Cisco Cisco Firepower Management Center 4000

Page of 1844
 
4-15
FireSIGHT System User Guide
 
Chapter 4      Using the Context Explorer
  Understanding the Context Explorer
This graph draws data primarily from the Security Intelligence Events table.
Viewing the Security Intelligence Traffic by Source IP Graph
License: 
Protection
Supported Devices: 
Series 3, Virtual, X-Series, ASA FirePOWER
Supported Defense Centers: 
Any except DC500
The Security Intelligence Traffic by Source IP graph, in bar form, displays counts of network traffic (in 
kilobytes per second) and unique connections for the top source IP addresses of Security 
Intelligence-monitored traffic on your monitored network. For each category listed, blue bars represent 
traffic data and red bars represent connection data.
Hover your pointer over any part of the graph to view more detailed information. Click any part of the 
graph to drill down on that information.
Note
If you filter on intrusion event information, the Security Intelligence Traffic by Source IP graph is 
hidden. 
This graph draws data primarily from the Security Intelligence Events table.
Viewing the Security Intelligence Traffic by Destination IP Graph
License: 
Protection
Supported Devices: 
Series 3, Virtual, X-Series, ASA FirePOWER
Supported Defense Centers: 
Any except DC500
The Security Intelligence Traffic by Destination IP graph, in bar form, displays counts of network traffic 
(in kilobytes per second) and unique connections for the top destination IP addresses of Security 
Intelligence-monitored traffic on your monitored network. For each category listed, blue bars represent 
traffic data and red bars represent connection data.