Guest User!

You are not Sophos Staff.

This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Is there an OID in Sophos that displays packets or attacks dropped based on country? I'd like to plug this into Grafana's World Map plugin?

So I am building a Dashboard, I will be using the OID's to plug the data into the UI using snmp.

I have downloaded the MIB file from the UTM Management Central. Have used a OID viewer and to get OID's, and there are tons... 

I was wondering if there are OID's that shows the number of attacks, and attacks dropped, etc.. especially like the one shown in the graphs above.. based on the country.. I could plug that data into the dashboard's world map plugin.

I will be using Grafana and Telegraf. They have a world Map plugin where u can plug your data. I just need to know if there are OID's that can show this? Most of my previous noob posts have gone unanswered, well I hope I can get some response.



This thread was automatically locked due to age.
Parents
  • Short answer - If you were GEOIP blocking, you could feed info from /var/log/packetfilter.log, but there's no way to get the information you want without some fancy SQL programming.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Reply
  • Short answer - If you were GEOIP blocking, you could feed info from /var/log/packetfilter.log, but there's no way to get the information you want without some fancy SQL programming.

    Cheers - Bob

     
    Sophos UTM Community Moderator
    Sophos Certified Architect - UTM
    Sophos Certified Engineer - XG
    Gold Solution Partner since 2005
    MediaSoft, Inc. USA
Children
No Data