Security Events - Filter by IP block or subnet

If a customer gives me an ip subnet that they use such as 8.8.4.0/24 how can I filter events from any ip in that range?
The only operators I have are: Equals, does not equal, Is in, Is not in. None of them seem to work with anything but a single ip.

Just put the range in the Value box:

“IP Source Address” "is in " “8.8.4.0/24” and it will show a popup “Create option 8.8.4.0/24”, click and its done

1 Like

This topic was automatically closed 3 days after the last reply. New replies are no longer allowed.