It is possible to see the rule usage of cOS Core IP rule set entries. This is done by selecting the Rules Monitoring option from a firewall's context menu in the Firewalls tab.
The function can also be selected using the Rules Monitoring option in the Firewalls tab toolbar ribbon. Below is some example output from the option.
The example above shows the entries in the IP rule set and indicates with a green disk icon those rules that are being used and the number of matches on those rules since the last reconfiguration of cOS Core. The disk icon can have the one of the following behaviors:
Red
The IP rule entry exists in the InControl config but not on the firewall. An updated configuration may not yet have been deployed.
Yellow
More than one IP rule set entry with the same name and it is not possible to differentiate between the entries. All entries with the same name will see the same hits.
Green
This indicates the IP rule set entry has triggered and flashes (then fades out) every time the counter for that entry is incremented.
Expanding the Graph
Note that it is possible to expand the usage graph in the default display by dragging that column to the right.
The hot totals in the usage display information starts, by default, from the last cOS Core reconfiguration. However, the totals can be reset at any time by clicking on the Reset Statistics link at the bottom right of the display.
The usage display can be save to a file in CSV format by clicking on the Export link at the bottom left of the display.