Skip to content

The Events window

wiki auto updater edited this page Feb 6, 2023 · 5 revisions

It's the window where you can see all the events that the daemon has registered.

It's divided by tabs, where you can search for events based on the type: nodes, rules, hosts, applications, etc.

The Events tab

This is the main log of all the connections that the daemon has intercepted. You can filter connections by action applied, word or limit the number of entries displayed. You can also sort connections by columns.

image

Note: There're some columns that are clickable, that will open the detail view of the item clicked.

For example: double click on a Node to open all the connections of that node:

image

Others columns that are clickable: Process, Rule

image

Note: The size of the columns is saved when closing the GUI, and restored whe you open it again.

The Rules tab

Here you can see all the rules you have defined. Double clicking on a rule will open the details for that view.

You can also perform operations over the rules, one by one or in batch, by right-clicking over a rule:

image

Clone this wiki locally