Skip to main content
This section provides the purpose, elements, and actions performed on the Anomaly Detection pages.

Purpose

The Anomaly Detection page provides real-time visibility into unusual patterns, deviations, and potential security threats across cloud environments. It leverages advanced anomaly detection algorithms and integrates IDS/IPS capabilities for proactive monitoring and operational resilience.

Elements

Security: Anomaly Detection
  • Anomaly Summary Panel: Displays detected anomalies with severity and impacted resources.
  • Topology View: Visualizes anomaly location and affected gateways.
  • Flow Data Panel: Shows traffic flows triggering anomaly alerts.
  • Policy Status: Indicates if anomaly detection policies are active and compliant.
  • Performance Metrics: Monitors detection accuracy and resource utilization.

Actions

To view anomaly detection data and alerts:
  1. Go to Security > Anomaly Detection.
  2. The Anomaly Detection page appears with the Anomaly Summary Panel showing detected anomalies with severity and impacted resources.
  3. Review Topology View to visualize anomaly location and affected gateways.
  4. Use Flow Data Panel to inspect traffic flows triggering anomaly alerts.
  5. Check Policy Status for anomaly detection policy compliance and Performance Metrics for detection accuracy and resource utilization.
The page provides real-time visibility into unusual patterns and potential security threats across cloud environments.

Parameter Details

Sl. No.CoPilot Parameter NameDescription
1Anomaly SummaryLists anomalies detected with severity levels.
2Topology ViewDisplays network topology highlighting impacted gateways.
3Flow DataShows source/destination IPs and ports for anomalous traffic.
4Policy StatusIndicates if anomaly detection policies are enforced.
5Detection AccuracyF1 score for anomaly detection algorithms.
6Response TimeAverage time to respond to detected anomalies.
7Resource UtilizationCPU and memory usage for anomaly detection services.