LogoThreatmatic

Metrics

Monitor traffic statistics and policy enforcement across your network.

The Metrics section (/metrics) gives you real-time and historical visibility into network activity and policy enforcement across your organization.

Routes

PathDescription
/metricsMain dashboard — charts and trend statistics
/metrics/eventsRaw events table — individual allow/block records

Time Range

All charts and stats respond to the time range selector at the top of the page:

TabWindow
24hLast 24 hours
7dLast 7 days
30dLast 30 days

Trend Statistics

A summary row at the top of the dashboard shows five KPIs for the selected time window:

StatDescription
Total EventsAll allow + block events recorded in the period
Block RatePercentage of events that were blocked, with raw blocked count
Unique AppsDistinct applications seen in network traffic
Unique IPsDistinct IP addresses observed
Unique PortsDistinct destination ports observed

Charts

ChartDescription
Allow TrafficLine chart of allowed events over time
Block TrafficLine chart of blocked events over time
Top Apps (Blocked)Bar chart of the most-blocked applications
Top Apps (Permitted)Bar chart of the most-permitted applications
Policy HitsWhich policies triggered the most events
DirectionInbound vs. outbound traffic breakdown

Events Table

The /metrics/events sub-route shows the raw event log — individual connection records with allow/block outcome, application, source, destination, port, and timestamp. Use this view to investigate specific incidents or audit policy decisions.

  • Policies — the rules driving allow/block decisions
  • Devices — the endpoints generating traffic

How is this guide?

Last updated on

On this page