View Reports

From Dimension, you can view reports for your Fireboxes, FireClusters, groups, and WatchGuard servers. The reports that are available for each Firebox, group, or server depend on the log message data that the devices or servers sent to the Dimension server. You can also export the data from most reports as a PDF. When you view a Summary report, if a Detail report is available for that report type, the View Details link is included at the top of the report.

If you change the name of a FireCluster, to see reports generated for the FireCluster before you changed the name, you must select the FireCluster by the name that was specified for it when those reports were generated. To see reports generated after you changed the name, select the FireCluster by the new name.

For information about the available reports, go to About Dimension Reports.

View Reports for Devices and Groups

To see the reports for your Fireboxes, FireClusters, or groups:

  1. To see reports for your Fireboxes or FireClusters, select Home > Devices.
    The Devices list opens.
    To see reports for your groups of Fireboxes, select Home > Groups.
    The Groups list opens.
  2. Select the Name of a Firebox, cluster, or group.
    The Tools > Executive Dashboard page opens.
  3. From the Start and End drop-down calendars, select the start and end date and time for the report data, then click Apply.
    To include data from more than one day in the report, in the End calendar use the Hour and Minute sliders to set the time to the end of the day (23:59).

When Dimension stores log messages, it converts the time stamps to the UTC time zone. When you view reports in Dimension, time stamps appear in your local time zone.

  1. Select the Reports tab.
  2. To see the reports available in a single report category, click the category to expand it.
    To see all the reports available in all report categories, click Expand All.
    To collapse all the report categories, click Collapse All.
  3. Select a report.
    The selected report data appears.
  4. (Optional) For a Summary report, to see more detailed information about the report data, click View Details.
    This link only appears if a Detail report is available for the selected Summary report.

View Per Client Reports

Per Client Reports are one of many types of reports available on your instance of Dimension. They include information from proxy log messages about an authenticated user, host name, or an IP address for the device you select. The Per Client Report includes a detailed activity summary for the specified client and the time range you select. You can choose one or more parameters to include in this report.

For a Per Client Report, you must specify at least one of these options:

  • User name or ID
  • IP address
  • Host name
  • Device Name (only available if the date range you specify includes log message data for mobile devices)

For a Data Loss Prevention report, you can also specify these options:

  • Policy name
  • Rule name (required)

If you choose to run the report on a user name or ID, make sure to specify the user name in the correct format for the authentication server you use for your network. If you use Active Directory, use the format username@<domain name>. If you use the local Firebox database, use the format username@Firebox-DB. For a Data Loss Prevention report, make sure that you specify a rule name. The Policy Name and Rule Name search parameters are only available if data is available for DLP reports, are not case sensitive, and do not support wildcards.

You must also select the start date and time, and end date and time for the selected parameters.

To see the report of client activity for a device, cluster, or group:

  1. To see a report for a Firebox or FireCluster, select Home > Devices.
    The Devices list opens.
    To see a report for a group of devices, select Home > Groups.
    The Groups list opens.
  2. Select the Name of a device, cluster, or group.
    The Tools > Executive Dashboard page opens.
  3. From the Start and End drop-down calendars, select the start and end date and time for the report data, then click Apply.
    To include data from more than one day in the report, in the End calendar use the Hour and Minute sliders to set the time to the end of the day (23:59).
  4. On the Tools tab, in the Per Client Reports section, select a report type:
    • Summary
    • Detail
  5. In the criteria selection text boxes, type the criteria to search on. Specify one or more of these criteria:
    • User Name
    • IP Address
    • Host Name
    • Device Name
      (Mobile devices only)
    • Policy Name
      (DLP only)
    • Rule Name
      (DLP only — Required)
  6. To collapse the criteria selection section, click the collapse button.
    To expand the criteria selection section, click the expand button.
  7. Click Update.
    The Per Client Report is updated based on the criteria you specified.

View Reports for Servers

To see reports for your WatchGuard servers:

  1. From the Home page, select the Servers tab.
    The Servers list opens.
  2. Select the Name of a server.
    The Tools > Executive Dashboard page opens.
  3. From the Start and End drop-down calendars, select the start and end date and time for the report data, then click Apply.
    To include data from more than one day in the report, in the End calendar use the Hour and Minute sliders to set the time to the end of the day (23:59).
  4. Select the Reports tab and select Server Reports.
    The Authentication Audit tab is selected by default.
  5. Select a tab:
    • Authentication Audit
    • Audit Details
    • Audit Summary
      The selected report data appears.

Export a Report

For most reports, you can save the report as a PDF file. Some reports can be saved as a CSV file. When you export a report as a PDF or a CSV file, the time zone that appears in the file is the local time on the client computer. The steps to export a report for a device or group are different than the steps to export a report for a server.

Export a Device or Group Report

To export a report as a PDF file:

  1. At the top right of the page, click the Generate PDF button.
    An Open File dialog box opens.
  2. Select to open or save the PDF file.
  3. If you select to save the file, select the location to save the file and specify a file name.
  4. Click OK.

To export a report as a CSV file:

  1. At the top right of the page, click the Generate CSV button.
    The Save As dialog box opens.
  2. Select the location to save the file and specify a file name.
  3. Click OK.

Export a Server Report

To export a report as a PDF file:

  1. From the Actions drop-down list, select Export as PDF the Generate PDF button.
    An Open File dialog box opens.
  2. Select to open or save the PDF file.
  3. If you select to save the file, select the location to save the file and specify a file name.
  4. Click OK.

To export a report as a CSV file:

  1. From the Actions drop-down list, select Export as CSV the Generate CSV button.
    The Save As dialog box opens.
  2. Select the location to save the file and specify a file name.
  3. Click OK.

Related Topics

View Log Messages (Dimension)

About PCI Compliance Reports

About HIPAA Compliance Reports

About the Home Pages