
Traffic summary and security events
Security event summaries
FortiAnalyzer Version 3.0 MR3 Administration Guide
05-30003-0082-20060925
115
Viewing Intrusion activity
The Intrusion Activity page correlates all intrusion logs stored on the FortiAnalyzer
unit and produces a report of the overall intrusion activity on the network. The
FortiAnalyzer unit reviews the intrusion logs at a scheduled interval, providing you
with easy access to the intrusion activity on your network. For details on
configuring the intrusion activity correlation, see
“Adding a security event report”
To view intrusion activity, go to
Network Summary
>
Intrusion Activities
.
Figure 52: Viewing Intrusion activity
Virus activity within
the last
Select the time frame to view the virus activity.
View
Select a device or group of devices.
Firewall
The name of the firewall.
Host (Source)
The source IP address of the firewall.
Virus
The name of the virus.
Last Activity
The date and time of the last incident of the virus.
Count
The number of incidents made by the virus on the network.
Action
Select Details to display additional information for the entry. The
details window displays further details of the virus incidents
including time and date, target and protocol attempt.
Select Acknowledge to reset the attack count to zero for the virus.
This enables you to verify if the firewall has new virus incidents, as
well as watch the number of incidents occurring.
Intrusion activity
within the last
Select the time frame to view the virus activity.
View
Select a device or group of devices.
Firewall
The name of the firewall.
Host (Source)
The source IP address of the firewall.
Attack Name
The name of the intrusion event The attack name is a link to the
FortiGuard Center. Selecting the link opens the FortiGuard web
site and displays information on the attack from the FortiGuard
database.
Last Activity
The date and time of the last intrusion incident.
Details
Acknowledge
Содержание FortiAnalyzer-100A
Страница 1: ...www fortinet com FortiAnalyzer Version 3 0 MR3 A D M I N I S T R A T I O N G U I D E...
Страница 10: ...FortiAnalyzer Version 3 0 MR3 Administration Guide 10 05 30003 0082 20060925 Contents...
Страница 76: ...FortiAnalyzer Version 3 0 MR3 Administration Guide 76 05 30003 0082 20060925 Blocked Devices Devices...
Страница 88: ...FortiAnalyzer Version 3 0 MR3 Administration Guide 88 05 30003 0082 20060925 Log rolling Logs...
Страница 94: ...FortiAnalyzer Version 3 0 MR3 Administration Guide 94 05 30003 0082 20060925 Log rolling Content archive...
Страница 138: ...FortiAnalyzer Version 3 0 MR3 Administration Guide 138 05 30003 0082 20060925 Output Alerts...
Страница 150: ...FortiAnalyzer Version 3 0 MR3 Administration Guide 150 05 30003 0082 20060925 Log rolling Network Analyzer...
Страница 156: ...FortiAnalyzer Version 3 0 MR3 Administration Guide 156 05 30003 0082 20060925 Reports Vulnerability scan...
Страница 161: ...www fortinet com...
Страница 162: ...www fortinet com...