Filter and Search Cloud SIEM List Pages
You can filter and search the list pages in Cloud SIEM—Insights, Signals, Entities, Records, Rules, and Network Blocks—using the Filters bar near the top of the page.
Filter items​
When you click in the Filters bar, a dropdown list of filters appears. After you select a filter you’ll be presented with a dialog so you can specify your filtering criteria.
Search items​
You also enter a search string or regex in the Filter bar, and press Return to run a search. Note that Cloud SIEM's regular expression engine will return items that contain text matching the complete string. The engine implicitly adds anchors (^
and $
) to the beginning and end of your regex.
You can use not
to search for items that do not contain a particular keyword, for example:
not:Initial Access