Drill-Down-Only Reports - Symantec 10521146 - Network Security 7120 Administration Manual

Administration guide
Hide thumbs Also See for 10521146 - Network Security 7120:
Table of Contents

Advertisement

236 Reporting
About top-level report types

Drill-down-only reports

Most top-level report types are also available as drill-down reports within other
top-level reports. However, some Network Security console reports are
accessible only as drill-down reports from within top-level reports or other
drill-down reports. This section describes the following drill-down-only reports.
For the incident you select, data is displayed within the Incident List report.
Table 9-6
Drill-down-only reports
Report
Incident details
Event list
Events details
Sources of event
Destinations of event
Flows by source address
Flows by destination address
Description
This report lists all the events contained in the selected
incident or time period, as well as the event end time, the
event source and destination IP addresses, and the name
of the device where the event was detected. Symantec
Network Security generates the Event List report in table
format only. You can access this report from within any
Incidents or Events report, as well as from within the Top
Event Destination and Top Event Source reports.
For the incident you select, data is displayed within the
Incident List report.
The Event Details report displays the data within any
Event List report.
The Sources of Event report lists all of the source IP
addresses for the event you select. Symantec Network
Security generates this report in table, pie chart and bar
chart formats. You can generate this report from within
the Top Event Types report.
The Destinations of Event report lists all of the
destination IP addresses for the event you select.
Symantec Network Security generates this report in
table, pie chart and bar chart formats. You can generate
this report from within the Top Event Types report.
This report lists the source IP addresses of flows found
on devices with the Flow Status Collection sensor mode
enabled. You can generate this report from within the
Devices with Flow Statistics report.
This report lists the destination IP addresses of flows
found on devices with Flow Status Collection sensor
mode enabled. You can generate this report from within
the Devices with Flow Statistics report.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Network security

Table of Contents