This widget displays a summary of the most recently affected endpoints, based on the enabled monitoring rules. To manage monitoring rules, go to Monitoring > Monitoring Setting.
The widget displays the following details:
Column Name |
Description |
---|---|
Host Name |
The host name of the endpoint |
Hit Counts |
The number of matching rules triggered on the endpoint |
Rule Category |
Category of the most recent rules matched on the endpoint. These categories are based on the six stages of a targeted attack. For details, see Rule Category. |
Detection time |
The date and time when the rule was last triggered in the endpoint |
The default time period is Last 24 hours. Change the time period according to your preference.