Detections

Prev Next

In this article, we will explain Detections, another key function of Skylight interceptor.

Overview

Detections are modules that analyse traffic and generate alerts when suspicious traffic activity is recognized. You can easily control all detections in Interceptor and enable or disable them as needed.

Accessing Detections

â–º To access detections:

  1. Go to Settings â–º Security â–º Detections

accessing detections.gif

Enabling Network Detections

â–º To enable network detections:

  1. Go to Settings â–º Security â–º Detections
  2. Enable or disable network discovery.

enable.gif

enable disable.gif

Accessing Edit Policy

â–º To edit a policy:

  1. Go to Settings â–º Security â–º Detections
  2. Select the Policy you wish to edit.
    An Edit Policy dialog will appear.

This dialog will also include a non-editable short description of the detection as well as an indication of its severity.

edit policy.gif


Note: There are no limits for detections so you should be careful with parameters.

Editing Detection Allowlists

â–º To edit detection allowlists:

  1. Go to Settings â–º Security â–º Detections
  2. Select a detection from the policy name list.
  3. From the Edit Policy menu, you can add an allowlist. This will allow you to select from the field pull-down menu, either: Source IPs or Destination IPs, along with other specific parameters relating to a specified policy. For example, Public suffix, as shown below.

edit whitelist.gif

© 2025 Cisco and/or its affiliates. All rights reserved.
 
For more information about trademarks, please visit: Cisco trademarks
For more information about legal terms, please visit: Cisco legal terms

For legal information about Accedian Skylight products, please visit: Accedian legal terms and tradmarks