---
title: "Monitor Anti-Malware security engine"
canonical: "https://docs.aryaka.com/space/KNOW/43221166/Monitor%20Anti-Malware%20security%20engine"
format: markdown
---
The Engine: Anti-Malware page allows you to monitor the amount of traffic that was permitted or denied by your Anti-Malware rules and the action that was taken based on your rule configuration for the selected scope and time period. If it is not already open, complete the following procedure to view the Engine: Anti-Malware page: To view the Engine: Anti-Malware page Log in to MyAryaka. The Home page appears. Click  Security  >  Monitor  in the left navigation pane. The Security: < siteName > page appears and displays a series of tables and graphs.  Click the  Scope  field and select the site or node for which you want to monitor the Anti-Malware security engine. Click the  Time  field and select the time period for which you want to monitor the Anti-Malware security engine. Click the  Anti-Malware  security engine in the Engine Sequencing diagram. The Engine: Anti-Malware page appears and displays an Engine Sequencing diagram and a series of graphs, which are described in detail later in this topic. Engine Sequencing diagram The Engine Sequencing diagram displays the security engine that the Anti-Malware engine receives traffic from and the engine it sends traffic to after inspection. Click the source engine to view the  Monitor Secure Web Gateway security engine  page. Click the destination engine to view the  Monitor Tenant Restriction security engine  page.  The following graphic shows an example of the Anti-Malware engine: The red value displayed on the Anti-Malware engine indicates the number of files that were dropped or denied by the engine over the selected time period. Hover over the blue circle to the left of the Anti-Malware engine to view the number of inbound files for the selected time period. Hover over the blue circle to the right of the Anti-Malware engine to view the number of outbound files for the selected time period. Included graphs The sections that follow describe each of the graphs included on the Engine: Anti-Malware page. Files This time series graph displays the total number of files, the number of permitted files, and the number of denied files for the selected scope over the selected time period. File Verdict by Action This sunburst graph displays the distribution of Anti-Malware verdicts and the actions taken as a result of those verdicts for all files. The inner ring shows the total number of files, the middle ring shows the distribution of files with different Anti-Malware verdicts (good file, bad file, unknown file reputation, or unsupported), and the outer ring shows the actions that were taken (enforce, ignore, skip, or log) for each Anti-Malware verdict.  Rule actions are configured in your  Anti-Malware rules . Anti-Malware Rule Actions by Verdict This sunburst graph displays the distribution of Anti-Malware rule actions that were taken as a result of Anti-Malware verdicts for all files. The inner ring shows the total number of files, the middle ring shows the distribution of files to which different rule actions were applied (enforce, ignore, skip, or log) based on the Anti-Malware verdicts, and the outer ring shows the verdict (good file, bad file, unknown file reputation, or unsupoprted) of the file that had the rule action applied to it.  Rule actions are configured in your  Anti-Malware rules . Risky Sites This bar graph displays the top ten licensed sites that had files classified as risky during the selected time period.  Blocked Sites This bar graph displays the top ten licensed sites that had files blocked during the selected time period.  The Risky Sites and Blocked Sites graphs are only displayed when the Scope field is Global or All Sites. Risky Nodes This bar graph displays the top ten private access nodes that had files classified as risky during the selected time period.  Blocked Nodes This bar graph displays the top ten private access nodes that had files blocked during the selected time period.  The Risky Nodes and Blocked Nodes graphs are only displayed when the Scope field is Global or All Nodes. In this topic Related topics Configure an Anti-Malware ruleset Monitor security