Computer Traffic Table
This table provides an overview of servers that a selected computer has communicated with. The table thus tells you about traffic that was initiated by the selected computer.
To view the table, select ANALYZE > Computers > Computer Search, and search for a computer. Then, in the search results, click the name of the required computer, and then select the Traffic Table tab.
Filter Table on Time and/or Process
Section titled “Filter Table on Time and/or Process”You can filter the table’s content based on:
- Interval: The period of time that you want the table to cover, for example 0-30 minutes. If the predefined intervals don’t suit you, select Custom to Custom Time Periods on Graphs.
- Process: A specific process that you want to know more about. Note that the amount of processes you see in the list may change based on your interval selection (because more processes may have been active during the last 30 days than during the last 30 minutes).
Click the Update button.
When ready, click the Update Simple or Update Detailed button.
Understand Table’s Contents
Section titled “Understand Table’s Contents”Based on your parameters, the table lists some or all of the following:
- Hostname: The server with which the computer communicated.
- Port: The port through which communication took place, for example HTTP.
- Protocol: The protocol type used for the communication, TCP or UDP.
- Process name: Name of process used in the communication, for example chrome.exe.
- Process version: Version of process used in the communication.
- Total response time: The time, in milliseconds, until the server/port response was received by the computer.
- Received bytes: The total number of bytes received by the computer on the server/port.
- Sent bytes: The number of bytes sent from the computer to the server/port.
- Received packets: The total number of IP packets received by the computer from the server/port.
- Sent packets: The total number of IP packets sent from the computer to the server/port.
- Responses: The total number of responses.
- Requests: The total number of requests.
- No application response within 500 seconds: The number of times that no application response with payload was received within a time frame of 500 seconds.
- [Response times grouped in milliseconds intervals]: The number of response measurements in the respective Agent Configuration Group Settings by the computer on the server/port.
- Connections: Total number of established TCP connections from the computer to the server/port.
- Connection resets: Total number of times that TCP connections from the computer to the server/port were reset. The number of connection resets can sometimes be higher than the number of connections, for example if a server wasn’t ready to respond immediately when it was contacted by the computer.
- Retransmissions: The number of TCP retransmissions from the computer to the server/port.