AnsweredAssumed Answered

Using REST API to pull events from concentrator

Question asked by John Babio on May 25, 2018
Latest reply on May 29, 2018 by Guy Bruneau

I am trying to user curl to pull data from our concentrator. it doesn't seem to want to work with curl. I am also not sure if i have the proper syntax. It works fine by manually going to the site at http://x.x.x.x:50105/sdk/packets the query i am trying to run is event.desc = 'ids_alerted' && time="2018-May-24 0:00"-"2018-May-24 23:20" and again it works fine using the manual page.

curl --user 'username:password'

'https://x.x.x.x:50105/sdk?packets?render=logs%event.desc+%3D+%27ids_alerted%27+%26%26+time%3D%272018-May-24+0%3A00%27-%272018-May-24+23%3A20%27' -k

Outcomes