A status dashboard contains widgets from which you can view and manage data. Widgets are the building blocks of status dashboards. For more information about widgets, see bookmark257 Adding Widgets to Dashboards. They provide information about different aspects of your Grid and networks. For example, the Member Status widget provides general information about a Grid member, and the Network Statistics widget provides data for a specified network.
The appliance provides a default status dashboard. Grid Manager displays the default dashboard only when there are more than one widget on the dashboard. You can add and modify widgets in the default dashboard, but you cannot rename or delete it. From a dashboard, you can access your most commonly accessed tasks and monitor appliance status. You can configure your own status dashboards to which you can add widgets that help you manage different data. Configuring multiple status dashboards helps organize widgets in a meaningful way and improves dashboard and widget performance. This is especially useful when you have a Grid serving a large number of Grid members. When you configure a new dashboard, you can use the existing dashboard as a template. You can create up to 100 copies at a time using the Add Dashboard option. For information about how to add status dashboards, see bookmark261 Adding Status Dashboards.
You can add widgets to different dashboards, however, you can add only one widget at a time on each dashboard. The default number of widgets per dashboard is 10. The maximum number of widgets that you can add on each dashboard is 20 at a time. You can define the number of widgets that can be configured on each dashboard in User Profile. This limitation applies only to dashboards that you configure and does not apply to the default dashboard. For information about how to specify the widget limit, see bookmark260 Configuring Widget Limit per Dashboard.
Grid Manager provides a default Security dashboard if you have installed any or all of the following licenses on the appliance: Threat Protection, RPZ, and Threat Analytics. The Security dashboard contains widgets that help you monitor the security status of the Grid. In the Security dashboard, you can add and remove widgets, but you cannot rename or delete them.
...
If you have configured a lot of status dashboards, you can use the Quick Navigation icon to quickly access each status dashboard. For information, see bookmark262. bookmark256 Using Quick Navigation. Figure 2.1 illustrates the typical layout in Grid Manager after you configure multiple status dashboards.
Anchor | ||||
---|---|---|---|---|
|
Drawio
Configure Icon Dashboard OptionsList of Configured DashboardsQuick Navigation
You can do the following in the Status tab:
- Add new status dashboards, as described in bookmark261 Adding Status Dashboards
- Rename a dashboard, as described in bookmark263 Renaming Status Dashboards
- Copy or move a widget, as described in bookmark264 Copying or Moving Widgets
- Reorder dashboards, as described in bookmark265 Reordering Status Dashboards.
- Delete dashboards, as described in bookmark266 Deleting Status Dashboards.
- Configure widget limit, as described in bookmark260 Configuring Widget Limit per Dashboard.
- Configure Security dashboard properties, as described in bookmark267 Configuring Security Status Thresholds.
Anchor | ||||
---|---|---|---|---|
|
Anchor | ||||
---|---|---|---|---|
|
Anchor | ||||
---|---|---|---|---|
|
You can add all or some of the following widgets to your status dashboards depending on whether you are managing a Grid, an independent appliance, or an Infoblox Orchestration server:
- bookmark269
- bookmark274
- bookmark275
- bookmark278
- bookmark280
- bookmark282
- bookmark284
- bookmark285
- bookmark288
- bookmark291
- bookmark294
- bookmark296
- bookmark297
- bookmark298
- bookmark299
- bookmark302
- bookmark303
- bookmark305
- bookmark306
- bookmark307
- bookmark308
- bookmark308
- bookmark309
- bookmark321
- bookmark328
- bookmark311
- bookmark315
- bookmark319
- bookmark320
- bookmark320
- bookmark349
- bookmark350Grid Status
- Grid Upgrade Status
- Member Status (System Status)
- DNS Statistics
- Ranges Over Threshold
- IPv4 Failover Associations Status
- DHCP Statistics
- Network Statistics
- IPv4 Networks Over Threshold
- Discovery Status
- Advanced Discovery Status
- My Commands
- DDNS Statistics
- System Activity Monitor
- File Distribution Statistics
- Active WebUI Users
- Microsoft Servers Status Widget
- CSV Import Manager
- Load Balancer Status
- Pending Approvals
- Infoblox Community
- Infoblox Community
- Mobile Devices Status
- Threat Protection Status for Grid
- Threat Protection Status for Member
- DNS Integrity Check
- Cloud Statistics
- Security Status for Grid
- Security Status for All Members
- Security Status for All Members
- Pool Licenses Statistics
- DNS Record Scavenging
Grid Manager displays the Security dashboard if you have any or all of the following licenses installed on your appliance: Threat Protection, RPZ, and Threat Analytics. The Security dashboard contains the following widgets, depending on the licenses installed on your appliance:
- bookmark319
- bookmark320
- bookmark321
- bookmark328
- bookmark330
- bookmark337Security Status for Grid
- Security Status for All Members
- Threat Protection Status for Grid
- Threat Protection Status for Member
- Response Policy Zone (RPZ) Status for Grid
- Response Policy Zone (RPZ) Status for Member
Note that you must have at least read-only permission to the objects that a widget displays. Otherwise, though you are allowed to select and place the widget on the dashboard, it does not display any information.
To add widgets to your dashboard:
- Default Status Dashboard: From the Dashboards -> Status tab -> Default tab, click the Configure icon -> Add Content. This is applicable when you have the default dashboard only.
Configured Status Dashboards: From the Dashboards -> Status tab, select the configured status dashboard, click the Configure icon -> Add Content.
Security Status Dashboard: From the Dashboards -> Status tab -> Security tab, click the Configure icon -> Add Content. This is applicable only when at least one member in the Grid has Threat Protection, RPZ, or Threat Analytics license. Note that the Security Status dashboard is a default dashboard and it cannot be renamed or deleted.
Grid Manager displays thumbnails of the available widgets. Use the scroll bar on the right to scroll through the widgets, as illustrated in the bookmark259through the widgets, as illustrated in the Figure 2.2. - Click an icon on the filter panel, as illustrated in the Figure 2.2, to add a widget to the desired dashboard. Filter panel is categorized in to the following: Cloud , Security , DNS/DHCP , and Reset . When you click on an icon, Grid Manager displays thumbnails of the widgets belonging to the respective filter. If you click filters one after the other without clicking Reset, Grid Manager displays thumbnails of all widgets along with the icon that indicates the category to which the widget belongs. Click Reset to view only those widgets that belong to the selected category.
- Select and drag a widget to the desired location on your dashboard. You can also click icon to add a widget to the desired dashboard.
After you add a widget to the dashboard, you can configure it to provide relevant data. You can also copy or move a widget, by selecting and dragging it to its new location on your dashboard. Grid Manager saves your dashboard configuration and displays it the next time you log in.
You can turn on auto-refresh by clicking On in the Turn Auto Refresh field at the top of the dashboard to periodically refresh the contents of all widgets in the dashboard. Click Off to disable auto-refresh for all widgets in the dashboard. When auto-refresh is disabled, you can enable it for individual widgets by clicking the Configure icon in the corresponding widgets. You can specify the auto-refresh period in seconds. The default auto-refresh period is 30 seconds.
Widgets have the following icons:
- Copy/Move: Click to copy or move the widget from a dashboard to another. For information about how to copy or move, see bookmark264 Copying or Moving Widgets.
- Span Up/Span Down: Click to resize the widget. Click Span Up to increase the width of the widget. Click Span Down to decrease the width of the widget. Note that the fully spanned widgets are moved to the top of the dashboard.
- Refresh: Click to update the content of the widget. Each widget contains a status bar at the bottom that displays the last date and time it was updated.
- Configure: Click to hide and show the configuration options of the widget.
- Toggle: Click to minimize and restore the widget.
- Close: Click to remove the widget from a dashboard.
Anchor | ||||
---|---|---|---|---|
|
Anchor | ||||
---|---|---|---|---|
|
You can define the number of widgets that can be configured on each dashboard. This limitation applies only to dashboards that you configure and does not apply to the default dashboard.
...
You can use the Quick Navigation icon to quickly access a specific dashboard. The appliance provides the Quick Navigation icon at the right corner of the status dashboards, as illustrated in bookmark256 Figure 2.1.
To quickly navigate to a dashboard:
...
You can configure thresholds to determine the overall status of Threat Protection, DNS RPZ (Response Policy Zone), and DNS Threat Analytics services in the Grid. Grid Manager provides a view of the overall security status of the Grid in the Security Status for Grid dashboard widget. For information, see bookmark319 Security Status for Grid.
To configure the thresholds for security status:
...
- Green(OK): When the number of DNS tunneling attacks are less than the low threshold value specified for the yellow color.
- Yellow(Warning): When the number of DNS tunneling attacks equals or exceeds the threshold value specified for the yellow color but less than the threshold value specified for the red color.
- Red(Critical): When the number of DNS tunneling attacks equals or exceeds the high threshold value specified for the red color.
3. Save the configuration.
...
With the correct licensing, dedicated NIOS appliances operating as Grid members can perform infrastructure device discovery. NIOS appliances with the Discovery license operate primarily for discovery tasks and do not perform core DNS or DHCP network functions. Discovery appliances, called Probes, collect all network device data and compile it into a database. A separate NIOS appliance, called a Consolidator, aggregates the collected device information from the Probes and synchronizes with the Infoblox Grid Master.
For more information about discovery and its features and requirements, see the chapter Infoblox Network Insight on page 675 and its associated sections.
The Advanced Discovery Status widget provides several basic counts describing the general state of device discovery within the Grid, and for networks outside the Grid being inventoried by the NIOS appliances designated for discovery. The widget divides counters into two categories: Networks and Assets. Network counters refer to counts of managed and unmanaged networks discovered by Probe appliances. Asset counters refer to counts of specific types of network devices, termed Assets, which are comprised of end hosts, enterprise servers, enterprise printers, and any other enterprise asset that exists in an end-user network segment. The widget counters include:
In the Networks category:
...
- Task ID: The ID associated with the task. The appliance assigns an ID to a task in chronological order.
- Submitter: The username of the admin who scheduled or submitted the task.
- Ticket Number: The reference number entered by the submitter to identify the task. You can enter up to 20 alphanumeric characters.
- Scheduled Time: The date, time, and time zone when the task was scheduled for execution.
- Affected Object: The name or value of the object that is associated with the task. For example, if the task involves an A record, this field displays the domain name of the record. If it is a fixed address, it displays the IP address of the fixed address.
- Object Type: The object type. For example, the appliance can display A Record or Fixed Address.
- Action: The operation the appliance performs in this task. The can be: Add, Modify, Delete, or Network Discovery.
- SubmittedSubmitte Time: The date, time, and time zone when the task was submitted. You can select this for display. It is not displayed by default.
...
- .
Anchor | ||||
---|---|---|---|---|
|
Anchor | ||||
---|---|---|---|---|
|
The Infoblox Community widget displays the latest news from Infoblox. It provides links to video clips that show you how to perform certain tasks, such as how to prepare for IPAM Express and how to add a network. You can click available links in the widget to get more information about Infoblox products and solutions.
Note that content in the Infoblox Community widget may not be displayed in certain versions of Mozilla FireFox, Google Chrome, and Microsoft Internet Explorer due to restrictions these browsers use to block certain secure data.
Follow these steps to unblock the Infoblox Community widget and view data in your respective browser:
- MozillaFireFox: Click the Shield icon in the address bar and choose DisableProtectiononThisPage from the drop-down list. The icon in the address bar changes to a warning triangle and content is displayed in the InfobloxCommunity widget. For more details, refer to information at https://blog.mozilla.org/tanvi/2013/04/10/mixed-content-blocking-enabled-in-firefox-23/.
- Google Chrome: Click the Shield icon in the address bar and click Load unsafe script in the pop-up box. Chrome automatically refreshes the webpage and loads the content in the Infoblox Community widget. For more details, refer to information at https://support.google.com/chrome/answer/1342714?hl=en.
- Internet Explorer: Click the Compatibility View icon adjacent to the address bar. The browser refreshes and the Security Warning dialog box is displayed. Click No in the dialog box. The Only Secure content is displayed pop-up blocker is displayed at the bottom of the browser. Click the Show all content button in this pop-up blocker to view the content. For more details, refer to the information at http://windows.microsoft.com/en-in/internet-explorer/use-compatibility-view#ie=ie-8.
...
The Dig Request widget enables you to perform a DNS lookup on the Grid Master or on the specified Grid member and displays the output of the dig command.
...
Note: When RPZ license is installed on both the Grid Master and the Grid member, the RPZ rule might not be triggered if you perform dig on the Grid member from the Grid Master.
...
To perform a DNS lookup using the dig command, complete the following:
...
The Security Status for Grid widget displays the overall status of Threat Protection, RPZ (Response Policy Zone), and DNS Threat Analytics services on the Grid members that support Infoblox Advanced DNS Protection, hardware or Software ADP, and Infoblox Threat Insight. Grid Manager displays this widget only when at least one member in the Grid has the Threat Protection, RPZ, or Threat Analytics license installed. You can add this widget to the Security dashboard to monitor the overall security status of the Grid. The statistics displayed in this widget are cumulative, collected from all the Grid members that support Infoblox Advanced DNS Protection, hardware or Software ADP, and Infoblox Threat Insight. This widget displays data for the last 30 minutes. The overall status of Threat Protection, RPZ, and DNS Threat Analytics is determined by the threshold values configured in the Global Dashboard Properties editor. For information, see bookmark267 Configuring Security Status Thresholds.
...
Note: If the Threat Protection license is not installed on any of the Grid members, Grid Manager does not display any threat protection related information in this widget. Similarly, if the RPZ license is not installed on any of the Grid members, Grid Manager does not display RPZ and DNS Threat Analytics related information in this widget and if the Threat Analytics license is not installed on any of the Grid members, Grid Manager does not display DNS Threat Analytics related information in this widget.
...
You can hover your mouse over the Threat Protection, RPZ, and Threat Analytics status icon and view the Threat Protection Status for Grid widget, Response Policy Zone (RPZ) Status for Grid widget, and Threat Analytics Status for Grid widget respectively. For information about Threat Protection Status for Grid widget, Response Policy Zone (RPZ) Status for Grid widget, and Threat Analytics Status for Grid widget, see bookmark321 bookmark3214, bookmark330, and bookmark342 Threat Protection Status for Grid, Response Policy Zone (RPZ) Status for Grid, and Threat Analytics Status for Grid respectively.
- Events from <> of <> security capable members: This column displays the cumulative event counts collected from the online Grid members that support the Infoblox Advanced DNS Protection and Infoblox Threat Insight.
- Threat Protection: Displays the total threat protection event counts for the following severity levels:
- Critical (Red): The total number of critical events.
- Major (Orange): The total number of major events.
- Warning (Yellow): The total number of warning events.
- Informational (Blue): The total number of informational events.
- RPZ: Displays the total number of hits received for the following RPZ rules:
- Blocked hits (Red): Total number of queries that triggered a Block (No Data) or Block (No Such Domain) RPZ rule.
- Passthru hits (Yellow): Total number of queries that triggered a Passthru RPZ rule.
- Substituted hits (Orange): Total number of queries that triggered a Substitute (Domain Name) or Substitute (Record) RPZ rule.
- Analytics: Displays the total number of DNS tunneling events.
- Threat Protection: Displays the total threat protection event counts for the following severity levels:
- Definitions/Rules: This column displays the status of the latest ruleset available in the database. For RPZ, the definition status is based on the latest RPZ feed received from Infoblox specific feeds. You can hover your mouse over the definition status to see the RPZ definition status when RPZ definitions exists.
- Configuration Status: This column indicates whether the security service is enabled and running properly or not. Grid manager displays a green check mark if the security service is enabled and running properly in the Grid. If the security service is disabled, a gray pause mark is displayed. You can hover your mouse over the gray pause mark to see the status of the security service.
...
- Click Configure Security Status Thresholds to configure the thresholds for the security status of the Grid. In the Global Dashboard Properties editor, you can define the threshold values for Threat Protection, RPZ, and DNS Threat Analytics. For information, see bookmark267 Configuring Security Status Thresholds.
- Select the Auto Refresh Period check box to turn on auto-refresh and specify the auto-refresh period in seconds. The default auto-refresh period is 30 seconds.
...
- Member: The name of the member. You can hover your mouse over the member name and view the Member Status widget. For information about the Member Status widget, see bookmark275 bookmark275 Member Status (System Status).
- IPv4 Address: The IPv4 address of the member.
- IPv6 Address: The IPv6 address of the member.
- Threat Protection Status: The status of the threat protection service running on the member. This can be either OK, Warning, Critical, NotSetup, or Unknown. You can hover your mouse over the threat protection status and view the Threat Protection Status for Member widget. For information about the Threat Protection Status for Member widget, see bookmark328 Threat Protection Status for Member
- RPZ Status: The status of the RPZ service running on the member. This can be either OK, Warning, Critical, NotSetup, or Unknown. You can hover your mouse over the RPZ status and view the ResponsePolicyZone(RPZ)Statistics widget. For information about the Response Policy Zone (RPZ) Statistics widget, see bookmark337bookmark3378 Response Policy Zone (RPZ) Status for Member.
- Analytics Status: The status of the DNS Threat Analytics service running on the member. This can be either OK, Warning, Critical, NotSetup, or Unknown.
...
- Turn on auto-refresh.
- Click the Configure icon, select the Auto Refresh Period check box, and specify the refresh period in seconds. The default auto refresh period is 30 seconds.
You can click the Configure icon again to hide the configuration panel.
- Click the Configure icon, select the Auto Refresh Period check box, and specify the refresh period in seconds. The default auto refresh period is 30 seconds.
- Click the Total Events by Severity tab to view information about threat protection related events by the severity level. For information, see bookmark323 Total Events by Severity.
- Click the Top 10 Grid Members tab to view information about the top 10 Grid members that have the most number of threat protection events. For information, see bookmark324 Top 10 Grid Members.
- Click the Events Over Time tab to view information about the total event count for each type of event severity in the given time frame. For information, see bookmark325 Events Over Time
- Click the Top 10 Rules tab to view information about the top 10 threat protection rules with the most number of hits. For information, see bookmark326 Top 10 Rules
- Click the Top 10 Clients tab to view information about the top 10 clients that have the most number of threat protections events. For information, see bookmark327 Top 10 Clients.
Anchor | ||||
---|---|---|---|---|
|
...
- Select a graph configuration, Client Hits, Passthru Hits, Blocked Hits, or Substituted Hits, to view details of a specific RPZ rule. You can select either one or all the available graph configurations. Note that Client Hits is displayed only when the graph type is Line Diagram.
- Select a graph type, Stacked Diagram or Line Diagram, to display data in the required diagrammatic format. This option is enabled only when you click the Trend tab and disabled when you click the Top 10 Grid Members, RPZ Recent Hits, or Health tabs. For more information, see bookmark335 Trend.
- Click the Top 10 Grid Members tab to view information about the top 10 Grid members that have the most number of RPZ hits. For more information, see bookmark332 Top 10 Grid Members.
- Click the RPZ Recent Hits tab to view information about the latest five RPZ hits with unique client addresses. For more information, see bookmark333 RPZ Recent Hits
- Click the Trend tab to view RPZ hit statistics for the Grid. For more information, see bookmark335 Trend.
- Click the Health tab to view information about RPZ zones and their last updated times. For more information, see bookmark336 Health
Note that you must install the RPZ license and enable RPZ logging to access this widget. For more information about installing licenses and enabling RPZ logging, see License Requirements and Admin Permissions and Setting DNS Logging Categories.
...
- Click Select Member. In the Member Selector dialog box, choose a Grid member to view the RPZ hits, or statistics, or RPZ zones and their last updated date and time.
- Select a graph configuration, ClientHits, Passthru Hits, Blocked Hits, or Substituted Hits, to view details of a specific RPZ rule. You can select either one or all the available graph configurations. Note that Client Hits is displayed only when the graph type is Line Diagram.
- Select a graph type, Stacked Diagram or Line Diagram, to display data in the required diagrammatic format. This option is enabled only when you click the Trend tab and disabled when you click the Top 10 Grid Members, RPZ Recent Hits, or Health tabs. For more information, see bookmark339 Trend.
- Click View Syslog to view the last 20 RPZ events that are logged in the syslog. For more information, see bookmark341 Previewing the Syslog
- Click the RPZ Recent Hits tab to view information about the latest five RPZ hits with unique client addresses. For more information, see bookmark338 RPZ Recent Hits
- Click the Trend tab to view RPZ hit statistics on the selected member. For more information, seebookmark335 Trend.
- Click the Health tab to view information about RPZ zones and their last updated times. For more information, see bookmark340 Health
Note that you must install the RPZ license and enable RPZ logging to access this widget. For more information about installing licenses and enabling RPZ logging, see License Requirements and Admin Permissions and Setting DNS Logging Categories.
...
- Turn on auto-refresh.
- Click the Configure icon, select the Auto Refresh Period check box, and specify the refresh period in seconds. The default auto refresh period is 30 seconds. Click the Configure icon again to hide the configuration panel after you complete the modification.
- Click the bookmark344 Detections Over Time tab to view information about the detected DNS tunneling events in a given time frame.
- Click the bookmark345 Top 10 Grid Members tab to view information about the top 10 Grid members with the most total counts of detections by type.
- Click the bookmark346 Detections tab to view information about all the detected DNS tunneling events.
...
- Status: The status of the scavenging operation.
- Start: The start time of the scavenging operation.
- End: The end time of the scavenging operation.
- User: The user who initiated the scavenging operation.
- Selected Object: The Grid, view, or zone affected by record scavenging.
- Action: The action applied to the scavenging operation.
- Processed Records: The number of DNS records processed.
- Reclaimable Records: The number of DNS records marked as reclaimable.
- Reclaimed Records: The number of DNS records removed during the scavenging operation.
Click an icon on the filter panel, as illustrated in the Figure 2.2, to add a widget to the desired dashboard. Filterpanel is categorized in to the following: Cloud , Security , DNS/DHCP , and Reset . When you clickon an icon, Grid Manager displays thumbnails of the widgets belonging to the respective filter. If you click filtersone after the other without clicking Reset, Grid Manager displays thumbnails of all widgets along with the iconthat indicates the category to which the widget belongs. Click Reset to view only those widgets that belong to theselected category.
can also click icon to add a widget tothe desired dashboard.