Real Time Alert Stabber
The real time alert stabber is designed to be the central place for viewing IDS alerts. The idea is to explore alert activity from various angles using animation and an interactive UI.
- Alerts activity over a period of time β say the past day
- Types & Priorities of alerts
- Individual alerts as they come in with details of endpoints
- Aggregated alert activity over the period of time
- Allow pivoting of view from alert signature, end points, priority, and classification
The bubbles are interactive β you can click on any of them to access various options. In keeping with overall Trisul philosophy you can pull up flows and packets for any alert.