The Umbrella Documentation Hub

Welcome to the Umbrella documentation hub. Here you'll find our comprehensive guides designed to help you use with Cisco Umbrella.

Get Started    

Top Identities Report

The Top Identities report is a list of the top identities with the most activity by DNS and/or firewall requests for your Umbrella organization over the selected period. It is filterable, schedulable, and you can export the results to a CSV file.

Understand the Top Identities Report

Top Identities Report

Filters

  • Traffic Type—Select either All, DNS or Proxy. By default, All is selected, so both DNS and Proxy are shown.
  • Response—Select Allowed, Blocked, or Proxied. By default, nothing is selected, so all responses are shown.
  • Identity Type—Select the identity types to show. By default, none are selected, so all are shown.
  • Security Categories—Select the security categories to show. By default, none are selected, so all are shown.
  • Content Categories—Select the content categories to show. By default, none are selected, so all are shown.

Report Fields

  • Identity—The identity.
  • Requests—The number of requests the identity sent for the selected period.

Top Domains Report < Top Identities Report > Admin Audit Log Report

Top Identities Report


Suggested Edits are limited on API Reference Pages

You can only suggest edits to Markdown body content, but not to the API spec.