Execution Logs¶
The system records key information each time a SIEM detection rule is executed, including execution time, status, duration, the executed DQL statement, the number of bytes scanned, and the number of rows, etc., which are ultimately presented uniformly through the execution log Explorer.
List¶
On the execution logs list page, you can view all execution log records.
You can manage via the following Actions:
- Filter by detection rule name, ID, and execution duration;
- Search and locate by log name.
Details¶
Clicking on a log will slide out the corresponding details page. You can view the basic information and extended attributes of this execution log entry.