Issue with SIEM Detection and Alerting

Hello,

I’ve been experiencing an issue with my dashboard where the number of alerts is not updating as expected. According to the instructions, there should be 577 alerts, but I’m only seeing 17. This discrepancy is affecting my ability to create a rule in Wazuh and generate a ticket. Despite completing the rule and being able to view filtered tickets, I’m not able to find the specific ticket mentioned in the instructions.

I’ve attempted this process three times, but the issue persists. I’m wondering if the initial discrepancy in the number of alerts is causing this problem. However, it doesn’t make sense to me because I was able to create the rule and view the tickets, just not the specific one required.

Has anyone else experienced a similar issue or have any insights into what might be going wrong? Any help or suggestions would be greatly appreciated.

Thank you.


image

im having the same issue except I either get 12 or 19. plus im not getting the log in alert type 10 on it.