Skip to main content

Interact with the Cyber Shield Top 10 Dashboard

Abstract

The Top 10 Dashboard on the Cyber Shield Overview page provides a bubble chart of the top 10 content categories and threat categories based on the volume of Domain Filtering and Traffic Filtering events.

The Top 10 Dashboard on the Cyber Shield Overview page provides a bubble chart of the top 10 content categories and threat categories based on the volume of Domain Filtering and Traffic Filtering events. To learn more about the content and threat categories, refer to Traffic Filtering Priorities, Categories, and Protection Levels and Domain Filtering Protection Levels and Content Categories

It provides data for different time durations in tabular form and the interactive bubble chart. You can interact with the bubble chart to drill-down and investigate the source of the event, refer to Investigate using Cyber Shield Top 10 Dashboard. You can also download the displayed data as a CSV file or get a detailed report of the domain filtering events. Refer to Get reports from the Cyber Shield Top 10 Dashboard

View the top 10 content categories for observed and blocked domains

To view the top 10 content categories for observed and blocked domains, follow the steps below:

Note

If you have set Domain Filtering to block all content categories, the metrics for the observed and blocked domains will be the same.

  1. Select the desired timeframe from the time duration drop-down. The choices are This hour, Last 24 Hours, Last 7 Days, and Last 30 Days.

  2. Click on the desired Observed domains or Blocked domains tab from the four tabs that appear on the chart.

    Based on the number of events in each, the bubble chart will show the top 10 categories out of the 43 content categories.

    The category with the most events will be in the center bubble, and the others will be arranged based on the number of events in descending order in the clockwise direction.

    A key matching the category name to the outline color of the bubbles will appear on the right.

View the top 10 threat categories or priorities for observed and blocked traffic

To view the top 10 threat categories or priorities for observed and blocked traffic, follow the steps below:

Note

If you have set Traffic Filtering to block all threat categories or all threat priorities, the metrics for both the observed and blocked traffic will be the same.

  1. Select the desired timeframe from the time duration drop-down. The choices are This hour, Last 24 Hours, Last 7 Days, and Last 30 Days.

  2. Click on the desired Observed traffic or Blocked traffic tab from the four tabs on top of the chart. The Category view is selected by default.

    The bubble chart will show all the threat categories and the number of events in each.

    The category with the most events will be in the center bubble, and the others will be arranged based on the number of events in descending order in the clockwise direction.

    A key matching the category name to the outline color of the bubbles will appear on the right.

  3. Click Priority instead of the selected Category in the top right corner above the graph.

    The bubble chart will show the events per threat priority: Critical, High, and Medium.

Filter the top 10 bubble chart

To filter and select specific bubbles in the displayed bubble chart, follow the steps below:

  1. Click on the item from the list in the chart key you want displayed.

    The chart shows only the bubble corresponding to the item clicked on in the chart key.

    All the other items are greyed out, and Reset appears at the bottom of the key.

  2. Click on the greyed-out key items to select more corresponding bubbles to display.

    The key item will be colored, and the corresponding bubble will be displayed in the chart.

  3. To remove a displayed bubble from the graph, click on the corresponding colored key item.

    The key item will become grey, and the corresponding bubble will disappear from the chart.

  4. Click on Reset to deactivate the filter.

Interact with the dashboard data using a table view

While the bubble chart shows just the top 10, more data can be seen using the table view. To use the table view, follow the steps below:

  1. Based on the graph view selected, you will see in the bottom left corner of the Top 10 Dashboard section one of the hyperlinked texts below:

    • Observed domains by categories

    • Blocked domains by categories

    • Observed traffic by categories

    • Observed traffic by priorities

    • Blocked traffic by categories

    • Blocked traffic by priorities

  2. Click on the hyperlinked text.

    You will see a table view of the data presented in the bubble chart. The table has Name, Percentage, and Count as columns. The rows are sorted in descending order based on Count.

    A search search_icon.png icon is present at the top right.

    A button to export the data as a CSV file is also present. Refer to Get reports from the Cyber Shield Top 10 Dashboard

    Note

    The observed and blocked domain table shows all the content categories with events and can exceed the top 10 displayed categories.

  3. Click on the table's column headings to sort the data as desired.

  4. Click on the search search_icon.png icon and enter a keyword to find matching table rows.

Tutorial showing the interaction with the Top 10 Dashboard