Add additional forensic information to log search
I’d like to request a small enhancement to the Logs interface that would make forensic analysis much easier, especially on mobile devices. When performing a hostname or IP search in the Logs view, the down‑arrow expander already provides contextual actions such as “Show tracker insights.” I’d like to suggest adding a second hyperlink only in the search results view:“Show proximal activity”. When clicked, this action would display the 5–10 log entries immediately before and after the selected record, using the same device filter and without applying any additional search filters. The intent is to show the surrounding DNS activity from the full log for that device, without requiring manual scrolling through hundreds of entries.
Being able to see the proximal activity around blocked records is especially useful in identifying applications on mobile devices that may transition to SDKs that attempt communication to countries you wish to block or hosts that are denied via your preferred blocklists.
This feature would not require full timestamp search functionality; it would simply expose a small context window around the selected log entry. It fits naturally into the existing UI pattern and would significantly improve usability for users who need to correlate events with nearby DNS queries, especially on mobile devices where scrolling and timestamp navigation are difficult.
Reply
Content aside
- 12 hrs agoLast active
- 10Views
-
1
Following
