SonicWall AI for Monitoring & Insight (SAMI) – Overview and Sample Prompts

Description

SonicWall AI for Monitoring & Insight (SAMI) is a sophisticated Artificial Intelligence (AI) system designed to simplify security management. It provides instant, context-aware answers to help you respond faster and make smarter security decisions.

It is useful for SonicWall Unified Management administrators who work for Managed Service Providers (MSPs). 

Image

The main features supported through SAMI application are:

  • Firewall Analytics - SAMI can fetch insights into the firewall inventory, device status, configuration, and licenses details. This allows administrators to make informed decisions based on comprehensive data analysis.
  • Traffic Analytics - SAMI helps analyze data related to Network, IP addresses, Threats, applications, users, topology, and traffic.
  • Task Automation, such as firewall firmware upgrades - SAMI expediate firewall firmware upgrade, enhancing the efficiency with simplified user experience.

Here are some sample prompts for each category :

  • Firewall Analytics
    • List all the tenants
    • Show me the list of firewalls.
    • Show me a list of my offline firewalls
    • What is the uptime of the firewalls?
    • List all online firewalls
    • Which firewall licenses have expired or are nearing expiry?
    • List all firewalls along with their security services
    • How many firewalls are using local logins
    • Which of my firewalls do not have TOTP enabled for local admins to login?
    • What is the uptime of the firewalls?
  • Traffic Analytics
    • What are the top applications by sessions on the network, focusing on web applications?
    • Show me a list of top users
    • What are the top locations by data transferred in the last 30 days?
    • Get me the top users IP Addresses in the last 24 hours
    • Which web apps are being visited the most on my network?
    • How many firewalls are using local logins
    • What are the top firewalls by sessions, observed threats, and any critical security events that require immediate attention?
    • Get me top users by session in last 6 hours
    • Show me the top applications by sessions for the last 10 days
  • Task Automation
    • List all firewalls running out-of-date firmware
    • Latest firmware for Firewall X
    • Please upgrade the firmware for Firewall X

 

For more information, please refer to the links below:

Detailed SAMI feature guide: here

YouTube video: here

not finding your answers?