H3C SecCenter Comprehensive Log Audit Platform Web Configuration Guides(E1904)-5W100

HomeSupportSecurityH3C SecCenter Log Audit PlatformH3C SecCenter CSAP-SATechnical DocumentsConfigure & DeployConfiguration GuidesH3C SecCenter Comprehensive Log Audit Platform Web Configuration Guides(E1904)-5W100
02-Overview
Title Size Download
02-Overview 25.29 KB

Overview

After logging in to the platform, you will be placed on the Overview page. This page displays the platform configuration, running status, and collected log statistics. It helps you quickly grasp the overall platform information at a glance.

Information on the overview page

·     Statistical Period

Select a statistical period. Options are Last 24 Hours, Last 7 Days, and Last 30 Days.

·     Log Sources

Displays the total number of added log sources, including active and passive collection sources. To view log source details, click the number.

·     Agent

Displays the total number of added agents. To view agent details, click the number.

·     Log Records

Displays the total number of log messages collected by the platform during the statistical period. To view log details, click the number.

·     Correlated Events

Displays the total number of security events in the system during the statistical period. To view all security event details, click the number.

·     Correlation Rules

Displays the total number of configured correlation rules, including predefined and custom rules. To view rule details, click the number.

·     Log Storage Information

Displays the estimated number of days for storage, which is calculated based on the current log reporting rate and available system space. In addition, the total space usage and quantity for all log types are displayed.

·     Performance Monitoring

Displays the current CPU, memory, and disk usage in pie charts.

·     Distribution by Asset Type/Collection Type/Host System

Uses pie charts to display the top 10 data sources by asset type, collection type, and deployed host system by count and distribution across three dimensions: passive log sources, active log sources, and agents.

·     Log Distribution by Device Type

Displays the total log count during the statistical period and the top 10 asset types with the most reported logs, along with their log quantities in a pie chart.

·     Log Distribution by Severity

Displays the total number of logs at each severity level and their distribution within the statistical period in a pie chart.

·     Event Count Trend

Displays the trend of related events during the statistical period in a fold-line graph.

Restrictions and guidelines

·     The log storage information area displays the total number of logs on the platform. When you refresh the page, the statistics are updated. However, switching the statistics period does not trigger a refresh.

·     Log storage information does not count correlated events.

·     The estimated storage duration is calculate based on current log data and disk usage. The actual upper limit depends on the cleanup policy set on the Configuration > System Management > Global Settings > Data Cleanup Settings page.

 

  • Cloud & AI
  • InterConnect
  • Intelligent Computing
  • Intelligent Storage
  • Security
  • SMB Products
  • Intelligent Terminal Products
  • Product Support Services
  • Technical Service Solutions
All Services
  • Resource Center
  • Policy
  • Online Help
  • Technical Blogs
All Support
  • Become A Partner
  • Partner Policy & Program
  • Global Learning
  • Partner Sales Resources
  • Partner Business Management
  • Service Business
All Partners
  • Profile
  • News & Events
  • Online Exhibition Center
  • Contact Us
All About Us