- Alerts
-
This sample shows connections that have triggered alerts and the alert summary. The alerts are based on the following criteria:
- FTP connections that were made before 8am.
- FTP connections that lasted more than 15 minutes.
- HTTP connections that lasted more than 10 minutes.
- SMTP connections that lasted more than 5 minutes.
- FTP connections that transferred more than 5 megabytes.
- HTTP connections that transferred more than 5 megabytes.
- SMTP connections that transferred more than 1 megabyte.
- A URL or desination host that matched the string "casino" or "gamble".
- All SSH Activity
-
By setting very low thresholds, all connections of a certain type can be reported.
- Protocol and Interface Summaries
The total summary, protocol summary and interface summary.
- Host Summaries
-
Host summaries for each interface. The Host Summary [Inside] shows you which of your internal hosts have generated the most
traffic. The Host Summary [Outside] shows you which external sites are the most popular.
- User Summary
Shows activity by user.
- Raptor Mobile Summary
Shows the number of times each Raptor Mobile net entity initiated a tunnel.
- Traffic Filtering
-
Reporting can be limited by traffic flowing in any direction and/or through any interface. In this example, only traffic coming
from or going to the DMZ is considered.
- Time of Day and Top Level Domain Summaries
Shows traffic broken down by time of day and top level domain.
- Message Summary
Summary of all logfile messages (not just type 121 statistics).
- History Summary
Shows the total number of hits and total bytes for the last 30 days.
- Protocol Detail
Shows the traffic of specific protocols, gouped by both host and user.
- Host Detail
Shows the traffic of specific hosts, grouped by both protocol and user.
- User Detail
Shows the traffic of specific users, grouped by both protocol and host.
- Host WWW Summary
Shows the most commonly visited web sites from the most used hosts.
- Pattern Summary
Shows a summary of matched patterns.
- Everything
Everything packed into one big report.