Activity Insights has advanced filters to help you focus on the
security aspects that matter to your deployment. The available filters are:
Time Range- view data for a specified
time period
Scope Selection- data specific to a
deployment: Prisma Access, NGFW
Subtenant- the Prisma Access instance
for which the data is displayed
User Name- view activities involving an
individual user
Application- network events concerning a
specific application
Application Type- type of application; SaaS,
internet, private
Threat Action- view specific to allowed
or blocked threats
URL Risk Level- data concerning the URLs
with specific risk level; high, medium, or low
Source Location- view activity that
originated from a specific location
Destination Location- view activity
targeted to a specific region
URL- activity related to a specific URL
accessed.
SaaS Application- data concerning a
specific SaaS application
Sanctioned Application- view data for
sanctioned or unsanctioned applications only
Port Type- sort traffic from
applications traversing through standard or nonstandard ports.
Protocol- see traffic that uses a
specific TCP, UDP, or HTTP ports
Source Type- view activity generated from a
particular device, users, or others.