The Live Traffic provide a live visual representation of the traffic load across network links. Graphs are similar to that of MRTG, with the aim of providing a simple way to see exactly how much inbound and outbound traffic was generated for each device.
Note: | SNMP base Live report graphs are not available for virtual Firewalls (vdom). |
The procedure to configure the SNMP protocol settings of Firewall devices in the Firewall Analyzer is given below:
Note: | If SNMP query is not successful, error message will be displayed on top of the page. Upon error, ensure the credentials provided are correct. Also ensure you have provided Management access through the source interface for SNMP protocol. |
Once the 'Live Settings' is added successfully, the Edit | Disable | Delete SNMP options are displayed to respective devices in Interface Live Reports Dashboard. The Live Reports and Interface Live Reports are populated with SNMP data.
Using the SNMP parameters configured, all the devices will be queried to get interface details. To configure/enable SNMP protocol in individual Firewall devices, refer the respective device configuration documents. Fortigate, Netscreen, Cisco PIX, Cisco ASA, Cisco Firewalls using ASDM tool
Once the SNMP settings is done for Live Reports, we skip the syslog data and use SNMP data for Live Reports. To switch to syslog option either disabling or deleting the SNMP settings. You could find this option to the right of device name in Interface/Zone Live Reports dashboard.
On the top right side of the Report screen, there will be two combo boxes. They are:
Refresh
The Refresh combo box lets to enable or disable refreshing of the Live reports and lets you to choose the refreshing interval of the Live reports. There will be three field values for filtering. They are:
Export as
The Export as combo box lets you choose the format of the reports for export. There will be two formats for exporting. They are:
Click on the PDF to export this report to PDF. Click on the CSV to export this report to CSV format (comma separated values).
Click the Live Reports link present inside the list of reports for a device, to see the live reports for that device alone, over all the time periods described above.
The graphs for each device shows the minimum, maximum, and average amount of incoming and outgoing traffic through that device, over several time periods. Traffic is broken down into the last day, last week, last month, and last year, with an average granularity of 5 minutes, 30 minutes, 2 hours, and 1 day respectively.
The incoming and outgoing bandwidth can be viewed in Kbps/Mbps/Gbps.
Drill down from each of the graphs in the live report to see the following details:
Graph | Description |
---|---|
Inbound/Outbound Traffic Conversations | The inbound/outbound conversations for all hosts across this device. This data is available only for the last day's traffic over a 5-minute average granularity. |
Top Hosts | The top hosts contributing to inbound/outbound traffic across this device. Drill down from this graph to see the corresponding conversations for each host, during the selected time period. |
Top Protocol Groups | The top protocol groups used in inbound/outbound traffic across this device. Drill down from this graph to see the corresponding conversations using each protocol group, during the selected time period. |
Top Users | The top users contributing to inbound/outbound traffic across this device. Drill down from this graph to see the corresponding conversations for each user, during the selected time period. |
Live traffic for the 24 hour period can be zoomed to 12 hour and 6 hour periods.
Note: | Live Reports will not be available for devices whose logs do not contain the "duration" field. For example: WatchGuard, SonicWall, Astaro, IP Filter Linux Firewall, etc... |
On the top right side of the Report screen, there will be two combo boxes. They are:
Refresh
The Refresh combo box lets to enable or disable refreshing of the Live reports and lets you to choose the refreshing interval of the Live reports. There will be three field values for filtering. They are:
Export as
The Export as combo box lets you choose the format of the reports for export. There will be two formats for exporting. They are:
Click on the PDF to export this report to PDF. Click on the CSV to export this report to CSV format (comma separated values).
Click the Live Reports link present inside the list of reports for a device, to see the live reports for that device alone, over specific time periods.
The graphs for each device shows the minimum, maximum, and average amount of outgoing traffic through that device, over several time periods. Traffic is broken down into the last day, last week, last month, and last year, with an average granularity of 5 minutes, 30 minutes, 2 hours, and 1 day respectively. Live traffic for the 24 hour period can be zoomed to 12 hour and 6 hour periods.
The outgoing bandwidth can be viewed in Kbps/Mbps/Gbps.
Note: | Live Reports will not be available for devices whose logs do not contain the "duration" field. |