User guide
Chapter 15: Generating Reports of Network Activity
214 WatchGuard Firebox System
Session Summary – Proxied Traffic
A table, and optionally a graph, of the top incoming and outgoing
sessions, sorted either by byte count or number of connections.
The format of the session is: client -> server : service. If the
connection is proxied, the service is represented in all capital
letters. If the connection is packet filtered, Historical Reports
attempts to resolve the server port to a table to represent the
service name. If resolution fails, Historical Reports displays the
port number.
HTTP Summary
Tables, and optionally a graph, of the most popular external
domains and hosts accessed using the HTTP proxy, sorted by byte
count or number of connections.
HTTP Detail
Tables for incoming and outgoing HTTP traffic, sorted by time
stamp. The fields are Date, Time, Client, URL Request, and Bytes
Transferred.
SMTP Summary
A table, and optionally a graph, of the most popular incoming and
outgoing email addresses, sorted by byte count or number of
connections.
SMTP Detail
A table of incoming and outgoing SMTP proxy traffic, sorted by
time stamp. The fields are: Date, Time, Sender, Recipient(s), and
Bytes Transferred.
FTP Detail
Tables for incoming and outgoing FTP traffic, sorted by time
stamp. The fields are Date, Time, Client, Server, FTP Request, and
Bandwidth.
Denied Outgoing Packet Detail
A list of denied outgoing packets, sorted by time. The fields are
Date, Time, Type, Client, Client Port, Server, Server Port, Protocol,
and Duration.