Device Summary

Last updated on:

Overview:

The Device Summary in ManageEngine Log360 is an analytical console used to view high-level device activity and contextual event data. It provides a consolidated view of the machine summary, event summary for the picked device for the selected period, device severity distribution, and alerts summary.

Viewing Device Summary

Users can view and access the Device Summary from multiple tabs within the product such as Reports, Log Source, Alerts, Incidents and others listed below. In addition to the device-level summary, users can also view the activity overview for the configured web servers, databases, endpoint security solutions, and vulnerability scanners listed below.

NOTE
  • Access to the Device Summary is not available for users with the Guest role.
  • Refer to the Technician and Roles page to customize configurations.

From Log Source Configurations

  1. Navigate to Settings tab. Under Log Source Configurations, click Devices.
  2. In the Device Management page, locate and select the device for which you want to view the summary.
    Device Summary
    Figure 1: Viewing device summary
  3. Click Device Summary to view the detailed information for the selected device.
    Device Summary
    Figure 2: Viewing Device Overview

From Reports

  1. Navigate to Reports tab.
  2. Select any report category from the top menu.
    Device Summary
    Figure 3: Selecting a report category
  3. In the report table, click on a device listed in the results.
    Device Summary
    Figure 4: Viewing device summary
  4. Click Device Summary to view the summary details for that device.
    Device Summary
    Figure 5: Viewing Device Overview

From Compliance

  1. Go to the Compliance tab.
  2. Under Configured Compliance, click View Reports for the compliance standard you want to view.
    Device Summary
    Figure 6: Viewing reports
  3. From the list of reports under the selected compliance, open any report.
    Device Summary
    Figure 7: Selecting a report
  4. In the report details, select a device listed in the results.
    Device Summary
    Figure 8: Viewing device summary
  5. Click Device Summary to view the summary information for that device.
    Device Summary
    Figure 9: Viewing Device Overview
  1. In the Search tab, enter your query and click Search.
    Device Summary
    Figure 10: Log search
  2. In the results table displayed below, locate the device listed for any log entry.
  3. Click the device name.
  4. Click Device Summary to view the summary details for that device.
    Device Summary
    Figure 11: Viewing Device Summary

From Security

  1. Go to the Security tab.
  2. In the Recent Detections widget, select a detection associated with the device you want to review.
    Device Summary
    Figure 12: Selecting a recent detection
  3. In the Analysis page, locate the Where section.
  4. Click the device name shown there.
  5. Click Device Summary to view the summary information for that device.
    Device Summary
    Figure 13: Viewing Device Summary

From Log Source

  1. In the Dashboard tab, click View All Devices under the Event Overview section.
    Device Summary
    Figure 14: Viewing all devices
  2. In the list of devices displayed, click the device you want to review.
  3. Click Device Summary to view the summary for that device.
    Device Summary
    Figure 15: Viewing Device Summary

From Alerts

  1. In the Alerts tab, locate the alert for which you want to view device details.
  2. In the Device column, click the device name shown next to the alert.
  3. Click Device Summary to view the summary information for that device.
    Device Summary
    Figure 16: Viewing Device Summary

From Incidents

  1. Go to the Alerts tab and open the Incident sub-tab.
  2. Select the incident for which you want to view details.
    Device Summary
    Figure 17: Selecting an incident
  3. In the Actors section, click the device listed under Entity.
  4. Click Device Summary to view the summary information for that device.
    Device Summary
    Figure 18: Viewing device summary

Using Device Summary

  1. Device list dropdown: Click the device dropdown to view all available devices and select the one you want to analyze.
    Device Summary
    Figure 19: Selecting a device
  2. You can also use search devices within the dropdown to quickly find a specific device.
  3. Switching between devices: Use the Previous and Next arrows to move to the previous or next device in the list.
    Device Summary
    Figure 20: Switching between devices

Activity overview

In addition to the Device Summary, the Activity Overview is available for configured web servers, databases, endpoint security solutions, and vulnerability scanners associated with the selected device.

NOTE The Activity Overview is available for the following configured applications associated with the selected device:

SQL, IIS, Nessus, Nexpose, Nmap, OpenVAS, Qualys, Symantec DLP, CEF format–based sources, FireEye, Malwarebytes, McAfee, Symantec Endpoint Protection, and Trend Micro.

IIS Overview

Device Summary
Figure 21: IIS Overview

Qualys Overview

Device Summary
Figure 22: Qualys Overview

OpenVas Overview

Device Summary
Figure 23: OpenVas Overview

Read also

This page explained how to access Device Summary from multiple modules and how to navigate device-level insights. For more information on related features within the user interface, refer to: