Analytics page

Prev Next

Use this page to configure the DLP Incident Manager Analytics page.

Option definitions for the Present drop-down list

Option

Definition

Data-in-use/motion

Describes Trellix DLP Endpoint, Trellix Device Control, Trellix DLP Network Monitor, or Trellix DLP Network Prevent data.

Data-at-rest (Endpoint)

Describes Trellix DLP Endpoint discover data

Data-at-rest (Network)

Describes Trellix DLP Discover data



Note

Only options for installed software are displayed.

Option definitions for data-in use/motion and data at rest (endpoint)

Option

Definition

Filters

Ruleset

Drop-down list to select a single rule set.

Incident type

Drop-down list to select a single incident type.

User

Text box to display a user. Selection is made from the list displayed by clicking the GUID-48F0BA2A-5E0A-4652-AB28-768626FD7198-low.gif button.

Time Occurred

Drop-down list to filter by time interval.

Destinations (Data in-use/motion only)

Text box to display a destination. Selection is made from the list displayed by clicking the GUID-48F0BA2A-5E0A-4652-AB28-768626FD7198-low.gif button.

Classifications

Drop-down list to filter by a classification.



Option definitions for data at rest (network)

Option

Definition

Filters

Ruleset

Drop-down list to select a single rule set.

Classifications

Drop-down list to filter by a classification.

Repositories

Text box to display a repository. Selection is made from the list displayed by clicking the GUID-48F0BA2A-5E0A-4652-AB28-768626FD7198-low.gif button.

Server Time

Drop-down list to select the time interval.

Container

Text box to display a container. Selection is made from the list displayed by clicking the GUID-48F0BA2A-5E0A-4652-AB28-768626FD7198-low.gif button.

Repository type

Drop-down list to select a single repository type.