understand_data_views

Understanding Data Views

A data view is a table consisting of clusters of related data cells. Data views provide the foundation on which users perform Ad Hoc Queries to the Control Manager database.

Control Manager 5.5 allows direct queries to the Control Manager database. Data views are available to Control Manager 5 report templates and to Ad Hoc Query requests.

Data views are tables filled with information. Each heading in a data view acts as a column in a table. For example, the Virus/Malware Action/Result Summary data view has the following headings:

As a table, a data view takes the following form with potential subheadings under each heading:

Sample Data View

Action Result

Action Taken

Unique Endpoints

Unique Sources

Detections

 

 

 

 

 

This information is important to remember when specifying how data displays in a report template.

Control Manager separates data views into two major categories: Product Information and Security Threat Information. See Understanding Data Views for more information about data views. The major categories separate further into several subcategories, with the subcategories separated into summary information and detailed information.

Product Information data views provide information about Control Manager, managed products, components, and product licenses.

Product Information Data Views

Category

Description

Control Manager Infor­mation

Displays information about Control Manager user access, Command Tracking information, and Control Manager server events.

Managed Product Information

Displays status, detailed, and summary information about managed products or managed product end­points.

Component Informa­tion

Displays status, detailed, and summary information about out of date and up to date and component deployment of managed product components.

License Information

Displays status, detailed, and summary information about Control Manager and managed product license information.

Displays information about security threats that managed products detect: viruses, spyware/grayware, phishing sites, and more.

Security Threat Information Data Views

Category

Description

Overall Threat Infor­mation

Displays summary and statistical data about the overall threat landscape of your network.

Virus/Malware Infor­mation

Displays summary and detailed data about mal­ware/viruses that managed products detect on your network.

Spyware/Grayware Information

Displays summary and detailed data about spy­ware/grayware that managed products detect on your network.

Content Violation Information

Displays summary and detailed data about prohibited content that managed products detect on your network.

Spam Violation Infor­mation

Displays summary and detailed data about spam that managed products detect on your network.

Web Violation Infor­mation

Displays summary and detailed data about Internet vio­lations that managed products detect on your network.

Policy/Rule Violation Information

Displays summary and detailed data about policy/rule violations that managed products detect on your net­work.

Suspicious Threat Information

Displays summary and detailed data about suspicious activity that managed products detect on your network.

See also:

Using Logs

Understanding Log Aggregation

Querying Log Data

Performing an Ad Hoc Query

Working With Saved and Shared Ad Hoc Queries

Editing Saved Ad Hoc Queries

Working With Shared Ad Hoc Queries

Deleting Logs