Event Details
Enterasys IPS Analysis and Reporting Guide 7-3
•
Packet Data — Shows the packet data of the event.
You can adjust the size of the pop-up window to better view the event information.
Table 7-1
describes the event details in the upper pane.
Table 7-1 Event Details Upper Pane
Field
Description
Name
Name of the event.
Date/Time
Date and time of event occurrence.
Score
The severity score of the event. The table can be filtered by score.
Source IP
The source IP address of the event. Click the address link to
display a new browser window that attempts to resolve the IP
address using a DNS lookup. Additional publicly-available web
sites that perform address resolution are provided as links on the
browser page.
Port
The source port.
Destination IP
The destination IP address of the event. Click the address link to
display a new browser window that attempts to resolve the IP
address using a DNS lookup. Additional publicly-available web
sites that perform address resolution are provided as links on the
browser page.
Port
The destination port.
Direction
The direction of the event (for example, Internal or External).
Protocol
The protocol used in the event.
Download PCAP
Provides a download of a PCAP capture file. This file contains the
traffic between the source and destination IP addresses of the
event for the day the event was generated. Applicable to any TCP
event that supports the Dragon mktcpdump CLI tool.
Refer to
Chapter 8, Viewing a PCAP File for an Event
for more
information.
Содержание Intrusion Prevention System
Страница 1: ...P N 9034069 13 Enterasys Intrusion Prevention System Analysis and Reporting Guide...
Страница 2: ......
Страница 10: ...viii...
Страница 48: ...Platform Specific Dashboard Details System Dashboard 2 22 Enterasys IPS Analysis and Reporting Guide...
Страница 60: ...Selecting a Chart Type Top N Reports 4 6 Enterasys IPS Analysis and Reporting Guide...
Страница 70: ...Event Growth Report Trending Reports 5 10 Enterasys IPS Analysis and Reporting Guide...
Страница 82: ...Viewing a PCAP File for an Event 8 2 Enterasys IPS Analysis and Reporting Guide...
Страница 120: ...Managing Reports Legacy Reporting 11 32 Enterasys IPS Analysis and Reporting Guide Figure 11 31 Event Ratios by Day...