WatchGuard Firebox System 4.6 User Guide

WatchGuard Firebox System 4.6 User Guide WatchGuard Firebox System 4.6 User Guide

watchguard.com
from watchguard.com More from this publisher
13.07.2015 Views

Report sections and consolidated sectionsHost Summary – Proxied TrafficA table, and optionally a graph, of internal and external hosts passing trafficthrough the Firebox, sorted either by bytes transferred or number of connections.Proxy SummaryProxies ranked by bandwidth or connections.Session Summary – Proxied TrafficA table, and optionally a graph, of the top incoming and outgoing sessions, sortedeither by byte count or number of connections. The format of the session is: client -> server : service. If the connection is proxied, the service is represented in allcapital letters. If the connection is packet filtered, Historical Reports attempts toresolve the server port to a table to represent the service name. If resolution fails,Historical Reports displays the port number.HTTP SummaryTables, and optionally a graph, for the most popular external domains and hostsaccessed using the HTTP proxy, sorted by byte count or number of connections.HTTP DetailTables for incoming and outgoing HTTP traffic, sorted by time stamp. The fieldsare Date, Time, Client, URL Request, and Bytes Transferred.SMTP SummaryA table, and optionally a graph, of the most popular incoming and outgoing e-mailaddresses, sorted by byte count or number of connections.SMTP DetailA table of incoming and outgoing SMTP proxy traffic, sorted by time stamp. Thefields are: Date, Time, Sender, Recipient(s), and Bytes Transferred.FTP DetailTables for incoming and outgoing FTP traffic, sorted by time stamp. The fields areDate, Time, Client, Server, FTP Request, and Bandwidth.Denied Outgoing Packet DetailA list of denied outgoing packets, sorted by time. The fields are Date, Time, Type,Client, Client Port, Server, Server Port, Protocol, and Duration.Denied Incoming Packet DetailA list of denied incoming packets, sorted by time. The fields are Date, Time, Type,Client, Client Port, Server, Server Port, Protocol, and Duration.Denied Packet SummaryMultiple tables, each representing data on a particular host originating deniedpackets. Each table includes time of first and last attempt, type, server, port,protocol, and number of attempts. If there is only one attempt, the Last field isblank.Denied Service DetailA list of times a service was attempted to be used but was denied. The detail doesnot differentiate between Incoming and Outgoing.116

Report sections and consolidated sectionsWebBlocker DetailA list of URLs denied due to WebBlocker implementation, sorted by time. Thefields are Date, Time, User, Web Site, Type, and Category.Denied Authentication DetailA detailed list of failures to authenticate, sorted by time. The fields are Date, Time,Host, and User.Consolidated SectionsNetwork StatisticsA summary of statistics on one or more log files for all devices being monitored.Time Summary – Packet FilteredA table, and optionally a graph, of all accepted connections distributed along userdefinedintervals and sorted by time. If you chose the entire log file or specific timeparameters, the default time interval is daily. Otherwise, the time interval is basedon your selection.Host Summary – Packet FilteredA table, and optionally a graph, of internal and external hosts passing packetfilteredtraffic, sorted either by bytes transferred or number of connections.Service SummaryA table, and optionally a graph, of traffic for all services sorted by connectioncount.Session Summary – Packet FilteredA table, and optionally a graph, of the top incoming and outgoing sessions, sortedeither by byte count or number of connections. The format of the session is: client -> server : service. If the connection is proxied, the service is represented in allcapital letters. If the connection is packet filtered, Historical Reports attempts toresolve the server port to a table to represent the service name. If resolution fails,Historical Reports displays the port number.Time Summary – Proxied TrafficA table, and optionally a graph, of all accepted proxied connections distributedalong user-defined intervals and sorted by time. If you choose the entire log file orspecific time parameters, the default time interval is daily. Otherwise, the timeinterval is based on your selection.Host Summary – Proxied TrafficA table, and optionally a graph, of internal and external hosts passing proxiedtraffic, sorted either by bytes transferred or number of connections.Proxy SummaryProxies ranked by bandwidth or connections.Session Summary – Proxied TrafficA table, and optionally a graph, of the top incoming and outgoing sessions sortedeither by byte count or number of connections. The format of the session is: client -User Guide 117

Report sections and consolidated sectionsWebBlocker DetailA list of URLs denied due to WebBlocker implementation, sorted by time. Thefields are Date, Time, <strong>User</strong>, Web Site, Type, and Category.Denied Authentication DetailA detailed list of failures to authenticate, sorted by time. The fields are Date, Time,Host, and <strong>User</strong>.Consolidated SectionsNetwork StatisticsA summary of statistics on one or more log files for all devices being monitored.Time Summary – Packet FilteredA table, and optionally a graph, of all accepted connections distributed along userdefinedintervals and sorted by time. If you chose the entire log file or specific timeparameters, the default time interval is daily. Otherwise, the time interval is basedon your selection.Host Summary – Packet FilteredA table, and optionally a graph, of internal and external hosts passing packetfilteredtraffic, sorted either by bytes transferred or number of connections.Service SummaryA table, and optionally a graph, of traffic for all services sorted by connectioncount.Session Summary – Packet FilteredA table, and optionally a graph, of the top incoming and outgoing sessions, sortedeither by byte count or number of connections. The format of the session is: client -> server : service. If the connection is proxied, the service is represented in allcapital letters. If the connection is packet filtered, Historical Reports attempts toresolve the server port to a table to represent the service name. If resolution fails,Historical Reports displays the port number.Time Summary – Proxied TrafficA table, and optionally a graph, of all accepted proxied connections distributedalong user-defined intervals and sorted by time. If you choose the entire log file orspecific time parameters, the default time interval is daily. Otherwise, the timeinterval is based on your selection.Host Summary – Proxied TrafficA table, and optionally a graph, of internal and external hosts passing proxiedtraffic, sorted either by bytes transferred or number of connections.Proxy SummaryProxies ranked by bandwidth or connections.Session Summary – Proxied TrafficA table, and optionally a graph, of the top incoming and outgoing sessions sortedeither by byte count or number of connections. The format of the session is: client -<strong>User</strong> <strong>Guide</strong> 117

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!