Product SiteDocumentation Site

1.10. Examples: rb_flow

Show the flows generated on each sensor:
{"queryType": "topN", "dataSource": "rb_flow", "granularity": "all", "dimension": "sensor_name", "threshold": 1000, "metric": "flows", "aggregations":[{"type":"longSum", "name":"flows", "fieldName":"events"}], "intervals":["2015-04-30T21:22:00/2015-04-30T23:02:00"] }
Show the bytes downloaded on each campus:
{"dataSource":"rb_flow", "granularity":"all", "intervals":["2015-05-04T14:47:00/2015-05-04T14:48:00"], "queryType":"groupBy", "aggregations":[{"type":"longSum", "name":"bytes", "fieldName":"sum_bytes"}], "dimensions":["campus"], "orderBy":{"type":"default", "limit":25, "columns":[{"dimension":"bytes", "direction":"DESCENDING"}]}}
Show the bytes downloaded from youtube on each campus:
{"dataSource":"rb_flow", "granularity":"all", "intervals":["2015-05-04T14:47:00/2015-05-04T14:48:00"], "filter":{"type":"regex", "dimension":"http_host", "pattern":"(?i)^.*youtube.com.*$"}, "queryType":"groupBy", "aggregations":[{"type":"longSum", "name":"bytes", "fieldName":"sum_bytes"}], "dimensions":["campus"], "orderBy":{"type":"default", "limit":25, "columns":[{"dimension":"bytes", "direction":"DESCENDING"}]}}
Show the bytes downloaded from youtube or instagram on each campus:
{"dataSource":"rb_flow", "granularity":"all", "intervals":["2015-05-04T14:47:00/2015-05-04T14:48:00"], "filter":{"type":"or", "fields":[{"type":"regex", "dimension":"http_host", "pattern":"(?i)^.*youtube.com.*$"}, {"type":"regex", "dimension":"http_host", "pattern":"(?i)^.*instagram.*$"}]}, "queryType":"groupBy", "aggregations":[{"type":"longSum", "name":"bytes", "fieldName":"sum_bytes"}], "dimensions":["campus"], "orderBy":{"type":"default", "limit":25, "columns":[{"dimension":"bytes", "direction":"DESCENDING"}]}}
Show the APs used per minute (active access point) accessing to youtube or instagram
{"dataSource":"rb_flow", "granularity":{"type":"period", "period":"pt5m", "timeZone":"Europe/Berlin", "origin":"2013-12-12T12:00:00.000+01:00"}, "intervals":["2015-05-04T14:47:00/2015-05-04T14:48:00"], "filter":{"type":"or", "fields":[{"type":"regex", "dimension":"http_host", "pattern":"(?i)^.*youtube.com.*$"}, {"type":"regex", "dimension":"http_host", "pattern":"(?i)^.*instagram.*$"}]}, "queryType":"timeseries", "aggregations":[{"type":"cardinality", "name":"result", "fieldNames":["wireless_station"]}]}
Show TOP url browsed for on client (MAC: "94:39:e5:74:3e:36")
{{"dataSource":"rb_flow", "granularity":"all", "intervals":["2015-05-04T14:47:00/2015-05-04T14:48:00"], "filter":{ "type":"and", "fields": [{"type": "not", "field": {"type": "selector", "dimension": "http_host", "value": ""}}, {"type":"selector","dimension":"client_mac","value":"94:39:e5:74:3e:36"}]}, "queryType":"groupBy", "aggregations":[{"type":"longSum", "name":"bytes", "fieldName":"sum_bytes"}], "dimensions":["http_host"], "orderBy":{"type":"default", "limit":25, "columns":[{"dimension":"bytes", "direction":"DESCENDING"}]}}