
WANGUARD 5.2 User Manual & Administrator's Guide
Reports » Anomalies & Tools
The
Reports » Anomalies & Tools
panel contains links to the
Anomalies
tab, to the
BGP Prefxes
tab, to the
Flow Collector
tab and to the
Packet Analyzer
tab.
Anomalies
The Anomalies tab contains live and historical data that relates to DoS and DDoS atacks or other trafc
anomalies. The number of actve trafc anomalies is displayed within the Anomalies panel and it's refreshed every
10 seconds. It's not displayed if it's zero.
The Anomalies tab contains 3 sub-tabs located on the botom side:
Active Anomalies
Actve Anomalies contains a table visible only while Sensors detect actve trafc anomalies. The table's rows
represent actve anomalies, sorted by start tme in descending order. The table's columns are:
№
The unique index of the anomaly. Click it to open a detailed Anomaly Report.
Prefx
The IP address or IP class of the trafc anomaly and the reverse DNS.
In the front of the Prefx, the graphic arrow indicates the directon of the trafc: inbound when the
arrow is pointng towards the Prefx, or outbound when the arrow is pointng away from the Prefx.
Click it to open a new tab with data specifc for the Prefx.
IP Group
The IP Group of the Prefx.
Click it to open a new tab with data specifc for the IP Group.
Anomaly
A short descripton of the anomaly.
Value
The peak value of the anomalous trafc. Between parenthesis, the latest value.
Sensor
The name of the Sensor that detected the anomaly.
Click it to open a new tab with data specifc to the Sensor.
From
The tme and date when the anomaly started.
Latest Alarm
How much tme passed since the last detecton of the anomaly.
Pkts/s – Bits/s
The latest packets/second and bits/second throughput of the TOTAL trafc.
Actons
Actons available for Administrators and Operators:
- 7 -
Содержание Wanguard 5.2
Страница 1: ......