Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

Snare Central employs an interactive application interface, employing drag and drop, popup dialogs, and dynamically updating data.  The Snare Central interface is generally divided into four 'panels', as shown in false-colour, in the image below.

Info

Image Modified


The 'green' panel provides buttons for performing common functions and switching between the different navigation menus. Some of these buttons are greyed out when they are not available for use for the current objective.  These buttons are, in order left to right:

...

Over to the right-hand side of the area, the amount of time that the server has been running without reboot will also be displayed, and if the Snare Central Health Checker needs to inform you of an issue that requires your attention, an animated notification icon may also be displayed.  This icon may be clicked on for further information.

The 'yellow' panel is where objectives are actually displayed. When you select an objective from the 'blue' panel, this panel updates to show you the objective.
Many objectives display portions of the objective results in 'tabs' at the top of the page. These can be individually clicked to scan through the results. The type and function of these components is objective dependent, but will often include:

  • A 'pattern map', which shows volumes of events, divided up into 15 minute segments for the reporting period.
  • Tabular details, which displays a configurable proportion of the results.
  • Various line graphs, bar graphs, port-maps, geolocation maps, or pie graphs.
Info

Image Modified


Info

Image Added

 Image Removed

Many objectives will also have interactive components that can be clicked to:

...