IBM Support

Network Protection Module statistics and their descriptions for the Security Network IPS sensor

Technote (FAQ)


Question

What do the different Network Protection Module (NPM) statistics mean on the Security Network IPS (GX) appliance?

Answer

Name Description
np.attack.checks The number of attack checks enabled.
np.attacks.blocked The number of attacks blocked. Attack events may be coalesced prior to being reported.
np.attacks.blocked.simulated The number of attacks that would have been blocked if appliance were not in simulation mode. Attack events may be coalesced prior to being reported.
np.attacks.detected The number of attack events detected. Attack events may be coalesced prior to being reported.
np.attacks.whitelisted The number of attacks that were whitelisted. Attack events may be coalesced prior to being reported.
np.audit.checks The number of audit checks enabled.
np.blocking.checks The number of attacks and audits with blocking response enabled.
np.connection.checks The number of connection checks enabled.
np.firewall.rules The number of firewall rules enabled.
np.last_attack.time The time that NetProtect has reported the last attack.
np.monitored.attacks.reset The number of attack events that are blocked by TCP resets in monitoring mode. Attack events may be coalesced prior to being reported.
np.opensignature.checks The number of OpenSignature checks enabled.
np.packets.dropped The total number of packets dropped in response to events.
np.packets.resource.error The number of packets that were not analyzed due to low resources.
np.protection.domains The number of custom protection domains in use.
np.reload.time The time that the NetProtect configuration was last modified.
np.response.filters The number of response filters enabled.
np.start.time The time of the most recent NetProtect start up.
np.userdefined.checks The number of user defined checks enabled.



Cross reference information
Segment Product Component Platform Version Edition
Security Proventia Virtualized Network Security Platform Protocol Analysis Module (PAM) Firmware 4.6.1, 4.6.2

Document information

More support for: IBM Security Network Intrusion Prevention System
Protocol Analysis Module (PAM)

Software version: 4.6.1, 4.6.2

Operating system(s): Firmware

Reference #: 1616043

Modified date: 14 September 2015