Detections

In this tab, a user can see information regarding the Detection statistics.

Available sections and functionality:

Top 10 Unresolved Threat and Warning Detections—You can use Additional Filter to filter reports based on the time of their occurrence. After clicking a pie graph or the name of the threat/detection, you are redirected to the Detections section with the selected type of detection

Top 10 Unresolved Informational Detections—After clicking a pie graph or the name of the Unresolved Informational Detection, you are redirected to the Detections section with the selected type of detection

Threat and Warning Detections—After clicking the graph on a specific day, you are redirected to the Detections section with the selected detections of that day

Informational Detections—After clicking the graph on a specific day, you are redirected to the Detections section with the selected detections of that day

Additional filters

The additional filters are accessible by clicking the ADD FILTER button or clicking on a space next to the add filter button, where the list of available filters shows. The user can search filter by typing its name or selecting from the list. For the definitions of the additional filters, follow here.

Some of the filters have a funnel icon next to them with two or four possible predefined options:

Unknown—the value in the filtered column is not available (probably not a known value at the time of occurrence)

Known—the value is available

None—value is an empty string

Any—the value is not empty. The negation of None filter

If present on the screen you, can refresh the table by clicking the refresh iconAlarms_Refresh. If available, the export icon Export_CSV can be used to export the table grid to CSV format and use it in other applications to work with the list.

If present, click the PRESETS button to manage filter sets. These options are available:

Save filters—allows you to save the actual filter set. Select the check box Include the visible columns and sorting to save also this setting of your selection, otherwise when loading saved filter without this option selected will end up by showing you the default column setting

Reset filters—resets active filter and return to default filter setting with default column setting

Reset view—resets the active view without resetting the filter set

Manage—allows you to manage your filter sets

Save Filters as Rule—if available, allows you to save the filter as a rule. You can find it then in the list of rules under the Detection rules sub-tab of the admin tab