Kolnos Eagleye Administration
Kolnos Systems provides an online site to simplify administration.
The admin site serves as a full-featured control panel and reporting
portal.
At a Glance
The summary page of Eagleye's admin site provides high-level information
at a glance. This includes current hazards which the admin should be
aware of, notification alerts, and a high-level graphical view of today's
suspicious activity. The admin can explore each of these areas in more
depth with the administration site. Armed with the appropriate information,
the admin can make the necessary changes to protect his business.
Statistics
Eagleye's admin site provides a wide range of statistical information
about Eagleye's interpretation of visitors to the website.
The high-level information is captured in graphs of suspicious activity
over various time periods ranging from the last year to today.
More detailed information is available for each time period, or a
custom one to your choosing.
The detailed statistical information begins with a breakdown of
suspicious activity over smaller time frames--days of the month,
days of the week, hours of the day, etc.
A geographical heat map is also available, which illustrates the
geographical sources of suspicious activity. The admin can adjust
a threshold for suspicious activity on this map.
The countries and hosts with the most suspicious activity are
layed out in a table.
The information available to admins from Eagleye's Statistics pages
can be used to adjust security policies to maximize the security
of the website.
(click to enlarge)
Notifications & Alerts
Increasing the signal to noise ratio is crucial for effectively
managing security. One technique to accomplish this is to receive
an alert when unusual events occur.
Eagleye's admin site provides the ability to configure custom
notification rules. Each notification offers a wide range of
options to enable monitoring for specific scenarios while excluding
the noise. Each notification also offers several methods of
notifying the appropriate recipients when it's triggered, including
e-mail, RSS, and SMS.
Settings
Eagleye's admin site provides the ability to adjust the settings
which drive Eagleye. Some of these options are also available
for control at Eagleye's integration point.
The options are:
-
Eagleye's analysis aggressiveness
Controls the level of
analysis Eagleye performs for each visitor.
-
Excluded IP addresses
Also known as "white list" or
"allow list", this allows the admin to override Eagleye's
analysis of specific IP addresses (or ranges of addresses)
such that each is always considered non-suspicious.
-
Troubleshooting
Options to aid in troublshooting