Managing Reports (Customer)

PAGE CONTENTS

WebTitan Cloud offers a full suite of reports including behavior, trend and security reports. Go to the Reporting tab where you can:

WebTitan Cloud History

Go to Reporting > History to view details on users browsing activity. The following information is available:

Field

Description

Time

The time WebTitan Cloud processed the request.

User

The user that issued the request. Unauthenticated traffic is listed as 'Anonymous'. See WebTitan Cloud Users for information on user identification.

Destination

The requested domain.

Category

The category that the requested URL was classified under. See Category Descriptions for more information.

Action

The action taken by WebTitan Cloud on this request. This will be either Allowed, Blocked or if a cloud key has been applied, it will show as Bypassed.Using Cloud Keys

External IP

The external IP that the DNS request came from.

Effective Policy

The policy being applied to this user at the time this request was made.

Location

The location name given when the location was created.

By default, history page shows the most recent results for today. You can filter this list by applying one or more filters in the top section of the window:

The following filters can be applied:

Filter

Description

Date

The date and time WebTitan Cloud processed a request. Specify a date by choosing it from the calendar or specify a time range using the slider bar:

Click Set to apply the date filter or Cancel to discard it.

User

The user that issued the request. Unauthenticated traffic this will be listed as 'Anonymous'.

Category

The category that the requested URL was classified under. See Category Descriptions for more information.

Action

The action taken by WebTitan Cloud on this request. This will be either Allowed, Blocked or if a cloud key has been applied, it will show as Bypassed.Using Cloud Keys

External IP

The external IP that the DNS request came from.

Internal IP

The internal IP address of the client that originated the request. This is only available if DNS Proxy or OTG is in use, otherwise you only see the external IP.

Location

The location name given when the location was created.

To update the contents displayed in the History list, click Refresh.

Click Reset Filters to clear all the filters that you have applied.

You can export the displayed results as a .csv file by clicking at the bottom of the results list.

Overview of Reports in WebTitan Cloud

Use the Reports > Reporting tab to generate, view, export and schedule various reports on the traffic through WebTitan Cloud.

To learn how to create a new report, see Generating a Report in WebTitan Cloud.

Additional Report Options

Use the bar under the results window for additional options.

  • To export the displayed report as a PDF report, click Export to PDF.

  • To export the displayed report in CSV format, click Export to CSV.

  • To have the displayed report emailed in either PDF or CSV format, click Email. The Email Report window will display.

  • It may take several minutes to generate a report, so you may want to schedule a report to run periodically and be emailed to a specified email addresses. See How to Schedule a Report for more information.

Generating a Report in WebTitan Cloud

Go to Reporting > Reports and follow the steps below to generate a report in WebTitan Cloud.

  1. Set the report time-frame: Choose between Today, Yesterday, This Week, This Month, Last Month or Custom to apply a custom date range:

  2. Choose your report type. Reference the table below for a description of each type of report and what information each contains.

  3. Your report will automatically display each time you change the report time-frame, report type or report filtering criteria. Use Entries per page below the report results to change the number of results displayed.

    Tip

    Most reports contain a Drill Down column with links to allow you to access detailed records by domain, user, category or URL.

  4. To create and save a filter that can be used for this and subsequent reports, see Creating a Report Filter or to schedule this report to run periodically, see How to Schedule a Report.

Report Type

Description

Browsing Behaviour Reports

Requests by Category

Top Categories with the most requests listing:

  • Category

  • Number of requests

  • Number of distinct domains

  • Bandwidth usage

  • Time Drill down (by Users/Domains/URLs)

  • % of all Requests

  • Requests by Domain

Requests by Location

Top Locations with the most requests listing:

  • Location name

  • Requests by Domain

  • Domain

  • % of all Requests

Requests by Domain

Top Domains with the most requests listing:

  • Domain

  • Number of requests

  • Bandwidth usage

  • Time

  • Drill down (by Users/URLs)

  • % of all Requests

Requests by Policy

Top Policies with the most requests listing:

  • Policy name

  • Number of requests

  • % of all Requests

Requests by Source IP

IPs with the most requests listing:

  • Source IP

  • Number of requests

  • Number of distinct domains

  • Bandwidth usage

  • Time

  • Drill down (by Users/Domains/URLs/Categories)

  • % of all Requests

Blocked Requests by Category

Top categories with the most blocked requests listing:

  • Category

  • Number of requests

  • Number of distinct domains

  • Drill down (by Users/Domains/URLs)

  • % of all Blocked Requests

Blocked Requests by Domain

Top domains with the most blocked requests listing:

  • Domain name

  • Number of requests

  • Drill down (by Users/URLs)

  • % of all Blocked Requests

  • Blocked Requests by Source IP

Blocked Requests by Policy

Top Policies with the most blocked requests listing:

  • Policy name

  • Number of requests

  • % of all Requests

Blocked Requests by Source IP

Source IP addresses with most blocked requests listing:

  • Source IP

  • Number of requests

  • Number of distinct domains

  • Drill down (by Users/Domains/URLs/Categories)

  • % of all Blocked Requests

  • Requests by Hour of Day

Blocked Requests by Location

Top Locations with the most blocked requests listing:

  • Location name

  • Requests by Domain

  • Domain

  • % of all Requests

Trend Reports

Requests by Hour of Day

Request use per hour over 24 hours listing:

  • Hour of day

  • Number of requests for that hour

  • Bandwidth usage for that hour

  • % of all Requests

  • Requests by Date

Requests by Date

Requests for each day in the selected time-frame listing:

  • Date

  • Number of requests for that day

  • Bandwidth usage for that day

  • % of all Requests

Security Reports

Malware Infected Clients

Source IP addresses from which requests were made to known spyware sites listing:

  • Source IP

  • Number of requests

  • Number of distinct domains

  • Drill down (by Users/Domains/URLs)

  • % of all Requests

Malware Infected Domains

Domains of known spyware sites for which requests were made listing:

  • Domain

  • Number of requests

  • Drill down (by Users/URLs)

  • % of all Requests

Blocked Phishing Sites by Source IP

Top IP addresses with most requests to phishing sites listing:

  • Source IP

  • Number of requests

  • Number of distinct domains

  • Drill down (by Users/Domains/URLs)

  • % of all Phishing Requests

Blocked Phishing Sites by Domain

Top domains receiving most requests that were classified as phishing sites listing:

  • Domains

  • Number of requests

  • Number of distinct domains

  • Drill down (by Users/URLs)

  • % of all Phishing Requests

Using Report Filters in WebTitan Cloud

Go to Reporting > Reports > 3 Choose Report Filter and follow the steps below to create a report filter that can be saved and used again.

  1. Click the down arrow beside 'No Filter' and the filter window displays. Any previously saved filters will be listed here:

  2. Click Create Filter or to edit an existing filter click the edit icon beside the Filter Name. The Report Filter window displays:

  3. Enter a name for the new filter in the Filter Name: field.

  4. There are seven criteria you can specify for a filter - Users, Groups, Categories, Time Range, IP Sources Addresses, Domains and Other Filters. Using the information below as a reference, scroll through as shown above and edit each criterion.

    Note

    Users and Groups only display if you have user or group data in WebTitan Cloud. Multiple users and groups are imported using Active Directory User Integration. See Active Directory and User Identification.

    Individual users are added using WebTitan OTG. See the WebTitan OTG guides for more information.

    1. Users. Allows you to specify particular users to include or exclude.

      Field

      Description

      Do not filter on User

      Include all users in the report.

      Include listed Users

      The report will contain only those users you list. To add a user, enter their name and click Add. Repeat to include multiple users.

      Exclude listed Users

      The report will contain all users except those you list here. To exclude a user, enter their name and click Add. Repeat to exclude multiple users.

    2. Groups. Allows you to specify particular groups to include or exclude.

      Field

      Description

      Do not filter on Group

      Include all groups in the report.

      Include listed Groups

      The report will contain only those groups you list. To add a group, enter the group name and click Add. Repeat to include multiple users.

      Exclude listed Groups

      The report will contain all groups except those you list here. To exclude a group, enter the group name and click Add. Repeat to exclude multiple groups.

    3. Categories. The report can consist of all categories, or may be limited to specified of categories, or exclude specified categories:

      Field

      Description

      Do not filter on Categories:

      Include all categories in the report.

      Include listed Categories:

      The report will contain only those categories you list. To add a category, enter the category name and click Add. You can enter multiple categories to include.

      Exclude listed Categories:

      The report will contain all categories except those you list here. To add a category, enter the category name and click Add. You can enter multiple categories to exclude.

    4. Time Range. Allows you to limit the report to a particular time, e.g. you may want to generate a report for just lunchtime.

      Field

      Description

      Start Time:

      Specify the start time that the report data should be calculated from

      End Time:

      Specify the end time that the report data should be calculated to

    5. IP Source Addresses. You can limit the report to a certain IP address or group of IP addresses, or to exclude certain IP addresses.

      Field

      Description

      Do not filter on Source IP Address:

      Include all source IP addresses in the report.

      Include listed IP Addresses:

      The report will contain only those IPs addresses you list here. To add an IP address, enter the IP address and click Add.

      Exclude listed IP Addresses:

      The report will contain all IP addresses except those you list here. To add an IP address, enter the IP address and click Add.

    6. Domains. You can limit the report to a certain domain or group of domains, or to exclude certain domains.

      Field

      Description

      Do not filter on Domain:

      Include all source Domains in the report.

      Include Domains matching:

      The report will only the Domains you list here. To add a Domain, enter the Domain and click Add.

      Exclude Domains matching:

      The report will contain all Domain, except those you list here. To add a Domain, enter the Domain and click Add.

    7. Other Filters.

      Field

      Description

      Access:

      Specifies if the requests in the report were Allowed, Blocked or both (All).

  5. Click Save to save the filter or Cancel to discard the filter.

How to Schedule a Report in WebTitan Cloud

Depending on the amount of data you have it may take several minutes to compile a report, so you may want to save and schedule a report to run periodically. Follow the steps below to schedule a report:

  1. Firstly, you must create the report you wish to save and schedule. See Generating a Report.

  2. When you have created your report, scroll to the bottom of the window and you will see this toolbar:

  3. Click Schedule Report and the Schedule Report window displays. Using the Scheduled Report Settings table below as reference, complete the fields in this window.

  4. Click Schedule to save and schedule your report or Cancel to discard your entry.

  5. Your report has now been saved and scheduled. To view or modify the report see Viewing, Editing & Deleting Scheduled Reports.

Scheduled Reports Settings

Field

Description

Send to:

Enter one or more email addresses to receive the report. Click Add to add each email address.

From:

Enter an email address from which email appear to be sent, e.g. reports@yourwebtitan.com.

Subject:

Specify the subject for the email.

Description:

Enter any text you want to appear in the body of the email.

Filter:

Specify the report filter (if any) to be applied to the report.

Number of records:

Specify the maximum number of records that can appear in the report, e.g. to receive a 'Top 20' report, enter 20 here.

Format:

Choose if the format of the report will be PDF or CSV.

Date Range:

This specifies what date range to include in the report:

Today

Just today.

Yesterday

Just yesterday.

Last seven days

Last 7 days.

Last fourteen days

Last 14 days.

Last thirty days

Last 30 days.

Monday through yesterday

Last Monday up until yesterday.

The week ending last Sunday

Report for the previous week.

This Month

Report for this month to date.

Last Month

Report for last month.

Frequency:

Use this drop-down list to select the frequency at which the report is run:

Daily

Run the report every day (default).

Weekly

Run the report weekly each Monday.

Monthly

Run the report monthly on the 1st day of each month.

Viewing, Editing & Deleting Scheduled Reports

Go to Reports > Scheduled Reports to view reports that have been set up to run automatically on the schedule.

Note

Scheduled reports run at 3 am IST either daily, weekly (each Monday) or monthly (first day of each month).

This is a list of reports that have already been scheduled. See How to Schedule a Report to learn how to add a report to the schedule.

Editing a Scheduled Report

To edit a report on the schedule, click the Report Name, e.g. 'Monthly Blocked IPs', or click the edit icon in the Options column for the report you wish to edit.

The Edit Scheduled Report window displays (see the Schedule Report Settings table below for more information on the field in the Edit Scheduled Report window).

Deleting a Scheduled Report

To delete a report on the schedule, click on the delete icon in the Options column for the report you wish to delete.

Running a Scheduled Report

To run a scheduled report immediately, click on the run icon in the Options column for the report you wish to run. When the report has been generated, the following message will display:

Scheduled Reports Settings

Field

Description

Send to:

Enter one or more email addresses to receive the report. Click Add to add each email address.

From:

Enter an email address from which email appear to be sent, e.g. reports@yourwebtitan.com.

Subject:

Specify the subject for the email.

Description:

Enter any text you want to appear in the body of the email.

Filter:

Specify the report filter (if any) to be applied to the report.

Number of records:

Specify the maximum number of records that can appear in the report, e.g. to receive a 'Top 20' report, enter 20 here.

Format:

Choose if the format of the report will be PDF or CSV.

Date Range:

This specifies what date range to include in the report:

Today

Just today.

Yesterday

Just yesterday.

Last seven days

Last 7 days.

Last fourteen days

Last 14 days.

Last thirty days

Last 30 days.

Monday through yesterday

Last Monday up until yesterday.

The week ending last Sunday

Report for the previous week.

This Month

Report for this month to date.

Last Month

Report for last month.

Frequency:

Use this drop-down list to select the frequency at which the report is run:

Daily

Run the report every day (default).

Weekly

Run the report weekly each Monday.

Monthly

Run the report monthly on the 1st day of each month.

Was this article helpful?

That’s Great!

Thank you for your feedback

Sorry! We couldn't be helpful

Thank you for your feedback

Let us know how can we improve this article!

Select at least one of the reasons
CAPTCHA verification is required.

Feedback sent

We appreciate your effort and will try to fix the article