Reptor Sample Reports
-
This sample shows connections that have triggered alerts and the alert summary.
The alerts are based on the following criteria:
- FTP connections that were made before 8am.
- FTP connections that lasted more than 15 minutes.
- HTTP connections that lasted more than 10 minutes.
- SMTP connections that lasted more than 5 minutes.
- FTP connections that transferred more than 5 megabytes.
- HTTP connections that transferred more than 5 megabytes.
- SMTP connections that transferred more than 1 megabyte.
- A URL or desination host that matched the string "casino" or "gamble".
-
By setting very low thresholds, all connections of a certain type can be
reported.
- The total summary, protocol summary and interface summary.
-
Host summaries for each interface. The Host Summary [Inside] shows you which of
your internal hosts have generated the most traffic. The Host Summary [Outside]
shows you which external sites are the most popular.
- Shows activity by user.
-
Shows the number of times each Raptor Mobile net entity initiated a tunnel.
-
Reporting can be limited by traffic flowing in any direction and/or through any
interface. In this example, only traffic coming from or going to the DMZ is
considered.
- Shows traffic broken down by time of day and top level domain.
- Summary of all logfile messages (not just type 121 statistics).
- Shows the total number of hits and total bytes for the last 30 days.
-
Shows the traffic of specific protocols, gouped by both host and user.
-
Shows the traffic of specific hosts, grouped by both protocol and user.
-
Shows the traffic of specific users, grouped by both protocol and host.
- Everything packed into one big report.