Fortinet black logo

Fortiview

23.4.0
Copy Link
Copy Doc ID ce71c0e4-7759-11ee-a142-fa163e15d75b:692587
Download PDF

Fortiview

The default Fortiview page is the summary view, which uses widgets to show a general overview of what is happening with your device. You can add new widgets by selecting Add Widget.

Each widget is a customizable box, showing certain information about the device. You can do the following with widgets:

  • Click a widget title and drag it to move it around.
  • Delete a widget by selecting the X icon.

The following lists all widget types, grouped according to function:

Threats

Widget

Description

Feature required to be enabled on device

Top Applications By Threat Score

Compares which applications have the most traffic compared to their threat score, based on the device's Application Control settings.

Application Control

Top Attacks

Counts the attacks that the device's IPS most frequently prevents.

IPS

Top DLP By Rules

Counts the DLP events that the device detects, sorted by DLP rule.

DLP

Top Spam

Displays which sources send the most spam email into the network.

AntiSpam

Top Threats

Displays which threats trigger the most detection events on the network.

At least one of the following:

  • IPS
  • Antivirus (AV)
  • AntiSpam
  • DLP
  • Anomaly Detection

Top Virus

Counts the viruses that the device's AV most frequently finds.

AV

Traffic Analysis

Widget

Description

Feature required to be enabled on device

Bandwidth

Displays utilization per interface in bps.

Top Application Categories

Compares which application categories are most frequently used, based on the device's Application Control settings.

Application Control

Top Applications

Compares which applications are most frequently used, based on the device's Application Control settings.

Top Countries

Displays which countries have the most traffic from or to the device.

Top Destinations

Displays which destinations have the most traffic from or to the device.

Top Protocols

Compares the traffic volume that has passed through a certain interface, based on which protocol it uses:

  • HTTP
  • HTTPS
  • DNS
  • TCP
  • UDP
  • Other

Top Sources

Displays which sources have the most traffic from or to the device.

Traffic History

Displays volume of incoming and outgoing traffic over time.

Web sites

Widget

Description

Feature required to be enabled on device

Top Users/IP by Browsing Time In Seconds

Compares which users visit which IP addresses most frequently in the greatest ratio. You can click a user to see which IP addresses they visit.

Web Filtering

Top Web Categories

Compares which web filtering categories are most frequently used, based on the device's Web Filtering settings.

Top Websites

Compares which websites are most frequently visited. You can click a category to see which websites in that category are being visited.

DNS

Widget

Description

Feature required to be enabled on device

High Risk Sources

Displays which high risk sources were visited.

Queried Botnet C-and-C Domains

Displays which botnet C-and-C domains were queried.

Top Domain Lookup Failures

Displays domains with highest number of lookup failures.

Top Queried Domain

Compares which domains are most frequently queried.

Fortiview offers log information, reformatted into easily navigable charts, in a style similar to FortiView in FortiOS.

You can select a time period to view data for:

  • Last 60 minutes
  • Last 24 hours
  • Last 7 days

Fortiview

The default Fortiview page is the summary view, which uses widgets to show a general overview of what is happening with your device. You can add new widgets by selecting Add Widget.

Each widget is a customizable box, showing certain information about the device. You can do the following with widgets:

  • Click a widget title and drag it to move it around.
  • Delete a widget by selecting the X icon.

The following lists all widget types, grouped according to function:

Threats

Widget

Description

Feature required to be enabled on device

Top Applications By Threat Score

Compares which applications have the most traffic compared to their threat score, based on the device's Application Control settings.

Application Control

Top Attacks

Counts the attacks that the device's IPS most frequently prevents.

IPS

Top DLP By Rules

Counts the DLP events that the device detects, sorted by DLP rule.

DLP

Top Spam

Displays which sources send the most spam email into the network.

AntiSpam

Top Threats

Displays which threats trigger the most detection events on the network.

At least one of the following:

  • IPS
  • Antivirus (AV)
  • AntiSpam
  • DLP
  • Anomaly Detection

Top Virus

Counts the viruses that the device's AV most frequently finds.

AV

Traffic Analysis

Widget

Description

Feature required to be enabled on device

Bandwidth

Displays utilization per interface in bps.

Top Application Categories

Compares which application categories are most frequently used, based on the device's Application Control settings.

Application Control

Top Applications

Compares which applications are most frequently used, based on the device's Application Control settings.

Top Countries

Displays which countries have the most traffic from or to the device.

Top Destinations

Displays which destinations have the most traffic from or to the device.

Top Protocols

Compares the traffic volume that has passed through a certain interface, based on which protocol it uses:

  • HTTP
  • HTTPS
  • DNS
  • TCP
  • UDP
  • Other

Top Sources

Displays which sources have the most traffic from or to the device.

Traffic History

Displays volume of incoming and outgoing traffic over time.

Web sites

Widget

Description

Feature required to be enabled on device

Top Users/IP by Browsing Time In Seconds

Compares which users visit which IP addresses most frequently in the greatest ratio. You can click a user to see which IP addresses they visit.

Web Filtering

Top Web Categories

Compares which web filtering categories are most frequently used, based on the device's Web Filtering settings.

Top Websites

Compares which websites are most frequently visited. You can click a category to see which websites in that category are being visited.

DNS

Widget

Description

Feature required to be enabled on device

High Risk Sources

Displays which high risk sources were visited.

Queried Botnet C-and-C Domains

Displays which botnet C-and-C domains were queried.

Top Domain Lookup Failures

Displays domains with highest number of lookup failures.

Top Queried Domain

Compares which domains are most frequently queried.

Fortiview offers log information, reformatted into easily navigable charts, in a style similar to FortiView in FortiOS.

You can select a time period to view data for:

  • Last 60 minutes
  • Last 24 hours
  • Last 7 days