Enterasys IPS Analysis and Reporting Guide 11-1
11
Legacy Reporting
This section describes Dragon Reporting features prior to release 7.4. These legacy tools are also
available in Enterasys IPS 7.4. See “
Starting Enterasys IPS Reporting
” on page 1-1 for more
information about accessing these tools.
Legacy Reporting Tools
The Enterprise Management Server (EMS) offers five legacy reporting tools. These tools receive
data from Network and Host Sensors. The tools allow you to manipulate reporting to generate
customized, purposeful reports that help you isolate attacks. Each tool supports analysis of IDS
events in real time, long-term trending, and up close inspection of each event’s detail and
associated information. They provide 48-hour breakout histograms of events so you can spot
trends at a glance. The tools are:
•
Realtime Console
•
Forensic Console
•
Trending Console
•
Executive Reporting
•
EMS Statistics
Dragon Realtime Console
The Dragon Realtime Console provides an extremely high-speed application to analyze several
million events. The Realtime Console reads new Dragon events and stores them in a circular ring
buffer. A high storage capacity is needed to store the significant number of events that can be in
the buffer. Dedicating a machine to run only the Realtime Console agent can easily maintain
several million events in the ring buffer.
For information about...
Refer to page...
Legacy Reporting Tools
11-1
Accessing the Legacy Reporting Tools
11-3
Using the Realtime Console
11-6
Using the Forensics Console
11-18
Using the Trending Console
11-22
Using Executive Reporting
11-28
Managing Reports
11-29
Содержание Intrusion Prevention System
Страница 1: ...P N 9034069 13 Enterasys Intrusion Prevention System Analysis and Reporting Guide...
Страница 2: ......
Страница 10: ...viii...
Страница 48: ...Platform Specific Dashboard Details System Dashboard 2 22 Enterasys IPS Analysis and Reporting Guide...
Страница 60: ...Selecting a Chart Type Top N Reports 4 6 Enterasys IPS Analysis and Reporting Guide...
Страница 70: ...Event Growth Report Trending Reports 5 10 Enterasys IPS Analysis and Reporting Guide...
Страница 82: ...Viewing a PCAP File for an Event 8 2 Enterasys IPS Analysis and Reporting Guide...
Страница 120: ...Managing Reports Legacy Reporting 11 32 Enterasys IPS Analysis and Reporting Guide Figure 11 31 Event Ratios by Day...