SG UTM

Suggest, discuss, and vote on new ideas for SG UTM. The ultimate network security package.

Suggest an Idea...

Full URL Report by user or Source

A report per user or source for the accessed URLs (Full URL) not just the accessed sites.
And Example showing Reason behind this:
Users can abuse the system advising they are using youtube for work related research while they actually streaming music videos or watching comedy stand ups.
And since they have access to youtube, when we pull a report. it will show that the user has access the website but no details about the full URL, that point to the specific video he was watching.
If we go from the web protection report, the information are already there which can be copied and dumped in an excel spreadsheet and pin point it.
However this practice is painful and time consuming.

Which there's a report where you can select the user and export all the Full URL they have accessed.

Best Regards

3 votes
Sign in
Check!
(thinking…)
Reset
or sign in with
  • facebook
  • google
    Password icon
    Signed in as (Sign out)

    We’ll send you updates on this idea

    Michael BMichael B shared this idea  ·   ·  Flag idea as inappropriate…  ·  Admin →

    2 comments

    Sign in
    Check!
    (thinking…)
    Reset
    or sign in with
    • facebook
    • google
      Password icon
      Signed in as (Sign out)
      Submitting...
      • FosterDougFosterDoug commented  ·   ·  Flag as inappropriate

        This information is available in the logs, but it is difficult to extract because the unique format used for log files requires custom development to load it into a database that can be queried. It would be great if we could perform custom queries against the UTM log files rather than having to build our own reporting system.

        And I have built my own reporting system, because the three most important reports for me are (1) (your request for) user activity reports when employee misconduct is suspected, (2) uncategorized sites (particular if the user was warned, then clicked to proceed, then connected succesfully), and (3) domains with certificate problems. None of these are available from either UTM or IView.

      • Stephan HenkeStephan Henke commented  ·   ·  Flag as inappropriate

        it will also be usefull to get an Information in this Report, if the Full-URL was scaned by AV engine and if the user got the "Download AV-Scan Portal Information"

      Feedback and Knowledge Base

      icon-data-protection icon-endpoint-protection icon-phish-threat icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-central icon-sophos-mobile icon-sophos-utm icon-sophos-utm icon-sophos-utm icon-web-appliance icon-xg-firewall icon-xg-firewall icon-lightbulbCreated with Sketch.