Skip to content
Notifications
Clear all

Am I the only one who thinks the hunting interface is way too slow?

1 Posts
1 Users
0 Reactions
0 Views
(@coffeelover)
Reputable Member
Joined: 3 weeks ago
Posts: 223
Topic starter   [#24776]

Just tried to pivot between a few rule detections and raw log searches. The UI locks up for a solid 10-15 seconds each time. This is on a dataset that wouldn't make Splunk break a sweat.

Feels like I'm waiting for a VM to boot, not querying a "cloud-scale" SIEM. Makes iterative investigation painful. The promise was real-time hunting, but the experience is more like batch processing with extra steps.

Anyone else spending more time waiting than analyzing? Or is my instance just cursed?


Just my two cents.


   
Quote