MilliSec SOC Intranet Dashboard

Real-time monitoring • Log analysis • Threat detection • Security alerts

Total Logs Processed

2.4M

Critical Alerts

18

Blocked IPs

63

Systems Online

12/13

Recent Security Alerts

Time Source IP Event Severity
13:05 45.77.19.4 Failed SSH Brute Force High
12:58 103.21.66.9 Multiple 401 API Responses Medium
12:42 185.16.23.11 Nginx Suspicious Request Pattern Medium
12:30 10.8.0.6 Successful VPN Login Low

Live Log Analysis

[INFO] Nginx reverse proxy started successfully
[INFO] OpenVPN user authenticated: employee01
[WARNING] 5 failed login attempts detected from 45.77.19.4
[ALERT] High-risk source IP added to watchlist
[INFO] Backend API response latency: 132ms
[INFO] Splunk HEC event forwarded successfully

Security Status

  • Web Server: Online
  • Database: Online
  • OpenVPN: Online
  • SIEM Connection: Connected
  • MFA Service: Pending Test
  • Threat Score: Elevated

Log Sources

  • Nginx Access Logs
  • Nginx Error Logs
  • OpenVPN Logs
  • Backend API Logs
  • Authentication Logs
  • System Events

Analyst Notes

  • Review repeated SSH failures from external IP.
  • Validate recent API authentication anomalies.
  • Confirm VPN-only access for intranet resources.
  • Forward selected events to Splunk HEC.