Network and security summary
The Network and security summary widget shows how network traffic is processed and analyzed by the VMware NSX Network Detection and Response. It shows the efficient processing pipeline:
Bytes processed → All records → All events (including unimportant events) → Detection events (only important events) → Campaigns.
The widget is divided into segments indicating the different stages of processing the system performs on incoming data. It starts with Bytes processed and proceeds until it reaches Campaigns generated.
Hovering your mouse over each segment will display further details about the data being examined. For example, hovering over Records processed displays the number of different record types, such as DNS, Netflow, or Webrequest.
Click the count link above the Events generated
segment to go to the Detection events page and view the Events list. It shows All events, including
unimportant INFO
events.
Click the count link above the Detection events generated segment to go to the Detection events page and view the Events list which just displays interesting events. Click the count link below to go to the Hosts list.
Click the count link above the Campaigns generated segment to go to the Campaigns page. It shows the Campaign cards for the campaigns detected.