> For the complete documentation index, see [llms.txt](https://docs.link11.com/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.link11.com/product-guides/network-ddos/interface/dashboard.md).

# Dashboard

<figure><img src="/files/0AWt9yII7RByhNt36y4f" alt=""><figcaption></figcaption></figure>

The Dashboard provides a graphical display of current traffic conditions.

{% hint style="info" %}
This page currently shows IPv4 data only. A future release will add data for IPv6 as well.
{% endhint %}

## Filtering results

Along with the ability to select date/time ranges, users can choose to display data for some or all of the configured instances (also known as BGP Sessions). Selecting the **All Instances** button will display a menu of available instances for display:

<figure><img src="/files/7TuaE1wJ0H95Hb4Waat9" alt=""><figcaption></figcaption></figure>

## Bandwidth graph

<figure><img src="/files/d9LR2dCooA391m02pAD8" alt=""><figcaption></figcaption></figure>

### **Total Cluster Traffic:**

The total amount of traffic passing through the DDoS protection cluster, including both inbound and outbound traffic.

### **95th percentile:**

A statistical measure that represents the traffic commitment a customer made in their contract. This value is rounded to the next full Mbit.

Data Traffic exceeding the 95th percentile will be billed at a rate specified in the contract. The exact value of exceeded bandwidth can be seen in the bill.

**Note:** Link11 Dashboards offer a number of interval options which show the average traffic rate seen during that interval. Due to this averaging it is possible that at higher intervals the 95th percentile “line” appears to be completely above the displayed bandwidth data. In cases like this, please select a shorter interval to see more accurate traffic spikes.

### **Inbound cluster traffic:**

The total amount of traffic directed towards the proxy server from external sources.

### **Outbound cluster traffic**

The total amount of traffic that is directed away from the proxy server to external destinations.

## Packets graph

<figure><img src="/files/NqGo4Z4feERyG6U90ETl" alt=""><figcaption></figcaption></figure>

This graph provides an overview of the combined TCP packet activity over time by showing the number of TCP packets received. This can be useful for identifying potential issues or anomalies.

## Threats graph

<figure><img src="/files/TtAyDKiT8tMMq5ilYfQi" alt=""><figcaption></figcaption></figure>

### **DDoS Attack**

DDoS Attacks correlate to periods of time when the Link11 Attack Mode was active for the selected Instance(s). The width of each attack denotes its duration. The height of the DDoS Attack indicator is **not** indicative of the size of the attack, and will expand to fill the chart area.

### **DDoS Event**

DDoS Events correlate to suspicious traffic patterns detected by Link11 that a customer might want to investigate. DDoS Events often, but do not always, precede or happen in conjunction with DDoS Attacks.

## Number of Threats

<figure><img src="/files/QV86AAiguLuPycTAgtjL" alt=""><figcaption></figcaption></figure>

This control displays the tallied number of DDoS Attacks and DDoS Events. More details can be found in the [Dashboard's Threats graph](#threats-graph).

## Last 50 Blocked IPs

<figure><img src="/files/MntxNqsfa0oK5Loe9yIy" alt=""><figcaption></figcaption></figure>

This displays the last 50 blocked IPs with information on Attacker IP, Attacker ISP, originating Country, and the status of the Attacker IP (i.e., whether or not it is still being blocked).&#x20;

Note: this widget does not follow the data and time selections made in the Time Picker.

More information is available by selecting the **Show Blocklist** button, which will navigate to the Blocklist page.
