Monitor analysis results on the dashboard

Prev Next

The dashboard shows the number and types of files submitted for analysis, total alerts, cluster status, and subscription details for the selected date range.

  1. Go to https://appliance in the browser, where appliance is the IP address or hostname of the appliance. For example, if the configured IP address of the appliance is 10.1.0.1, enter https://10.1.0.1.

  2. Enter your credentials and click Login. The IVX Server dashboard is displayed.

    Note

    The IVX Server UI is accessible only through the Broker node.

  3. On the dashboard, the following widgets are displayed with submission details based on the selected date range.

    Widget

    Description

    Total Alerts

    The number of malicious and non-malicious files. Click MORE INFO to open the Alerts page.

    Note

    When you navigate to Submissions or Alerts, the date range automatically resets to the default of 2 days, irrespective of the date range you have selected on the dashboard.

    Submissions

    The total number of files submitted for analysis in the last 90 days. Click MORE INFO to open the Submissions page where you can view details about each file.

    The files displayed on the Submissions page depends on the number of days (retention period) you have configured for the artifacts to be available in the list.

    • Malicious files are retained for up to 30 days.

    • Non-malicious files are retained for 2 days by default, but are available for up to 15 days.

    Cluster Stats

    The cluster details such as the cluster status, name, the number of nodes connected to the cluster.

    File Type Distribution

    The number of files submitted for analysis by type. Use the toggle to switch between all files or only malicious files. Turn on "All" to view both malicious and non-malicious file types. Click the file type to view malicious files on the Alerts page.

    Recent Submissions

    The total submissions each month and the number of malicious submissions among them. Hover over the graph to view the exact number.

    Top Signature Hits

    The name of the threat group behind a malicious attack. Click on a bar chart to open the alerts page for that signature type.

    Submission Stats

    The number of submissions that are malicious or non-malicious.

    Latest Alerts

    The most recently submitted alerts, and whether they are malicious or non-malicious. Click the UUID to open the Alerts page, which provides detailed information about the malicious file.