a 4 node sankey diagram use kibana vega,and data source from suricata
因为官方只有2node的例子,3node以上正确运行的例子似乎并不多
4 node 桑基图效果
来源于suricata,并通过filebeat module suricata格式化后写入elasticsearch 也适用于其他场景
仅在kibana 7.17.15测试
From kibana
- Analytics -> Visualize Library -> Add New
- Vega visualizations
- Copy the json file to the right
- Modify the “data” section,"index"、“sources” value to fit your own data
- Enjoy!!