After the module is configured, verify that it is working correctly by performing a search.
Navigate to the Menu → Historical Search.
Note
For Endpoint Security (HX) version 10.0.5 or later, it is in the Investigate section of the main menu.
Perform a test search:
Set the time range: The search defaults to the Last 24 hours. To change this, click the Time Range, select a different time period, and click Apply.
Enter the query: To see the latest events from all devices, enter the following query in the search field:
host:*
Click Search.