AQL Focus: AQL is QRadar's search language primarily used for analyzing:
Log Activity: The core area to search events received from various log sources.
Offenses: Offenses are generated based on rule triggering, and you can search them to investigate patterns.
Contribute your Thoughts:
Chosen Answer:
This is a voting comment (?). You can switch to a simple comment. It is better to Upvote an existing comment if you don't have anything to add.
Submit