Viewing Aggregated Flows - Juniper SECURITY THREAT RESPONSE MANAGER 2008.2 R2 - REV1 Manual

Table of Contents

Advertisement

158
U
F
SING THE
LOW
Viewing Aggregated
Flows
V
IEWER
Table 7-3 Flow Details (continued)
Parameter
Source ASN
Destination ASN
Source if INdex
Destination If
Index
Start Time
Application
End Time
Custom Views
Source Payload
Destination
Payload
Using the Flow Viewer, you can view flows aggregated (grouped) by various
options including:
Table 7-4 Aggregate Flows
Aggregate Option
Unioned Flows
Source or Destination
IP
Source IP
Destination IP
Source Port
Destination Port
Source Network
Description
Specifiers the source ASN number.
Specifies the destination ASN number.
Specifies the source ifIndex number.
Specifies the destination ifIndex number.
Specifies the start time of the flow, as reported to STRM by the
device.
Specifies the application that originated the flow.
Specifies the end time of the flow, as reported to STRM by the
device.
Specifies custom views detected for the flow.
Specifies source payload content from the flow. To view the
payload in Hex, click Hex. To view the payload in UTF, click UTF.
To view in Base64, click Base64.
Specifies destination payload content from the flow. To view the
payload in Hex, click Hex. To view the payload in UTF, click UTF.
To view in Base64, click Base64.
Description
Unioned flows displays several flows in one uninterrupted
pattern across several intervals, in a single record. For
example, if a flow was five minutes long, the unioned flow
displays the flow as a single flow five minutes long.
The unioned flows interface displays Displays a summarized
list of flows grouped by unioned flow information.
Displays a summarized list of flows grouped by the IP
address associated with the flow.
Displays a summarized list of flows grouped by the source
IP address of the flow.
Displays a summarized list of flows grouped by the
destination IP address of the flow.
Displays a summarized list of flows grouped by the source
port of the flow.
Displays a summarized list of flows grouped by the
destination port of the flow.
Displays a summarized list of flows grouped by the source
network of the flow.
STRM Users Guide

Advertisement

Table of Contents
loading

This manual is also suitable for:

Security threat response manager 2008.2 r2

Table of Contents