Other Resources

    Reports for Networking Devices


    EventLog Analyzer offers the following canned reports under various categories for Network Device events:

     

    Router Logon Report

    • Logons
    • Failed logons
    • Bad authentication
    • SSH logons
    • Failed SSH Logons
    • Closed SSH sessions
    • Failed VPN Logons
    • VPN Authorization errors
    • Top Logons based on hosts
    • Top logons based on users
    • Top logons based on remote hosts
    • Top Failed logons based on hosts
    • Top Failed logons based on users
    • Top Failed logons based on remote hosts
    • Top VPN Authentication errors based on remote hosts
    • Top VPN Authentication errors based on users
    • Top Failed VPN Authentication errors based on remote hosts
    • Top Failed VPN Authentication errors based on users
    • Top SSH logons based on remote hosts
    • Top SSH logons based on users
    • Top Failed SSH Logons based on remote hosts
    • Top Failed SSH Logons based on users
    • Logons Trend
    • Failed logons Trend

    Router Configuration Report

    • Reports on up links
    • Reports on down links
    • Reports on up links and down links
    • Link State Changes
    • Configuration Changes
    • System Restarts
    • Link Errors
    • Top State Changes
    • Top configuration changes
    • Top configuration changes based on users
    • Top configuration changes based on remote hosts
    • Top Link Errors

    Router Accepted Connections

    • Successful connection authorizations
    • Top Connections based on Source
    • Top Connections based on Destination
    • Top Connections based on Protocol
    • Successful connection authorizationss Trend

    Router Denied Connections

    • Denied Connections
    • Top Denied Connections based on Source
    • Top Denied Connections based on Destination
    • Top Denied Connections based on Protocol
    • Denied Connection Trend

    Router Traffic Report by Protocol

    • TCP Traffic Audit
    • UDP Traffic Audit
    • ICMP Traffic Audit
    • Traffic Audit Overview
    • Top TCP Traffic Audit based on Source
    • Top UDP Traffic Audit based on Source
    • Top ICMP Traffic Audit based on Source
    • Top Traffic Audit based on Source

    Router/Switch System Events

    • Commands executed
    • Interface Up
    • Interface down due to link failure
    • Individual port down
    • Fan Failed
    • Fan Status Ok
    • Report on power supply
    • Memory Allocation Failure
    • System clock updates
    • Report on power supply Scheduled
    • System Temperature Exceeded
    • System Shutdown due to Temperature
    • Interface Down Suspended by Speed

    Router Traffic Errors

    • Too Many Fragments
    • Invalid Fragment Length
    • Overlap Fragments
    • Dhcp Snooping Denied
    • Permitted ARP
    • Denied ARPs

    IDS/IPS Activity

    • Attack Reports
    • Top Attacks
    • Top Attacker Host
    • Top Attacked Host
    • Top Signature
    • TrendBased Attacks

    Firewall Threats

    • Syn Flood Attack
    • Routing Table Attack
    • Attack Reports
    • Top Attacks
    • Top Attackers
    • Top Attacked Host
    • Top Interface
    • Attacks Trend

    Firewall Traffic Reports

    • Allowed Firewall Traffic
    • Top Firewall Traffic based on Source
    • Top Firewall Traffic based on Destination
    • Top Firewall Traffic based on Protocol
    • Top Firewall Traffic based on Port

    Firewall Denied Connections

    • Denied Connections
    • Top Firewall Denied Connections based on Source
    • Top Firewall Denied Connections on Host
    • Top Firewall Denied Connections based on Protocol
    • Top Firewall Denied Connections based on Port
    • Denied Connections Trend

    Firewall Logon Reports

    • Logons
    • Failed Logons
    • Top Successful logons based on user
    • Top logons based on remote hosts
    • Top logons based on ports
    • Top failed logons based on users
    • Top failed logons based on remote hosts
    • Top failed logons based on ports
    • Logon Trend
    • Failed logon trend

    Firewall Account Management

    • Added users
    • Deleted users
    • Added Group policies
    • Deleted group policies
    • Changed user privilege levels
    • Executed commands

    Firewall VPN Logon Reports

    • VPN Logons
    • Failed VPN Logons
    • VPN Lockouts
    • VPN Unlocks
    • Top Logon based on users
    • Top logons based on remote hosts
    • Top Failed VPN Logonss based on User
    • Top Failed VPN Logons based on RemoteHost
    • Top VPN Lockouts based on User
    • VPN logon trend reports
    • Failed VPN Logons Trend

    Network Device Severity Reports

    • Emergency Events
    • Alert Events
    • Critical Events
    • Error Events
    • Warning Events
    • Notice Events
    • Information Events
    • Debug Events

    Network Device Critical Reports

    • Criticality level of events
    • Critical events report
    • Critical events based on hosts
    • Critical events based on remote host
    • Critical events Trend
    • Critical events Overview