STRM Users Guide
36
M
ANAGING
Y
OUR
N
ETWORK
A
CTIVITY
•
Inbound Local
-The highest level of activity for inbound local bytes.
•
Inbound Remote
-The highest level of activity for inbound remote bytes.
•
Outbound Local
- The highest level of activity for outbound local bytes.
•
Outbound Remote
- The highest level of activity for outbound remote bytes.
Step 7
To continue investigating or to search flows, point your mouse to a TopN horizontal
bar and click the bar to freeze the information.
The bar becomes highlighted and the following appears:
•
Value
- Displays the numeric value of network activity.
•
Rate
- Displays the rate of transfer for the network object.
•
Percent
- Displays the percentage of network traffic the object is producing.
Step 8
To further investigate, select one of the following:
a
Point your mouse to the IP address to reveal the following details:
-
Country
- Identifies the country of origin.
-
Network
- Identifies the network location.
-
Offenses
- Identifies any previous offenses.
-
Resolver
Actions
- Identifies Resolver Actions assigned to the IP address.
b
Double-click the horizontal bar to use the search flow function to investigate the
data.
Investigating Flows
You can investigate flows that were processed to generate the views. STRM
visually profiles and displays network traffic activity on color-coded graphs based
on time of day, traffic type, and network depth. STRM uses traffic profiles to
analyze the activity. It reveals details between local and remote activity allowing
you to analyze traffic and extract vital information on network communications. The
View Flows function connects you to the Flow Viewer tab functionality to assist you
in the discovery of communicating hosts, servers, ports, corresponding IP
addresses, and user identification for the selected traffic. This function also reveals
Содержание SECURITY THREAT RESPONSE MANAGER 2008.2 R2 - LOG MANAGEMENT ADMINISTRATION GUIDE REV 1
Страница 13: ...STRM Users Guide Assets 7 Note For more information see Chapter 8 Managing Assets...
Страница 100: ...STRM Users Guide 94 INVESTIGATING OFFENSES...
Страница 138: ......
Страница 226: ......