Focus
Focus
Table of Contents

Flow Detail

Lets learn more about the flow details table in the Prisma SD-WAN activity tab.
The Flow Detail provides information on the following attributes of the flow:
Field
Description
Flow Decision Bitmap
Lists the decisions taken for the flow as it was processed.
Source IP (Port)
Source IP and port of the flow origin (depending on the direction of the flow).
Destination IP (Port)
Destination IP and port of the destined address of the flow (depending on the direction of the flow).
Application Name
Name of the application for a particular flow or transaction.
Application Category
Application category for the flow.
Alt Application
Alternate application is usually the parent application.
Security Policy Rule
Security policy rule(s) that are applied for the flow.
Source Zone
Source zone (Zone Based Firewall) for the flow.
Destination Zone
Destination zone for the flow.
Action
Action taken to allow or deny the policy rule applied for the flow.
Path Policy Set
Path policy set used for the flow.
Path Policy Rule
Path policy rule used for the flow.
Path Network Context
Path policy context used for the flow.
Path Source Prefix
Path source prefix used for the flow.
Path Destination Prefix
Path destination prefix used for the flow.
QoS Policy Set
QoS policy set used for the flow.
QoS Policy Rule
QoS policy rule used for the flow.
QoS Network Context
QoS network context used for the flow.
QoS Source Prefix
QoS source prefix used for the flow.
QoS Destination Prefix
QoS destination prefix used for the flow.
Protocol
Protocol detected for that particular flow.
Chosen WAN Path
WAN path chosen for that particular flow.
Endpoint
Endpoint for the flow.
Traffic Type
Traffic type such as transactional, bulk, rt-audio or rt-video.
Priority Class
Priority Class as defined by the Priority Policy.
Flow Direction
Flow direction at the start of transaction.
Start Time
Time when the first packet in this flow was detected.
Last Activity
Time of the flow when the last packet was detected.
New Flow
First record for this flow that was detected in the current time window.
Packets
Number of packets exchanged between client and server.
Bytes
Number of bytes exchanged between client and server.
DSCP Fields Seen (LAN > WAN)
DSCP markings seen between LAN-to-WAN that is used to change the priority of the packets as they traverse the network.
DSCP Fields Seen (WAN > LAN)
DSCP markings seen between WAN-to-LAN that is used to change the priority of the packets as they traverse the network.
OOO Packets
Out of order packets from the client to a server and the server to a client.
SACK Packets
Selective acknowledgment of the packets.
Retransmit Packets
Number of TCP retransmit packets.
Retransmit Bytes
Number of TCP retransmit bytes.
RST
Number of TCP reset packets sent.
SYN
Number of TCP SYN packets sent.
FIN
Number of TCP FIN packets sent.
VLAN
Displays the VLAN used for the flow.
average_rtt
Average round trip time calculated.
average_srt
Average server response time.
average_pg
Average inter-packet gap (a measure of network congestion and packet loss) calculated.
init_success
Indicates if the TCP session initiation was successful.
max_rtt
Maximum round trip time detected.
max_srt
Maximum server response time at the application level.
max_pg
Maximum inter-packet gap (a measure of network congestion and packet loss) detected.
min_rtt
Minimum round trip time detected.
min_srt
Minimum server response time at the application level.
min_pg
Minimum inter-packet gap (a measure of network congestion and packet loss) detected.
success_transactions
Number of successful transactions.

Recommended For You