Cisco Cisco Firepower 4120 Security Appliance
Table 171: Last Sample Statistics Parameters
Parameter
Description
Traffic Type
The protection type. Each specific traffic type and direction has a baseline that the
device learns automatically.
Baseline
The normal traffic rate expected by the device.
Total Traffic
The total traffic rate that the DefensePro device sees for the specific traffic type and
direction.
Baseline Portion %
An indication for the rate invariant baseline—that is, the normal percentage of the
specific traffic type to all other traffic in the same direction.
RT Portion %
The actual percentage of the specific traffic type relative to all other traffic in the same
direction.
Legitimate Traffic
The actual forwarded traffic rate, after the device blocked the attack. When
there is no attack, the RT Rate and Legitimate Rate are equal.
there is no attack, the RT Rate and Legitimate Rate are equal.
Legitimate Portion %
The actual percentage of the forwarded traffic rate of the specified type relative to
other types of traffic, after the device blocked the attack.
Degree of Attack
A numeric value that evaluates the current level of attack. A value of 8 or greater
signifies an attack.
Monitoring DNS Traffic
You can monitor the traffic for a Network Protection policy that includes DNS Flood protection. Traffic information is
displayed in the Statistics Graph and Last Sample Statistics table.
To display traffic information for a Network Protection policy that includes DNS protection
1.
In the Security Monitoring perspective, select the device to monitor.
2.
Select Protection Monitoring > DNS Traffic Monitoring Reports.
3.
Configure the filter for the display of the Statistics Graph and Last Sample Statistics table.
Statistics Graph
The graph displays the traffic rates for the selected Network Protection policy according to the specified
parameters.
Table 172: Scope Parameters for the Statistics Graph and Last Sample Statistics Table
Parameter
Description
Scope
The Network Protection policy. The list only displays rules configured with a DNS
profile.
Direction
The direction of the traffic that the Statistics Graph and Last Sample Statistics
table display.
Values: Inbound, Outbound
Values: Inbound, Outbound
Units
(Read-only) The unit according to which the Statistics Graph and Last Sample
Statistics
Statistics
table display the traffic.
Value: QPS—Queries per second
© 2016 Cisco | Radware. All rights reserved. This document is Cisco Public.
Page 220 of 281