User's Guide

Table Of Contents
Options
91 of 218
View
By default, the table displays the latest flows collected. Use the View menu to select
different display options. The available options vary depending the flow type
(bidirectional or unidirectional) selected.
l Latest Displays the latest flows collected by the specified engine.
l Worst Network Response Times Sorts the flows based on the worst TCP
response time and displays the flows with the worst time at the top of the
chart.
l Worst Application Response Times Sorts the flows based on the worst
application response time and displays the flows with the worst time at the top
of the chart.
l Show Flows After Allows you to select a start date and time for the flows
displayed.
l Show All Show all flows.
l Show Classified Show only flows classified by an application fingerprint.
l Show Unclassified Show only flows not classified by an application
fingerprint.
l Show Unclassified Web Traffic Show only web traffic that has not been
classified by an application fingerprint.
Application Group
Use the Application Group menu to filter the table by application group.
Search
Use the Search field at the top right of the table to filter specific flow information.
For example, searching on "snmp" or "10.20.30.131/24" filters the table so only flow
data related to SNMP or the given subnet is displayed. You can enter one or more
filters simultaneously, separated by semicolons. Individual components of a filter is
separated by commas. For complete instructions on how to use the Flow Search,
rest your cursor on the Search field and read the tooltip (select on the "more" link in
the tooltip). Press the Reset button at the bottom left of the window to clear the
Search results and refresh the table.
You can also use the Search field to search for a specific application, user
name, or IP address from your filtered results:
1. Select a user name or IP address from the filtered search results to launch
PortView, which provides a detailed topology context for the user.