relating to "Add reference lines and annotations to a Lens visualization". please guide me to the video if you have uploaded.
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
I'll check it later and get back to you
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
thanks for your feedback, Here's the link: kzbin.info/www/bejne/aHuUiJ53rrppoNU&ab_channel=MohamedSaidani
@aldofiorentinisolis
@aldofiorentinisolis 5 ай бұрын
Very clear ! Thanks a lot for share 😁
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
Thanks for your feedback
@prahalyanh4337
@prahalyanh4337 5 ай бұрын
Hello, There are 17 videos in this series and in which order we have to study? Thank you so much for making this video series.
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
Thanks for your feedback I'll fix the order
@prahalyanh4337
@prahalyanh4337 5 ай бұрын
@mohamedsaidani8509 Nevermind Sir. I have compared with exam objectives and ordered myself.
@mohamedsaidani8509
@mohamedsaidani8509 5 ай бұрын
@@prahalyanh4337 if you refresh the play list it should be in the right order
@prahalyanh4337
@prahalyanh4337 5 ай бұрын
@@mohamedsaidani8509 Thanks again.
@prahalyanh4337
@prahalyanh4337 5 ай бұрын
@@mohamedsaidani8509 THank you. One more request, where can I find sample or practice questions (not dump or real questions, I don't want that)? so that I can get an idea about how the exam questions will be.
@xtremeblaze2049
@xtremeblaze2049 6 ай бұрын
Thanks for the visualisation series. The direct alignment to each exam topic makes is very easy to follow. It also helps when you want to do a quick refresher on specific topics.
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
Glad you like it ^^
@xtremeblaze2049
@xtremeblaze2049 6 ай бұрын
thanks for another great video.
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
Glad you enjoyed it
@muralikrishnaallaparthi2480
@muralikrishnaallaparthi2480 6 ай бұрын
Sir, whether any option available to change font types and font size.
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
Hi there of what exatly could you plz specify?
@muralikrishnaallaparthi2480
@muralikrishnaallaparthi2480 6 ай бұрын
​@@mohamedsaidani8509 sir, In the tables created, the letters or fonts (A-z and 0-9) are little dull. whether can change the fonts type or increase the size of the letters
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
@@muralikrishnaallaparthi2480 I'll check and get back to you
@xtremeblaze2049
@xtremeblaze2049 6 ай бұрын
Another excellent video. I like the extra behind the scenes part, showing inspect. Seeing the context of what you're doing helps things sink in. Thank you
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
Thanks for your feedback ^^
@Michael-eq9yb
@Michael-eq9yb 6 ай бұрын
Thanks for continuing to make these videos!
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
Thanks ^^ let me know if you're interested in a live session! I'm doing free live session soon ^^
@xtremeblaze2049
@xtremeblaze2049 6 ай бұрын
thanks, for video. Really easy to follow.
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
thanks for your feedback ^^
@cyberianoid
@cyberianoid 6 ай бұрын
I'm trying to create a regular chart for a single field from an Index with my data (like a chart in Grafana), but I don't understand how this shitty Kibana does it! I don't need aggregation functions! I want to just draw a simple chart, fuc_ng Kibana! 😭 --- Does anyone know how to do this (simpe line chart without aggregation functions), or Kibana not suitable for this? I have my own simple data in Index like ts, cpu_usage, mem_usage, disk_usage Thanks
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
Hi, If you don't understand Aggs, you can try Lens it's just drag-and-drop, try it and let me know!
@cyberianoid
@cyberianoid 6 ай бұрын
​@@mohamedsaidani8509Thank you. I have already tried Kibana Lens.. The graph constantly shows the number of documents (Hits) instead of the required values. I studied Zabbix, Prometheus and Grafana, but Elastic and Kibana kicks my ass But maybe I'm stupid.. I get it 😑
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
@@cyberianoid if you see to the left side of Lens, you can change the configurations, you can choose what you're looking for
@cyberianoid
@cyberianoid 6 ай бұрын
@@mohamedsaidani8509I created a simple Dashbord with a single table with Kibana Lens (with two fields: "ts" and "someValue") and it looks good (just a table with 2 basic values - time and valuable data), .. I'm trying to create a graph but can't select the "last value" (like when i creates a table), only aggregate functions is displayed! ..this looks like a bug, not like I'm stupid ☺ - - - We have basic time data (minutes, value for example): 1 10 2 20 3 5 4 48 5 1 .. And THIS is good workin for the Kibana Lens Table, but STUPID Kibana Charts takes aggregate funcions by default! I dont need Agg funcions, stupid Kibana! Just give me a clear time series VALUE without ANY Aggregate funcion! 🤔
@Michael-eq9yb
@Michael-eq9yb 6 ай бұрын
Great video! When’s the next one?
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
it's cooking now, stay tuned ^^
@Michael-eq9yb
@Michael-eq9yb 6 ай бұрын
@@mohamedsaidani8509Awesome! I’m taking the exam this weekend so doing so last minute cramming lol. Regardless of whether I pass, will definitely return to your videos!
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
@@Michael-eq9yb let's GoOoO
@user-tq2lu3rx6w
@user-tq2lu3rx6w 6 ай бұрын
Thank you Mohamed, it was a great video, thank you for your effort. Much appreciated!
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
You're welcome brother do let me know if you have any questions!!
@user-tq2lu3rx6w
@user-tq2lu3rx6w 6 ай бұрын
It was a great video,, it was short and to the point. Thank your great work and effort. Allah'in selami uzerine olsun brother. (May Allah's peace be upon you brother.)
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
Appretiate your feedback ^^
@user-tq2lu3rx6w
@user-tq2lu3rx6w 6 ай бұрын
Thank you for your great effort Mohamed. I really enjoyed the video, It is really pitty that there are a lot of ungrateful people in the world. I see that there 932 views but most of them they are damn lazy to give a small comment to the video or even thumbs up. This is not an appreciation to the video and creator! Once thank you, Mohamed. Allah'in selami uzerine olsun brother. (May Allah's peace be upon you brother.)
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
Salam Brother thanks a lot for you support ^^
@user-tq2lu3rx6w
@user-tq2lu3rx6w 6 ай бұрын
I just finished first video to watch, I must really confess, it was crystal clear, it was just and only to the point. I am strongly thinking that you should be a perfect teacher. Nobody could explain this basics that good, thank you for your great effort Mohamed. Allahin selami uzerine olsun brother.
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
Thanks a lot brother ^^ really apretiate your feedback ^^
@user-tq2lu3rx6w
@user-tq2lu3rx6w 6 ай бұрын
salam Mohamed, I just found your video on youtube. I really like the way that you starting to explain the topic , I am interested on kibana visualisation videos. I am just started with your video: Mastering Kibana Unlock the Power of Elastic Stack. can you please tell me what is the sequence of your videos regarding kibana visualization? you use example data to ingest in elastic database? Thank you for your answer and your great effort for your hard work. I will surely share your links. Allahin selami uzerine olsun brother.
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
Thanks for your feedback brother ^^ this is the first video didcated for Analyst (including dashboards and visualizations)stay tuned for the rest
@ajmalkhattak
@ajmalkhattak 7 ай бұрын
Good Stuff Mohamed, Loving it, keep up the good work
@muralikrishnaallaparthi2480
@muralikrishnaallaparthi2480 7 ай бұрын
Thank you so much sir... It is simple short and clear. God Bless you for your efforts. I wanna learn on index management. It would be really helpful if you could unleash important features in kibana that are to be taken care in production environment.
@mohamedsaidani8509
@mohamedsaidani8509 7 ай бұрын
Thanks for your feedback, sure I'll start new series soon ^^
@abdirahmanmohamud5855
@abdirahmanmohamud5855 9 ай бұрын
Well done Mohamed, thank you for this great content
@mohamedsaidani8509
@mohamedsaidani8509 9 ай бұрын
Thanks Abdirahman ^^ let me know if you wanna learn something else!
@lakshmiletchu8741
@lakshmiletchu8741 9 ай бұрын
nice,thanks
@mohamedsaidani8509
@mohamedsaidani8509 6 ай бұрын
Glad you enjoyed it
@adlenemoucer114
@adlenemoucer114 11 ай бұрын
It’s very interesting, thank you Mohamed
@mohamedsaidani8509
@mohamedsaidani8509 11 ай бұрын
You're welcome Adlen ^^