I would like to request a search function somewhere on the GUI as seen in the image. The search function should allow for the user to search for any terms: hosts, IP addresses, etc. The search function should populate findings in real time. For example if the user starts to type: “192.168” then the search results should be populating in real time narrowing down the search results while typing.
This would make it a lot easier and fast to find anything specific the user is looking for in a specific area.
Further, take a look at the third column in the picture “Traffic Type” (Apps, Hosts, Traffic Type columns). This is pretty much useless other than letting me know what protocols were used at some point.
I should be able to click on each of these in the Traffic Type column and should see exactly what hosts were connected to with this protocol and what apps were used when using this protocol.
We really need granular level search, sorting and log manipulation.
If I search or click on an app, I should see all the hosts associated to it, & traffic types used.
If I search or click on a host, I should see the app that was used with the host and the traffic types.
If I search or click on a traffic type, I should see the apps and hosts used with that traffic type…
All should be manipulable, all able to copy. Because many are not.
As far as the three columns themselves. At minimum I should be able to click at the top of the column to organize them pretty much like Excel. Rearrange them by alphabetical A-Z or Z-A, time, traffic size etc.
I receive network level IDS events showing that a machine is talking with a known malicious server. Search would be really useful in GlassWire, as then I could search to drill down to find out what application/service is specifically is trying to talk to that known malicious server quickly. Instead of clicking the more icon, sorting by host, and scrolling through the list to find it.
Adding my vote to this as well. I’ve had several instances when I’ve wanted to search for an IP address. It’s annoying having to manually click on Hostnames to look for one specific IP address.
The concept of Glasswire is fantastic, but it 100% needs a host, IP, app search capability. I had a TCP/137 packet to a known malicious IP address but cannot figure out what made the call because it was 14Hrs ago and don’t find the IP and without knowing the host name that was used, it’s not possible to find what made the call. Even if I could export all of the data then search, that would be helpful, but a quick search in Glasswire would be epic.
Nice use case. Here’s another.
I do IT work in high school & college level settings where it’s usually necessary to have some type of web filtering. Occasionally engineering and comp sci software used in our programs is crippled when a required host resource is blocked by a campus web filter. When that happens, the web filter IP comes up instead of the domain requested by the software. A search feature would be a magic bullet to identify any instance where that IP shows up improperly.