|
Features
Activity logs
Activity logs display information that helps you understand the communication between your computer and other devices. You can use this information to analyze and identify potentially malicious activity.
Packet activity log
The packet activity log provides a detailed view of network activity at the packet level. This log helps you analyze packet information at the lowest possible level.
The following pieces of information are displayed for each packet:
- Packet status
- Packet type
- Source address
- Source name
- Source port
- Destination address
- Destination name
- Destination port
- Process
- Process owner
- The time the packet activity was detected
Host activity Log
The host activity log summarizes network activity by host. This log helps you see what devices your machine is communicating with.
The following pieces of information are displayed:
- IP address of the host
- The host name (if it can be resolved)
- Incoming packets that were allowed
- Outgoing packets that were allowed
- Incoming packets that were blocked
- Outgoing packets that were blocked
Port activity log
The port activity log summarizes network activity at the port level. This log helps you understand which ports are being used on your computer. This information can be used to create custom filters that allow or block activity on specific ports.
The following pieces of information are displayed:
- Port number
- Port name
- Port description
- Incoming packets that were allowed
- Outgoing packets that were allowed
- Incoming packets that were blocked
- Outgoing packets that were blocked
Process activity log
The process event log displays information related to the processes running on your machine. Use this log to see the applications and processes that are accessing the network.
The following pieces of information are displayed:
- Type
- Event
- Details (Process)
- Time the event occurred
Event logs
Event logs display information that helps you understand activity on your machine. Most of this activity is not visible without the aid of the log.
Adapter events
The adapter event log displays information related to the network adapters installed in your machine. You can use this log to identify when IP addresses change for each installed adapter.
The following pieces of information are displayed:
- Type
- Event
- Details (IP Address)
- Time the event occurred
Driver events
The driver event log displays information related to the Secure Endpoint driver.
The following pieces of information are displayed:
- Type
- Event
- Details
- Time the event occurred
Process events
The process event log displays information related to the processes running on your machine. Use this log to identify processes that have run on your machine and view a list of the process start and stop times.
The following pieces of information are displayed:
- Type
- Event
- Details (Process)
- Time the event occurred
System events
The system event log displays information related to various system events.
The following pieces of information are displayed:
- Type
- Event
- Details (User info if available)
- Time the event occurred
|