Understanding Advanced Filter Options
The filter manager provides advanced filtering options. You can filter values for any field in the log.
To use advanced filter options:
- Click the plus sign (+) next to the Filter By option.
Table 1 shows the advanced filter options and includes a description, and examples of each. Table 2 shows the operators supported on the IP address column fields.
Table 1: Advanced Filter Options
Filter Options | Description | Example |
---|---|---|
Filter String | The options available are:
|
|
Term Operator | The options available are:
|
|
Key | The options available are:
|
|
Operator | The options available are:
|
|
Value | The options available are:
|
|
Table 2: Operators Supported on the IP Address Column fields
Column Name | Usable Operators | Unusable Operators |
---|---|---|
Src IP | equals, notequals, exists, notexists, =, != | startswith, endswith, contains, <, <=, >, >= |
Dst IP | equals, notequals, exists, notexists, =, != | startswith, endswith, contains, <, <=, >, >= |
Src IPv6 | equals, notequals, exists, notexists, =, != | startswith, endswith, contains, <, <=, >, >= |
Dst IPv6 | equals, notequals, exists, notexists, =, != | startswith, endswith, contains, <, <=, >, >= |
NAT Src IP | equals, notequals, exists, notexists, =, != | startswith, endswith, contains, <, <=, >, >= |
NAT Dst IP | equals, notequals, exists, notexists, =, != | startswith, endswith, contains, <, <=, >, >= |
Log Source | equals, notequals, exists, notexists, =, != | startswith, endswith, contains, <, <=, >, >= |
Src Port | equals, notequals, exists, notexists, =, !=, <, <=, >, >= | startswith, endswith, contains |
Dst Port | equals, notequals, exists, notexists, =, !=, <, <=, >, >= | startswith, endswith, contains |
NAT Src Port | equals, notequals, exists, notexists, =, !=, <, <=, >, >= | startswith, endswith, contains |
NAT Dst Port | equals, notequals, exists, notexists, =, !=, <, <=, >, >= | startswith, endswith, contains |
Log ID | equals, notequals, exists, notexists, =, !=, <, <=, >, >= | startswith, endswith, contains |
![]() | Note: While creating the filters, if you use invalid or unsupported operators (as described in the table), the result displayed will be ignore the invalid filter condition. |