report
[Report] View
1. System Performance
System performance is a feature that allows for the visual monitoring of the overall performance metrics of the SHIELDEX system.
This screen provides the usage status of key resources such as CPU, memory, disk usage, and network transmission and reception amounts in average values and graphs.
Through this, administrators can quickly grasp the resource load status of the system and detect performance anomalies early.
⚠️ This menu appears when logged in with the "Super Administrator" account.
Administrator permission settings can be done in [Administrator] > [Administrator List].
Query Conditions
- Query Unit Time: Selectable for viewing in units of 10 minutes / 1 hour / 1 day
- Query Time Zone: You can select the start and end times of the time zone you want to query.
- Inquiry Date: You can set the start date and end date to filter by period.
ⓘ All retrieved data is calculated and displayed as an average based on the selected time unit.
System Performance Average Statistics
The average usage rate of system resources during the queried period is provided in the form of a summary card:
- CPU usage: Average CPU Usage of the System (%)
- Memory Usage Rate: Average usage (%) compared to total memory
- Disk Usage: Average usage rate of storage devices (C drive, E drive, etc.) (%)
ⓘ Each item is displayed as a percentage (%), and the higher the usage, the more it is considered a burden on the resources.
Network Traffic Statistics
The network usage of the system is displayed in the following two items:
- Network Reception Volume: Total data volume received from external sources during the queried period (MB)
- Network Transmission Volume: Total data volume transmitted externally during the queried period (MB)
System Performance Overview Chart
- Chart Configuration:
- X-axis: Selected time interval (e.g., 10-minute interval)
- Y-axis: Usage and Transmission Volume by Performance Metric
- Indicator Display Item:
- CPU (%)
- MEMORY (%)
- DISK (C:, E:)
- Network Reception (MB)
- Network Transmission Volume (MB)
- You can check detailed figures for each point in time when hovering the mouse over.
- You can explore the chart in detail using the zoom/move feature in the upper right corner.
- You can download the visualization chart by clicking the menu bar icon. (SVG, PNG, CSV)
Report Utilization Guide
- Check System Resource Load: If the CPU or memory usage is consistently high, you should check for excessive service usage or the possibility of errors.
- Disk Space Monitoring: It may be time to clean up logs/files when there is a sudden increase in disk usage.
- Network Traffic Anomaly Detection: Sudden fluctuations in transmission volume can be analyzed as potential malicious activity detection or signs of service anomalies.
2. Inflow and Processing - Comprehensive Statistics
The inflow and processing statistics provide a statistical analysis of the processing results of files received through the SHIELDEX CDR system, and you can set the inquiry period in the upper right corner to view the statistics.
This feature is utilized for the following purposes:
- Check CDR Result Distribution (Success/Exception/Blocked)
- Traffic Timing, Statistics Analysis by File Extension
- Understanding the Inflow and Blocking Status by Integrated System
⚠️ This menu is displayed when logged in with a “Super Administrator” account to access a specific integration system page, or when logged in with an “Integration System Administrator” account.
Administrator permission settings can be done in [Administrator] > [Administrator List].
CDR Result Statistics and Status of Incoming Files
Distinguish the CDR processing results compared to the total number of incoming files in the form of a pie chart and summary list:
- success: Decontamination (CDR) processing completed and reconstructed file
- exception: Exceptionally imported original files according to policy settings
- Block: Files blocked from entry by security policy
ⓘ Each processing result can be checked in detail by clicking the “View Details >” button.
Overall Inflow Statistics by Period (Inflow Increase)
- Bar ChartVisualize the number of incoming files by date.
- It is useful for detecting whether there is an increase in inflow on a specific date and for detecting abnormal inflows.
Traffic Statistics by Extension
- Distribution of file extensions for files imported during the queried periodBar Graphis expressed as.
- By analyzing the file flow by major extensions, it is possible to identify usage patterns.
3. Inflow and Processing - Statistics by Integrated System
The statistics tab by integration system is a screen designed to aggregate and compare the inflow, import, and blocking results of files based on various integration systems within the organization.
You can analyze the application results of the decontamination security policy for each linked system and comprehensively evaluate the operational status.
⚠️ This menu is displayed when logged in with the "Super Administrator" account and accessing a specific integration system page.
Administrator permission settings can be done in [Administrator] > [Administrator List].
Integration System Statistics Status
Bar Cumulative ChartVisualizes the processing results of files imported from each integrated system through __PH_0__.
| division | Explanation |
|---|---|
| Inbound Count | Total number of files imported through the linked system during the selected period |
| Import Count | Number of files imported into the system after CDR success or exception handling |
| Blocked Count | Number of files not imported due to policy restrictions |
Status of Inflow Blocking by Integrated System
For each integration systemThe reason why the file was blockedA table is provided that shows in detail.
ⓘ Encrypted files, unsupported extensions, tampered extensions, and various other blocking reasons may appear in this item.
If the blocking reason is repeated, it is necessary to review the security policy settings of the corresponding integrated system.
4. Content Risk Statistics
Content risk statistics is a statistical screen that classifies the security risk levels of various content elements included in the incoming files by grade.
The administrator can check what types of threat elements are being introduced and how much through this screen, and can use it as reference material for policy settings or exception handling.
⚠️ This menu is displayed when logged in with a “Super Administrator” account to access a specific integration system page, or when logged in with an “Integration System Administrator” account.
Administrator permission settings can be done in [Administrator] > [Administrator List].
Risk Level Statistics and Status
- Risk Level Classification: The content is classified into the following 6 levels of risk based on the analysis results.
| safety | There are no suspected risk factor contents. |
| doubt | This is the case when it includes objects and hyperlinks. |
| Warning | This is the case when macros and ActiveX are included. |
| danger | This is the case when elements that allow external data connections are included. |
| serious | This is the case when it contains identifiable content (such as viruses). |
| Tampering | This is the case where the format and the extension do not match. |
- Visualization Configuration:
- Intuitively display the ratio of each risk level with a pie chart
- Display representative content items and counts in card format by grade
- You can check the detailed list of related file neutralization processing when you click "View Details".
Overall Content Element Inflow Statistics
- Bar Graph: Visually displays the number of detections by threat factor within the query period.
- Data Table: You can check the risk level, number of cases, and ratio for each content item.
- Main Content Items
- macro
- External Dynamic Data Exchange (DDE) Link
- ActiveX
- virus
- hyperlink
- Extension Forgery
- OLE Object
- File Size Change
- External Link
- PDF Object
- PDF JavaScript
- PDF Action
- PDF Annotations
- PDF Embedded File
ⓘ You can compare the risk levels and the mapped content types at a glance to see which threat factors are coming in frequently.