Tracking quantity of IM traffic through Sonicwall Viewpoint

Posted on 2010-08-27
Medium Priority
Last Modified: 2013-11-16
I am curious if there is a way to log or show a report of the quantity of IM traffic from specific IP addresses with Sonicwall or Viewpoint?
I have gone into the log in Sonicwall Administration and that appears to go back for an hour or two of the current day and shows IM traffic going and receiving by IP.  I would like to be able to do a more lengthy report by entire day/month for an IP to see just how big of a problem it is.
Does it log this by default or how can I set it up to log the quantities by default?  I don't see anything in Viewpoint that shows the IM traffic.
We have a Model: NSA 2400, Firmware Version: SonicOS Enhanced    with the following:
Service Name Status  
Nodes/Users Licensed - Unlimited Nodes    
SSLVPN Nodes/Users Licensed 2 Nodes (0 in use)  
VPN Licensed  
Global VPN Client Licensed - 20 Licenses (0 in use)  
CFS (Content Filter) Not Licensed  
 Client AV Enforcement Not Licensed  
Gateway Anti-Virus Licensed  
Anti-Spyware Licensed  
Intrusion Prevention Licensed  
Application Firewall Licensed  
Anti-Spam Not Licensed  
ViewPoint Licensed
Question by:bytespeed
  • 2
LVL 33

Accepted Solution

digitap earned 1000 total points
ID: 33547095
The application firewall is what will tell you that.  Check out the 6.0 Viewpoint manual and look at that application firewall reports section.http://www.sonicwall.com/downloads/SonicWALL_ViewPoint_6_0_Admin_Guide.pdfFor information about the application firewall:http://www.sonicwall.com/downloads/SonicOS_Application_Firewall_Practical_Examples_Guide_technote.pdfhttp://www.sonicwall.com/downloads/Application_Firewall_5.1e_Feature_Module.pdf
LVL 17

Assisted Solution

ccomley earned 1000 total points
ID: 33548701
I know this isn't quite what you want to hear but it may help!!! There's a forthcoming new release of OS 5 which includes a massivly enhanced bandwidth reporting system, "Traffic visualisation". It'll be in version, which is now entering beta-test if you want it urgently, you can apply to be on the b-test program here


Otherwise, it is planned for release in the next two or three months I believe!

LVL 33

Expert Comment

ID: 33559168
Thanks for the points!

@ccomley :: Thanks for the heads up on the new version of SW OS.

Featured Post

Firewall Management 201 with Professor Wool

In this whiteboard video, Professor Wool highlights the challenges, benefits and trade-offs of utilizing zero-touch automation for security policy change management. Watch and Learn!

Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

We sought a budget ($5,000) firewall solution that would provide all the performance we needed with no single point of failure.  Hosting a SAAS web application in our datacenter, it was critical that we find a way to keep connectivity up and inbound…
The DROP (Spamhaus Don't Route Or Peer List) is a small list of IP address ranges that have been stolen or hijacked from their rightful owners. The DROP list is not a DNS based list.  It is designed to be downloaded as a file, with primary intention…
Monitoring a network: how to monitor network services and why? Michael Kulchisky, MCSE, MCSA, MCP, VTSP, VSP, CCSP outlines the philosophy behind service monitoring and why a handshake validation is critical in network monitoring. Software utilized …
When cloud platforms entered the scene, users and companies jumped on board to take advantage of the many benefits, like the ability to work and connect with company information from various locations. What many didn't foresee was the increased risk…

624 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question