User Manual Part 3

Forensics Tab
SpectraGuard® Enterprise User Guide
159
Forensics Tab
Forensics: Panel for Threat Forensics
The Forensics screen enables you to drill down into forensic data about wireless threats detected in the network. The
system captures important details about the detected threats and presents them in a human-readable format. You can
review details such as device identities and configurations, connection records, device locations, system responses,
and administrator actions about the detected wireless threats using this tab.
Note: The Forensics Tab is not visible if WIDS license is applied.
Forensics Screen
You can open the Forensics screen by selecting the Forensics tab on the navigation bar.
Forensics Screen
The Forensics screen includes two panes.
On the left, the Location tree.
On the right, the Forensics tab: Time Filter, Threats List, and Pie Charts showing the AP and Client-Related Instances
in graphical form.
Forensics: Location Tree
The Location tree shows the complete list of locations created for your WLAN in the system. To view a list of wireless
threats, select a location in the Location tree, and a list of threats appears for the selected location and its child
locations.
Forensics: Time Filter, Threat List, and Pie charts
This pane shows:
Path of the selected location.
List of threats that have occurred at that location
Graphical representation of AP and Client threats as pie chart