Fortinet Document Library

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:

Version:


Table of Contents

Administration Guide

Viewing FortiSoC dashboards

FortiSoC includes multiple dashboards for viewing information about playbooks, incidents, and events.

Playbooks

The Playbooks dashboard includes:

Total Playbooks Executed The total number of playbooks executed.
Total Playbook Actions Executed The total number of playbook actions (tasks) executed.
Playbooks Executed

The number of times each playbook has been run.

Overall Time Saved

The estimated time saved by administrators resulting from FortiSoC automation.

Total Executed Playbooks and Actions

A timeline of the number of playbooks and actions run for each day. Both actions and playbooks can be toggled on or off in the graph by clicking the corresponding name below the graph.

Incidents

The Incidents dashboard includes:

Total Incidents

Displays the total number of incidents created by their status.

Unsolved Incidents Displays the total number of unsolved (not closed) incidents by severity.
Incidents Timeline Total incidents breakdown by category trend by day.

Events

The Events dashboard includes:

Total Events Generated/Mitigated/Unhandled The total number of events with the Generated/Mitigated/Unhandled status created by FortiAnalyzer.
Events by Severity The total number of events by severity.
Top Events by Type

Total events breakdown by type.

Top Events by Handler

Total events breakdown by event handler.

Viewing FortiSoC dashboards

FortiSoC includes multiple dashboards for viewing information about playbooks, incidents, and events.

Playbooks

The Playbooks dashboard includes:

Total Playbooks Executed The total number of playbooks executed.
Total Playbook Actions Executed The total number of playbook actions (tasks) executed.
Playbooks Executed

The number of times each playbook has been run.

Overall Time Saved

The estimated time saved by administrators resulting from FortiSoC automation.

Total Executed Playbooks and Actions

A timeline of the number of playbooks and actions run for each day. Both actions and playbooks can be toggled on or off in the graph by clicking the corresponding name below the graph.

Incidents

The Incidents dashboard includes:

Total Incidents

Displays the total number of incidents created by their status.

Unsolved Incidents Displays the total number of unsolved (not closed) incidents by severity.
Incidents Timeline Total incidents breakdown by category trend by day.

Events

The Events dashboard includes:

Total Events Generated/Mitigated/Unhandled The total number of events with the Generated/Mitigated/Unhandled status created by FortiAnalyzer.
Events by Severity The total number of events by severity.
Top Events by Type

Total events breakdown by type.

Top Events by Handler

Total events breakdown by event handler.