Collect records

Certain types of records are enabled for collection by default. You can add or remove the types of records that are collected and sent to your recordstore from the Settings / Records page. These records primarily contain information about messages, transactions, and sessions sent over common L7 protocols such as DNS, HTTP, and SSL.

If you want to collect only specific details from transactions, you can create custom records through the ExtraHop Trigger API.

Note:You can manage these settings centrally from a console.

Learn more about ExtraHop Records.

Before you begin

You must have a configured recordstore, such as an ExtraHop recordstore, Splunk, or Google BigQuery.
  1. Log in to the ExtraHop system through https://<extrahop-hostname-or-IP-address>.
  2. Click the System Settings icon and then click Record Collection.
  3. On the Records page, select the checkbox next to the types of transactions you want to capture and store in the recordstore, and then click Enable.
  4. Click Records from the top menu, and then click View Records to start a query.
    If you do not see any records, wait a few minutes and try again. If no records appear after five minutes, review your configuration or contact ExtraHop Support.
Last modified 2024-02-27