Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Roy_Smith
Collaborator
Jump to solution

Drill Down Views

Hi

How do I create a "Drill Down" view in R80.10? In some of the default views, you can drill down and it loads another view, rather than just the logs view. How do I add this fuctionality to my own custom views? Or is this a feature that is locked by Check Point.

Thanks

Roy 

0 Kudos
1 Solution

Accepted Solutions
Amir_Senn
Employee
Employee

Hi,

Tell me if this flow is what you intended:

1.PNG2.PNG3.PNG

Drill down seems to work in my lab. Make sure you exit edit mode when trying to drill down.

If you edited the widget too much you can always return to default for this view and edit the same way I did: Go to settings, edit User and change it to Source. There could be a difference to edit or to remove and add another field in a statistical table.

Kind regards, Amir Senn

View solution in original post

(1)
6 Replies
PhoneBoy
Admin
Admin

Can you provide a concrete example?

0 Kudos
victorstorex
Explorer
Explorer

Hello! I have the same problem. I'll describe the details.
I need to change the source type in the "view" Access Control.
In the original report, the source is "User".
I cloned the "Access Control" report and changed the source in the "Top Users by traffic" section.
Instead of "User" I specified "Source".
After this "Drill Down" does not work. I compared the parameters of my reports - they are identical except for the source.
I need these changes and the new “view” to view all sources by IP addresses, since not all PCs are in the Active directory domain. Local PC users are not identified and this is normal behavior.
Can you give us a recommendation in this matter?
Thank you

0 Kudos
PhoneBoy
Admin
Admin

Version/JHF?
Do the rules involve create sessions?
They would need to involve App Control/URL Filtering or be explicitly set to log by Session (instead of by Connection).
Screenshots of relevant configurations (with sensitive details redacted) would help.

0 Kudos
victorstorex
Explorer
Explorer

Hello
My management server version is R81.10 Jumbo Hotfix Take 110.
Application control/URL filtering layer entry rules are configured to:
-Log entry level is “Detailed”.
-Accounting
-Peer Connection and peer Session
In the logs I can see that the traffic is going through according to my Application Control/URL Filtering rule.
But "Views". User Access Control displays "Drill Down Views", but Source IP Access Control does not display "Drill Down Views".
Thank you.

0 Kudos
Amir_Senn
Employee
Employee

Hi,

Tell me if this flow is what you intended:

1.PNG2.PNG3.PNG

Drill down seems to work in my lab. Make sure you exit edit mode when trying to drill down.

If you edited the widget too much you can always return to default for this view and edit the same way I did: Go to settings, edit User and change it to Source. There could be a difference to edit or to remove and add another field in a statistical table.

Kind regards, Amir Senn
(1)
victorstorex
Explorer
Explorer

Hi
Thanks for your answer Amir Senn!
You gave me a good idea for a solution.
I deleted my new "View"
I cloned it from the original one and changed the fields from Users to Source.
Moreover, after deleting Users, I saved the report and only then added “Source”.
Perhaps I had a lot of edits to the report and that was the source of the problem.
Problem solved.
Thank you!

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events