STRM Users Guide
158
U
SING
THE
F
LOW
V
IEWER
Viewing Aggregated
Flows
Using the Flow Viewer, you can view flows aggregated (grouped) by various
options including:
Source ASN
Specifiers the source ASN number.
Destination ASN
Specifies the destination ASN number.
Source if INdex
Specifies the source ifIndex number.
Destination If
Index
Specifies the destination ifIndex number.
Start Time
Specifies the start time of the flow, as reported to STRM by the
device.
Application
Specifies the application that originated the flow.
End Time
Specifies the end time of the flow, as reported to STRM by the
device.
Custom Views
Specifies custom views detected for the flow.
Source Payload
Specifies source payload content from the flow. To view the
payload in Hex, click
Hex
. To view the payload in UTF, click
UTF
.
To view in Base64, click
Base64
.
Destination
Payload
Specifies destination payload content from the flow. To view the
payload in Hex, click
Hex
. To view the payload in UTF, click
UTF
.
To view in Base64, click
Base64
.
Table 7-3
Flow Details (continued)
Parameter
Description
Table 7-4
Aggregate Flows
Aggregate Option
Description
Unioned Flows
Unioned flows displays several flows in one uninterrupted
pattern across several intervals, in a single record. For
example, if a flow was five minutes long, the unioned flow
displays the flow as a single flow five minutes long.
The unioned flows interface displays Displays a summarized
list of flows grouped by unioned flow information.
Source or Destination
IP
Displays a summarized list of flows grouped by the IP
address associated with the flow.
Source IP
Displays a summarized list of flows grouped by the source
IP address of the flow.
Destination IP
Displays a summarized list of flows grouped by the
destination IP address of the flow.
Source Port
Displays a summarized list of flows grouped by the source
port of the flow.
Destination Port
Displays a summarized list of flows grouped by the
destination port of the flow.
Source Network
Displays a summarized list of flows grouped by the source
network of the flow.
Summary of Contents for SECURITY THREAT RESPONSE MANAGER 2008.2 R2 - LOG MANAGEMENT ADMINISTRATION GUIDE REV 1
Page 13: ...STRM Users Guide Assets 7 Note For more information see Chapter 8 Managing Assets...
Page 100: ...STRM Users Guide 94 INVESTIGATING OFFENSES...
Page 138: ......
Page 226: ......