236 Reporting
About top-level report types
Drill-down-only reports
Most top-level report types are also available as drill-down reports within other
top-level reports. However, some Network Security console reports are
accessible only as drill-down reports from within top-level reports or other
drill-down reports. This section describes the following drill-down-only reports.
For the incident you select, data is displayed within the Incident List report.
Table 9-6
Drill-down-only reports
Report
Description
Incident details
This report lists all the events contained in the selected
incident or time period, as well as the event end time, the
event source and destination IP addresses, and the name
of the device where the event was detected. Symantec
Network Security generates the Event List report in table
format only. You can access this report from within any
Incidents or Events report, as well as from within the Top
Event Destination and Top Event Source reports.
Event list
For the incident you select, data is displayed within the
Incident List report.
Events details
The Event Details report displays the data within any
Event List report.
Sources of event
The Sources of Event report lists all of the source IP
addresses for the event you select. Symantec Network
Security generates this report in table, pie chart and bar
chart formats. You can generate this report from within
the Top Event Types report.
Destinations of event
The Destinations of Event report lists all of the
destination IP addresses for the event you select.
Symantec Network Security generates this report in
table, pie chart and bar chart formats. You can generate
this report from within the Top Event Types report.
Flows by source address
This report lists the source IP addresses of flows found
on devices with the Flow Status Collection sensor mode
enabled. You can generate this report from within the
Devices with Flow Statistics report.
Flows by destination address
This report lists the destination IP addresses of flows
found on devices with Flow Status Collection sensor
mode enabled. You can generate this report from within
the Devices with Flow Statistics report.
Содержание 10521146 - Network Security 7120
Страница 1: ...Symantec Network Security Administration Guide...
Страница 12: ...12 Contents Index...
Страница 14: ...14...
Страница 70: ...70...
Страница 110: ...110 Populating the topology database Adding nodes and objects...
Страница 158: ...158 Responding Managing flow alert rules...
Страница 188: ...188...
Страница 242: ...242 Reporting Playing recorded traffic...
Страница 268: ...268 Managing log files Exporting data...
Страница 316: ...316 Advanced configuration Configuring advanced parameters...
Страница 317: ...Part IV Appendices The following appendices provide additional reference information User groups reference SQL reference...
Страница 318: ...318...
Страница 338: ...338 SQL reference Using MySQL tables...
Страница 366: ...366 Glossary...
Страница 392: ...392 Index...