generate_timeline
Generate a chronological timeline of network events from a loaded PCAP, grouping occurrences by specified time intervals to support forensic analysis and threat hunting.
Instructions
Generate a timeline of network events from the loaded PCAP.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| session_id | Yes | ID of the session | |
| interval_seconds | No | Time interval in seconds for grouping events |