The ThreatINSIGHT Sensor performs deep packet inspection of all observed network traffic and extracts out key protocol metadata for processing by the Gigamon ThreatINSIGHT data pipeline. This metadata is organized into records called events. For more information about events, refer to the "Network Events" section in the ThreatINSIGHT Portal Guides.
To view the network events in Gigamon ThreatINSIGHT Portal, go to Investigate > Events. You can run a query to view the events generated in the Last 1 Hour, Last 24 Hours, Last 7 Days, or Last 30 Days. For example, to view all the events generated for a specific ThreatINSIGHT Sensor alias, run the following query:
sensor_id = "test60"