Page 196 / 944 Scroll up to view Page 191 - 195
Chapter 9 Monitor
ZyWALL USG 50 User’s Guide
196
The statistics display as follows when you display the top entries by destination.
Figure 139
Monitor > Anti-X Statistics > Anti-Virus: Destination IP
9.14
The IDP Statistics Screen
Click
Monitor > Anti-X Statistics > IDP
to display the following screen. This
screen displays IDP (Intrusion Detection and Prevention) statistics.
Figure 140
Monitor > Anti-X Statistics > IDP: Signature Name
The following table describes the labels in this screen.
Table 43
Monitor > Anti-X Statistics > IDP
LABEL
DESCRIPTION
Collect
Statistics
Select this check box to have the ZyWALL collect IDP statistics.
The collection starting time displays after you click
Apply
. All of the
statistics in this screen are for the time period starting at the time
displayed here. The format is year, month, day and hour, minute, second.
All of the statistics are erased if you restart the ZyWALL or click
Flush
Data
. Collecting starts over and a new collection start time displays.
Apply
Click
Apply
to save your changes back to the ZyWALL.
Reset
Click
Reset
to return the screen to its last-saved settings.
Refresh
Click this button to update the report display.
Flush Data
Click this button to discard all of the screen’s statistics and update the
report display.
Page 197 / 944
Chapter 9 Monitor
ZyWALL USG 50 User’s Guide
197
The statistics display as follows when you display the top entries by source.
Figure 141
Monitor > Anti-X Statistics > IDP: Source
Total Session
Scanned
This field displays the number of sessions that the ZyWALL has checked
for intrusion characteristics.
Total Packet
Dropped
The ZyWALL can detect and drop malicious packets from network traffic.
This field displays the number of packets that the ZyWALL has dropped.
Total Packet
Reset
The ZyWALL can detect and drop malicious packets from network traffic.
This field displays the number of packets that the ZyWALL has reset.
Top Entry By
Use this field to have the following (read-only) table display the top IDP
entries by
Signature
Name
,
Source
or
Destination
.
Select
Signature
Name
to list the most common signatures that the
ZyWALL has detected.
Select
Source
to list the source IP addresses from which the ZyWALL has
detected the most intrusion attempts.
Select
Destination
to list the most common destination IP addresses for
intrusion attempts that the ZyWALL has detected.
#
This field displays the entry’s rank in the list of the top entries.
Signature
Name
This column displays when you display the entries by
Signature
Name
.
The signature name identifies the type of intrusion pattern. Click the
hyperlink for more detailed information on the intrusion.
Signature ID
This column displays when you display the entries by
Signature
Name
.
The signature ID is a unique value given to each intrusion detected.
Type
This column displays when you display the entries by
Signature
Name
.
It shows the categories of intrusions. See
Table 146 on page 490
for more
information.
Severity
This column displays when you display the entries by
Signature
Name
.
It shows the level of threat that the intrusions may pose. See
Table 145
on page 488
for more information.
Source IP
This column displays when you display the entries by
Source.
It shows
the source IP address of the intrusion attempts.
Destination IP
This column displays when you display the entries by
Destination.
It
shows the destination IP address at which intrusion attempts were
targeted.
Occurrences
This field displays how many times the ZyWALL has detected the event
described in the entry.
Table 43
Monitor > Anti-X Statistics > IDP (continued)
LABEL
DESCRIPTION
Page 198 / 944
Chapter 9 Monitor
ZyWALL USG 50 User’s Guide
198
The statistics display as follows when you display the top entries by destination.
Figure 142
Monitor > Anti-X Statistics > IDP: Destination
9.15
The Content Filter Statistics Screen
Click
Monitor > Anti-X Statistics > Content Filter
to display the following
screen. This screen displays content filter statistics.
Figure 143
Monitor > Anti-X Statistics > Content Filter
Page 199 / 944
Chapter 9 Monitor
ZyWALL USG 50 User’s Guide
199
The following table describes the labels in this screen.
Table 44
Monitor > Anti-X Statistics > Content Filter
LABEL
DESCRIPTION
Collect
Statistics
Select this check box to have the ZyWALL collect content filtering
statistics.
The collection starting time displays after you click
Apply
. All of the
statistics in this screen are for the time period starting at the time
displayed here. The format is year, month, day and hour, minute, second.
All of the statistics are erased if you restart the ZyWALL or click
Flush
Data
. Collecting starts over and a new collection start time displays.
Apply
Click
Apply
to save your changes back to the ZyWALL.
Reset
Click
Reset
to return the screen to its last-saved settings.
Refresh
Click this button to update the report display.
Flush Data
Click this button to discard all of the screen’s statistics and update the
report display.
Total Web
Pages
Inspected
This field displays the number of web pages that the ZyWALL’s content
filter feature has checked.
Web Pages
Warned by
Category
Service
This is the number of web pages that matched an external database
content filtering category selected in the ZyWALL and for which the
ZyWALL displayed a warning before allowing users access.
Web Pages
Blocked by
Category
Service
This is the number of web pages to which the ZyWALL did not allow
access because they matched an external database content filtering
category to which the ZyWALL was configured to block access.
Web Pages
Blocked by
Custom
Service
This is the number of web pages to which the ZyWALL did not allow
access due to the content filtering custom service configuration.
Restricted
Web
Features
This is the number of web pages to which the ZyWALL did not allow
access due to the content filtering custom service’s restricted web
features configuration.
Forbidden
Web Sites
This is the number of web pages to which the ZyWALL did not allow
access because they matched the content filtering custom service’s
forbidden web sites list.
URL
Keywords
This is the number of web pages to which the ZyWALL did not allow
access because they contained one of the content filtering custom
service’s list of forbidden keywords.
Web Pages
Blocked
Without Policy
This is the number of web pages to which the ZyWALL did not allow
access because they were not rated by the external database content
filtering service.
Web Pages
Passed
This is the number of web pages to which the ZyWALL allowed access.
Unsafe Web
Pages
This is the number of requested web pages that the ZyWALL’s content
filtering service identified as posing a threat to users.
Page 200 / 944
Chapter 9 Monitor
ZyWALL USG 50 User’s Guide
200
9.16
Content Filter Cache Screen
Click
Monitor > Anti-X Statistics > Content Filter > Cache
to display the
Content Filter Cache
screen. Use this screen to view and configure your
ZyWALL’s URL caching. You can also configure how long a categorized web site
address remains in the cache as well as view those web site addresses to which
access has been allowed or blocked based on the responses from the external
content filtering server. The ZyWALL only queries the external content filtering
database for sites not found in the cache.
You can remove individual entries from the cache. When you do this, the ZyWALL
queries the external content filtering database the next time someone tries to
access that web site. This allows you to check whether a web site’s category has
been changed.
Managed Web
Pages
This is the number of requested web pages that the ZyWALL’s content
filtering service identified as belonging to a category that was selected to
be managed.
Report Server
Click this link to go to
where you can view
content filtering reports after you have activated the category-based
content filtering subscription service.
Table 44
Monitor > Anti-X Statistics > Content Filter (continued)
LABEL
DESCRIPTION

Rate

4.5 / 5 based on 2 votes.

Bookmark Our Site

Press Ctrl + D to add this site to your favorites!

Share
Top