Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.
Table of Contents
minLevel2
maxLevel2
typeflat

...

Purpose

This Activeboard allows you to monitor Devo Web Activity of all users in your Devo domain. It gives you a high-level audit about:

  • Users: login, location, activity, change of role, etc.

  • Alerts: changes in the alerts.

  • Others: Relay, Lookups, Aggregation tasks, Synthesis Tables, and Reinjection

...

Pre-requisites

To use the Devo Web Activity Monitoring Activeboard, you must have the following data sources available on your domain:

...

  • activity

...

siem.logtrust.web.navigation

Open Devo Web Activity Monitoring

Once you have installed the application, you can access the Activeboard in the following ways:

Go to Exchange in the navigation pane and look for the Activeboard you want to open. Click Open.

Image Removed

...

Info

Know more about Activeboards

Refer to Manage and filter Activeboards article to know how to work with Activeboards.

Exploring the Activeboard

When opening the Devo Web Activity Monitoring Activeboard, the following info displays:

...

Note

Load data takes too long

Sometimes some widgets take time to upload the data, it is possible to speed up the process by creating aggregation tasks. Refer to Aggregation tasks article to learn how to do it.

The Activeboard is divided into 9 sections:

...

Global filters

...

User audit

...

Alerts audit

...

Relay audit

...

...

Aggregation task audit

...

Synthesis audit

...

Finders audit

...

Reinjections audit

Expand
title

...

Global filters

...

Included widgets

Global

...

filters

...

Widget

...

Details

Filter by User

...

: Select input

Filter by Company: Select input

User audit

...

Widget

...

Details

...

Logins

...

User Location

...

...

Logins by Location

...

...

Logins by Credentials

...

...

Activities

...

...

User Activity

...

Logins: Column chart widget

Activities: Voronoi widget

Global changes in IDP Role Mapping: Table widget

User Location: Heatmap widget

User Activity: Voronoi widget

Filter for users actions: Select input

Logins by Location: Table widget

Filter for changes on roles/IDP mapping

...

: Select input

Users Actions: Table widget

Logins by Credentials: Table widget

Global changes in roles

...

...

Global changes in IDP Role Mapping

...

...

Filter for users actions

...

...

Users Actions

Alerts audit

...

Widget

...

Details

...

: Table widget

Alerts audit

Filter action for alerts audit widgets

...

: Select input

Changes in Alerts

...

: Table widget

Changes in Alerts

...

by UserEmail: Line chart widget

Changes in Alerts Timeline by

...

Relay Audit

...

Widget

...

Details

...

User: Column chart widget

Relay audit

Changes in Relay Timeline by User: Column chart widget

...

Global changes in the relays

...

: Table widget

Rule changes in the relays

...

Lookup audit

...

: Table widget

Lookup

...

audit

...

Widget

...

Details

Filter action for lookup audit

...

: Select input

Lookups Actions: Table widget

Lookups Changed Summary: Pie chart widget

Changes in Lookup Timeline by User

...

...

Lookups Actions

...

...

Lookups Changed Summary

Aggregation task audit

...

Widget

...

Details

...

: Column chart widget

Aggregation task audit

Filter action for aggregation task audit: Select input

...

Aggregation Task

...

: Column chart widget

Aggegation Task Actions: Table widget

Synthesis

...

Widget

...

Details

...

audit

Filter action for synthesis table audit

...

...

Changes in Synthesis Tables Timeline by User

...

: Select input

Synthesis tables user action: Table widget

...

Synthesis tables action

...

Finders audit

...

Widget

...

Details

...

: Voronoi widget

Changes in Synthesis Tables Timeline by User: Column chart widget

Finders audit

Filter action for finders audit

...

...

Finder actions timeline

...

: Select input

Finders user action

...

: Table widget

Finders actions

...

Reinjections audit

...

Widgets

...

Details

...

: Voronoi widget

Finder actions timeline: Column chart widget

Reinjection audit

Filter action for reinjections audit

...

...

Reinjections actions timeline

...

...

Reinjections user action

...

...

: Select input

Reinjections user action: Table widget

Reinjections action: Voronoi widget

Reinjections actions timeline: Column chart widget

Prerequisites

To use thisActiveboard, you must have the following data sources available on your domain:

Open Activeboard

Once you have installed the Activeboard, you can use the Open button at the top right of the card in Exchange to access it and see the different widgets populated with the relevant data. You can also access the Activeboard area via the Navigation pane.

...

Info

Data loading takes too long?

Sometimes some widgets take time to upload the data, it is possible to speed up the process by creating aggregation tasks. Refer to the Aggregation tasks article to learn how to do it.

Use Activeboard

After installing and opening the Activeboard, you can use its widgets to visualize and monitor data. To do this, each widget offers a variety of customization and visualization options. Refer to Using widgets and Using inputs to know them all.