Introduction to the User Interface

In Active Views, you may see Create Active View and Event Query. You may navigate to these functions from:

    • The Active View menu in the Menu Bar

 

image\ebx_163755889.gif

    • When you create a filter, The Active View menu has these additional options.

image\ebx_358359759.gif

    • The Navigation Tree in the Navigation Pane

 

image\ebx_-689171209.gif

 

    • The Toolbar Buttons

 

image\ebx_365291917.gif

 

Active Views provides two types of views which display the events in Tables and Graphs.

Table Format displays the variables of the events as columns in a table. You can sort the information in the grid by clicking on the column name.

image\ebx_-1011843525.gif

Graphical Format displays events as Graphs. You can change the chart types to display other chart types.

image\ebx_1692229502.gif

A near Real Time Event Table with graphical presentation and Snapshot are the two types of Active Views.

image\ebx_-975797273.gif

In the event when there are more than 750 per 30-second time period, a red separation line will appear indicating that there are more events than what is displayed.

image\ebx_-14823591.gif

The following is what makes an Active View unique.

The Active Views Tab allows you to:

      • Reconfigure Total Display Time

      • Add Events to an incident

      • Close a Snapshot or Visual Navigator Window

      • Create an Incident

      • Custom Menu Options with Events

      • Delete a Snapshot or a Visual Navigator Window

      • Investigate Event Query

      • Investigate Graph Map

      • View Advisor Data

      • Manage Columns

      • Send messages about Events by e mail

      • Show or Hide Event Details

      • Snapshot of a Visual Navigator Window

      • View Events that triggered a correlated event

      • View Vulnerability Visualization

      • View Asset Data

      • Ticketing System Integration

You can change values (column names) to display logical names and have it populate throughout the system. You can apply attributes to the event stream that are relevant to your business. For more information, refer to Sentinel Data Manager in Sentinel User's Guide and the Collector Builder User's Guide.