Using the Realtime Console
Legacy Reporting
11-10 Enterasys IPS Analysis and Reporting Guide
is from a Dragon Network Sensor or Dragon Host Sensor engine) displays the raw event
information including packet or log data.
Pre-Event Collection
You can view pre-event packets by clicking the Pre-event Collection column for an event. This
brings you to the pre-event packet information. Clicking the Packet Data column provides the
specific packet’s information.
Figure 11-9 Pre-Event Packet Data
EventsByGroup
This event summary lists all of the active event groups and the number of events in each group.
All event groups are listed, even if no events are associated with that group.
EventsByNetworkSensor
A list of all active Dragon Network Sensors are output for event summary, as shown in
Figure 11-10
. Only Dragon sensors that have an active event are listed. Clicking on a Dragon
sensor name lists an event summary of events only from that engine.
Figure 11-10 Realtime EventsByNetworkSensor
Содержание Intrusion Prevention System
Страница 1: ...P N 9034069 13 Enterasys Intrusion Prevention System Analysis and Reporting Guide...
Страница 2: ......
Страница 10: ...viii...
Страница 48: ...Platform Specific Dashboard Details System Dashboard 2 22 Enterasys IPS Analysis and Reporting Guide...
Страница 60: ...Selecting a Chart Type Top N Reports 4 6 Enterasys IPS Analysis and Reporting Guide...
Страница 70: ...Event Growth Report Trending Reports 5 10 Enterasys IPS Analysis and Reporting Guide...
Страница 82: ...Viewing a PCAP File for an Event 8 2 Enterasys IPS Analysis and Reporting Guide...
Страница 120: ...Managing Reports Legacy Reporting 11 32 Enterasys IPS Analysis and Reporting Guide Figure 11 31 Event Ratios by Day...