Securd Dashboard Overview
Understand how to use the Securd dashboard to analyze threats, DNS activity, and Greywall defense metrics in a multi-tenant environment.
Note: Each Company (tenant) in Securd has a unique dashboard and isolated view of DNS activity and threat metrics.
The Securd Dashboard provides administrators with a high-level, time-based summary of DNS security insights and activity for each individual Company. It includes interactive visualizations to support threat monitoring, policy effectiveness analysis, and anomaly detection.
🔍 Threat Summary
The Threat Summary section highlights the top observed threats based on DNS queries during your selected time frame.
Sub-tabs include:
- Context: Displays the types of threats (e.g., malware, phishing, tracking)
- Network: Shows target protocol, Autonomous System Number (ASN), and country
- Source: Indicates which static sites or virtual sites generated the threat activity
- Domain Trust Activity:
- Shows the average Graph DNS™ Rank of domains queried
- Higher values indicate elevated risk based on domain behavior and trustworthiness
🧱 Greywall Activity
The Greywall Activity panel displays the volume of newly observed or repeat DNS domains and how they are handled.
- Shows whether Greywall is operating in Learn or Active mode
- If enabled, new hosts will be temporarily blocked until their assigned release time expires
✅ Accept vs ❌ Block Activity
This set of charts visualizes the top accepted and blocked DNS queries based on threat intelligence and policy rules.
Sub-tabs include:
- Context: Threat classification of queries
- Network: Protocol type, ASN, and geographic data
- Source: Site or virtual site origin of the query
🚫 Top Blocked Connections
Visual representation of the top 5 blocked DNS queries, helping you identify persistent threat sources or misconfigured systems.
Sub-tabs include:
- Context: Type of blocked threat (e.g., C2, spyware, botnet)
- Network: ASN, protocol, country
- Source: Static or virtual source site
🟢 Top Accepted Connections
Shows the top 5 accepted DNS queries based on request volume.
Note: This panel uses the same breakdown format as the Blocked panel, helping you compare trusted and untrusted sources with consistency.
Sub-tabs include:
- Context
- Network
- Source
📈 DNS Activity Metrics
This section reports on the total number of DNS responses returned within your selected time window.
Key Metrics:
- NOERROR: DNS resolution was successful
- NXDOMAIN: DNS query failed — domain does not exist
- SERVFAIL: DNS query failed — server could not complete request
These metrics help you identify resolution patterns and failure trends across your organization’s DNS footprint.
Summary
The Securd dashboard provides actionable visibility into DNS security posture at the tenant level. With threat summaries, domain trust scoring, Greywall enforcement activity, and DNS-level analytics, administrators can quickly detect threats, validate policies, and maintain network hygiene.
Use this dashboard as your central command center for DNS threat detection and response across all Securd Companies.
Updated 1 day ago
Learn more about how tenant isolation works in Securd.