Legacy Reporting
Using the Realtime Console
Enterasys IPS Analysis and Reporting Guide 11-9
Figure 11-7 Realtime Tool GraphEvents Displaying a Traffic Spike
EventDetail
The EventDetail event summary provides a simple listing of the raw events held in memory by the
Dragon Realtime Shell as shown in
Figure 11-8
. They are printed out from the most recent event to
the least recent event. If the number of events matching a query is greater than the number of
events in the Lines/Sessions filter value, a set of up to ten URLs are printed at the bottom of the
displayed HTML output. These URLs correspond to the successive groups of matching events.
Figure 11-8 Realtime EventDetail
For network-based events of either TCP or UDP protocols, clicking on the URL associated with the
source and destination address results in a Dragon Forensics Console mksession query and
displays the underlying network session. Clicking on the event type for any event (regardless if it
Содержание Intrusion Prevention System
Страница 1: ...P N 9034069 13 Enterasys Intrusion Prevention System Analysis and Reporting Guide...
Страница 2: ......
Страница 10: ...viii...
Страница 48: ...Platform Specific Dashboard Details System Dashboard 2 22 Enterasys IPS Analysis and Reporting Guide...
Страница 60: ...Selecting a Chart Type Top N Reports 4 6 Enterasys IPS Analysis and Reporting Guide...
Страница 70: ...Event Growth Report Trending Reports 5 10 Enterasys IPS Analysis and Reporting Guide...
Страница 82: ...Viewing a PCAP File for an Event 8 2 Enterasys IPS Analysis and Reporting Guide...
Страница 120: ...Managing Reports Legacy Reporting 11 32 Enterasys IPS Analysis and Reporting Guide Figure 11 31 Event Ratios by Day...