I have been asked to perform a search for 7-day flow data from a specific endpoint. I can perform the search for up to 1-day flow data. However, when I try to look for 7-day data for the same endpoint, the Netflow page just spins and spins non-stop. Also, the Netflow page becomes unusable, even if I close and re-open the web browser. So, it appears that NTA is unable to do flow data searches for over a day or two.
Still, the request for 7-day flow data for this endpoint (as well as some others) is quite urgent. What can I do to provide the requested info? I would try to do this via SQL searches but my SQL expertise is very low, especially as it relates to table joins and the like. Any suggestions?