Cyberspatial News

Detailed Connections, Reporting, and Exports

February 14, 2024
We've added some great new features to Teleseer. Let's check them out!

Connections Table

We've removed the Protocol Flows panel and replaced it with a more detailed Connections table.

image
Example Connections table

The Connections table allows users to view (and search) all network connections within the current project. Each connection contains the following information:

  • Time
  • Source
  • Source IP*
  • Source MAC*
  • Destination
  • Destination IP*
  • Destination MAC*
  • Source Port*
  • Destination Port
  • Protocol
  • Upload (bytes)
  • Download (bytes)
  • Total (bytes)
  • Ratio (Upload/Download)
  • Duration
  • Upload Packets*
  • Download Packets*
  • Total Packets*

*can be added via the View Settings dropdown

The visible connections can be exported to a CSV file.

Users can filter the connections by clicking on one or more host devices or by a Timeline block selection.

Finally, users can hover over a connection to reveal the source and destination devices within the network topology view as well as the relevant blocks within the Timeline.

Dashboard

Users have requested the ability to generate reports and we have delivered! The Teleseer Dashboard contains a variety of tables and charts that can help users identify who is on their network and what is happening on their network.

image
Example chart

Here is a list of the supported tables and charts:

Key Events and Metrics

This slide outlines key network events, providing a snapshot of your network's security posture.

Project Overview

This slide outlines key metrics and provides a high level overview of your network project.

Subnet Details

This slide shows: VLAN the subnet belongs to, asset count for each subnet, connection counts and history.

Subnet Connection Volumes by Protocol

This heat map shows connection densities for different protocols from subnets on your network. Hot spots indicate high volumes while cold spots show low ones.

Total Data Transfer

This chart displays the ratio of data uploads to downloads in bytes.

Total Bandwidth History

This chart tracks historical data transfer rates over your selected timeframe.

Subnet-to-Subnet Internal Connection

This Sankey diagram shows the volume of top subnet connections, their traffic types, and destinations.

Traffic Destinations

This bubble map shows the volume of connections to world destinations.

Destination Port Connections by Protocol

This heat map shows connection densities for different protocols and the Hot spots indicate high volumes while cold spots show low ones.

Top Protocols by Connection Volume

This stacked bar chart shows a ranking of top protocols by their upload and download connections volumes.

Top Host Types

This stacked bar chart shows a ranking of top protocols by their upload and download connections volumes.

Top Operating Systems

This bar chart shows a ranking of top operating systems on your network.

Top Hardware Vendors

This bar chart shows a ranking of top hardware vendors on your network.

IP address allocation by hardware vendor

This scatter plot shows the distribution of IP address last octets by hardware vendor.

Timeline Upgrade

We've made several enhancements to the Timeline in an effort to enhance the user experience.

  • Row Selection: Users can now select an entire protocol row within the timeline.
  • Scrollbars: The timeline now contains vertical scrollbars.
  • Show All: The timeline now has a Show All button that allows users to easily display the entire timeline.

Timeline Export (Teleflow)

The Timeline can now be exported to a CSV file! Users can export the full timeline, the current view, or the currently selected traffic.

Portal System

image
Example portal highlight

Introducing the new portal system! When a user hovers over a row within the Connections table, the relevant hosts will be highlighted within the network topology and the corresponding blocks within the Timeline will be highlighted. When a user hovers over a row within the Credentials table, the relevant hosts will be highlighted within the network topology.

General Enhancements

  • External Hosts: Added the following columns to the External Hosts table: Hop Count, Country, Region, City, ASN Route
  • PCAP Export: The PCAP export has been moved to the Timeline.

<-- All Blogs