IBM Support

Network Protection Module statistics and their descriptions for the Security Network IPS sensor

Question & Answer


Question

What do the different Network Protection Module (NPM) statistics mean on the Security Network IPS (GX) appliance?

Answer

Name

Description
np.attack.checks The number of attack checks enabled.
np.attacks.blocked The number of attacks blocked. Attack events might be coalesced before being reported.
np.attacks.blocked.simulated The number of attacks that would have been blocked if appliance were not in simulation mode. Attack events might be coalesced before being reported.
np.attacks.detected The number of attack events detected. Attack events might be coalesced before being reported.
np.attacks.allowlisted The number of attacks that were allowlisted. Attack events might be coalesced before being reported.
np.audit.checks The number of audit checks enabled.
np.blocking.checks The number of attacks and audits with blocking response enabled.
np.connection.checks The number of connection checks enabled.
np.firewall.rules The number of firewall rules enabled.
np.last_attack.time The time that NetProtect has reported the last attack.
np.monitored.attacks.reset The number of attack events that are blocked by TCP resets in monitoring mode. Attack events might be coalesced before being reported.
np.opensignature.checks The number of OpenSignature checks enabled.
np.packets.dropped The total number of packets dropped in response to events.
np.packets.resource.error The number of packets that were not analyzed due to low resources.
np.protection.domains The number of custom protection domains in use.
np.reload.time The time that the NetProtect configuration was last modified.
np.response.filters The number of response filters enabled.
np.start.time The time of the most recent NetProtect startup.
np.userdefined.checks The number of user-defined checks that are enabled.

[{"Product":{"code":"SS9SBT","label":"Proventia Network Intrusion Prevention System"},"Business Unit":{"code":"BU059","label":"IBM Software w\/o TPS"},"Component":"Protocol Analysis Module (PAM)","Platform":[{"code":"PF009","label":"Firmware"}],"Version":"4.6.1;4.6.2","Edition":"","Line of Business":{"code":"LOB24","label":"Security Software"}},{"Product":{"code":"SSETH9","label":"Proventia Network Multi-Function Security"},"Business Unit":{"code":"BU008","label":"Security"},"Component":"Protocol Analysis Module (PAM)","Platform":[{"code":"PF009","label":"Firmware"}],"Version":"4.6.1;4.6.2","Edition":"","Line of Business":{"code":"","label":""}}]

Document Information

Modified date:
21 March 2022

UID

swg21616043