Describes Report Scheduling in Cisco Secure Access. Various reports in Secure Access can be configured so that Secure Access regularly emails you a summary of that report.
Various reports in Secure Access can be configured so that Secure Access regularly emails you a summary of that report. You can configure filters for these reports so that they only contain the information you want. Each emailed report includes an HTML version of the report, a .ZIP file containing a CSV file with the entire data set, and a link to Secure Access and the report. See Schedule a Report.
It is recommended to open the CSV file format of scheduled reports received through email using Numbers (for Mac users) or Excel (for Windows users). This ensures optimal formatting and ease of data analysis.
Reports can be scheduled so that you receive an email daily, weekly, or monthly.
You can unsubscribe from a report email through the Unsubscribe link at the bottom of every report email.
There is a limit of 100 scheduled reports per organization.
You can schedule the following reports:
-
Remote Access Log —Lists users that have remotely connected to Secure Access and requested access to destinations. The report provides key session details and relevant fields to aid in debugging, troubleshooting, and monitoring remote access activity within your environment.
-
Activity Search—Activity from the identities in your environment over a selected time period. Filterable by identity name, destination, source IP, response, content category, and security category.
-
Network Connectivity Log —Lists events for each tunnel within your Network Tunnel Groups. This log provides key details to help you troubleshoot connectivity issues, monitor tunnel activity, and confirm that traffic is securely transmitted between devices and Secure Access.
-
Total Requests—Total requests for destinations from your organization over the selected time period. Filterable by identity.
-
Activity Volume—Total queries within your organization broken down by security categories and results over the selected time period.
-
Top Destinations—A list of the top traffic-generating identities over the selected time period. Filterable by identity and destination.
-
Top Categories—A list of the top content categories for your organization over the selected time period. Filterable by identity and response.
-
Data Loss Prevention —Lists data violations detected through the DLP Real Time and SaaS API rules.
-
Cloud Malware Report—Provides an overview of malicious files within your environment and details the potential risk and exposure these files present.
-
Events Report—Provides unified, correlated visibility into all security and network events by linking every stage of a traffic flow with a unique Event Correlation ID. This enables end-to-end tracking, streamlined troubleshooting, and comprehensive compliance monitoring across your security environment.
Cisco Secure Access uses SparkPost as the service to deliver email. Some mail filters, either at the local level or even at a transport layer (like an ISP) may block communications from SparkPost as marketing-related spam. If after scheduling your reports you do not receive them, check the spam filter at your mail server gateway. Whether your mail server gateway is hosted locally or in the cloud, it's likely the email was quarantined at that level.
Secure Access sends its reports from scheduled-reports-feedback@opendns.com.
Check Your Spam Folder
Secure Access uses SparkPost as the service to deliver email. Some mail filters, either at the local level or even at a transport layer (for example, an ISP) may block communications from SparkPost as marketing-related spam. If you do not receive your scheduled reports, check the spam filter at your mail server gateway. Whether your mail server gateway is hosted locally or in the cloud, it's likely the email was quarantined at that level.
Unsubscribe From a Report
You can unsubscribe from a scheduled report at any time by clicking the Unsubscribe link at the bottom of the email.