Application Distribution Reports

To search for and generate a report that summarizes accepted traffic by application ports through selected firewall log sources during a specified time interval, use the Application Distribution Real-Time Report.

Note:
  1. The Application Distribution data is summarized in ten minutes and one hour. If the report time interval is less than two hours, the time range is cut to ten minutes, and if it is more than two hours, it is cut to one hour
  2. To view the detail report, you must enable the Administration > System Settings > General tab > Enable Accept Detail option. This may require additional time and storage in downloading this report.

Menu path: Reports > Network Activity > Application Distribution

In addition to setting the common report options in Preparing a Real-time Report, you can select optional filter operators in the generated report.

Optional filter operators can be sorted in ascending or descending order. Choose sort order using the drop-down menu. The default is to display all the following options.

For information on saving the generated report, see Formats for Saving a Generated Report.

Application Distribution Report - Optional Filter Operators
Option Description
Source Device Description of the device that sent these log messages
Port Port number (service) of the connection
Protocol IP protocol (TCP, UDP, so on.) of the connection
Description Description of the port (service)
Messages Number of log messages received representing this connection
Src -> Dest Bytes Number of outbound bytes sent (not for Nortel VPN)
Bar Graph Percentage of total outbound bytes represented as a bar graph
Percentage Number of outbound bytes represented as a percentage
Dst -> Src Bytes Number of inbound bytes received (not for Nortel VPN)