F W L O G S U M     R E P O R T


Accepted Entries
Sorted by count
Only including lines matching: "telnet"
Report generated on: Mon Jul 9 16:25:33 2007
Period for report data: 20 Oct 2001 at 17:21:03 to 26 Nov 2001 at 9:02:26
Period for matched data: 17 Nov 2001 at 14:43:02 to 26 Nov 2001 at 8:55:23

Total entries processed 18995
Entries matched on 182
Inbound traffic 18952
Outbound traffic 8
Control Messages 35
Entries Ignored 18468
Alert Entries 2
Attack Types 0
Unique Attack URLs 0
Encrypted/Decrypted Entries 4
Unknown Entries 0

Colour Index
Standard Entries
Highlighted Entries
Alert Entries
Encrypted/Decrypted Entries

View Report Summary

FW1 Host Source Address Destination Address Service Count Rule
FWFOOMAIN01devel.lab.foo.comwebfoogen1.foo.comtcp(telnet)1151
FWFOOMAIN01zeus.lab.foo.comwebfoogen1.foo.comtcp(telnet)351
FWFOOMAIN01dhcp-100-101-167-233.dhcp.foo.comfwfoomain01.foo.comtcp(telnet)123
FWFOOMAIN01dhcp-100-101-160-062.dhcp.foo.comcorelinkmain01.foo.comtcp(telnet)91
FWFOOMAIN01192.1.1.13corelinkmain01.foo.comtcp(telnet)41
FWFOOMAIN01dhcp-100-101-166-059.dhcp.foo.comfwfoomain01-2tcp(telnet)21
FWFOOMAIN01gwt.lab.foo.comfwmain01.foo.comtcp(telnet)11
FWFOOMAIN01test.lab.foo.comcorelinkmain01.foo.comtcp(telnet)11
FWFOOMAIN01devel.lab.foo.com192.1.1.8tcp(telnet)11
FWFOOMAIN01dhcp-100-101-166-057.dhcp.foo.comfwfoomain01-2tcp(telnet)11
FWFOOMAIN01devel.lab.foo.comfwfoomain01.foo.comtcp(telnet)13

Summary Information

Firewall Server: Top 10 of 1
FWhost Count Of Total %
FWFOOMAIN01182100.00%

Users/Source Addresses: Top 10 of 9
Source Count Of Total %
devel.lab.foo.com11764.29%
zeus.lab.foo.com3519.23%
dhcp-100-101-167-233.dhcp.foo.com126.59%
dhcp-100-101-160-062.dhcp.foo.com94.95%
192.1.1.1342.20%
dhcp-100-101-166-059.dhcp.foo.com21.10%
gwt.lab.foo.com10.55%
test.lab.foo.com10.55%
dhcp-100-101-166-057.dhcp.foo.com10.55%

Users/Destination Addresses: Top 10 of 6
Destination Count Of Total %
webfoogen1.foo.com15082.42%
corelinkmain01.foo.com147.69%
fwfoomain01.foo.com137.14%
fwfoomain01-231.65%
fwmain01.foo.com10.55%
192.1.1.810.55%

Service Usage: Top 10 of 1
Service Count Of Total %
tcp(telnet)182100.00%

Rule Usage: Top 10 of 2
Rule Count Of Total %
Rule 116992.86%
Rule 3137.14%

Network Interface Usage: Top 10 of 1
Networks Count Of Total %
FWFOOMAIN01 hme0 (inbound)182100.00%

Alert Types: Top 10 of 2
AlertType Count Of Total %
log10.55%
mail10.55%

Source Domains: Top 10 of 2
SrcDomain Count Of Total %
US Commercial17897.80%
Unresolved42.20%

Destination Domains: Top 10 of 3
DestDomain Count Of Total %
US Commercial17897.80%
Unknown31.65%
Unresolved10.55%

Daily Usage
Daily Count Of Total %
21Nov20013619.78%
22Nov20013619.78%
23Nov20012614.29%
20Nov20012513.74%
19Nov2001179.34%
18Nov2001116.04%
26Nov2001116.04%
17Nov2001105.49%
25Nov2001105.49%

Hourly Periods: Top 10
Time Count Of Total %
8AM-9AM2010.99%
4PM-5PM179.34%
10AM-11AM137.14%
6AM-7AM116.04%
4AM-5AM116.04%
6PM-7PM116.04%
2AM-3AM116.04%
8PM-9PM116.04%
10PM-11PM116.04%
0AM-1AM116.04%

Ignored 18468 entries not matching: telnet

Top of Report


fwlogsum Version: 5.0.3
Generated: Mon Jul 9 16:25:33 2007