so-elasticsearch-query¶
You can use so-elasticsearch-query to submit a cURL request to the local Security Onion Elasticsearch host from the command line.
Usage¶
Where:
- PATH represents the elastic function being requested.
- ARGS is used to specify additional, optional curl parameters.
Examples¶
Here's a basic example:
Here's a more complicated example that includes piping the output to jq: