Elasticsearch Dashboard: Application Connections Topology

Interactive relationship mapping for TLS application connectivity and quantum risk concentration.

The Application Connections Topology dashboard complements tabular application reporting with a relationship view. Application nodes connect to observed endpoints through TLS edges colored by PQC readiness, while node size indicates connection volume.

Use the graph to find central applications, isolate high-risk connection paths, and inspect the crypto characteristics of a selected node or edge before pivoting to the Application Report or Application Detail dashboards.

Default time range: Last 1 yearData source: Application connection records

Operational guidance: Large environments may need an application, host, or time filter before rendering. For best performance and readability, narrow the graph when the visible population approaches 500 application nodes.

Panels

PanelTypeWhat It Shows
Navigation Links BarLinksOpens the tabular Application Report, Application Detail, and other Quantum Command dashboards.
Quantum Application ListSelection listLists applications visible in the graph with PQC status and acts as an input for graph filtering or highlighting.
PQC Connections TopologyInteractive network graphRenders applications as nodes and observed TLS connections as edges. Node size reflects connection count; color reflects readiness tier.
Connection Selection DetailsDynamic detail panelDisplays key exchange, protocol, cipher, and certificate information for the selected node or edge.
Aggregate Risk DeterminationRisk scoreCalculates quantum risk across all connections currently visible after filtering.
Application PQC Dashboard RiskApplication risk panelShows per-application PQC risk consistent with the broader Application Report dataset.

Key Data Fields

FieldDescription
process.name / process.executableApplication identity used to create graph nodes.
host.id / host.hostnameEndpoint identity used for connection relationships.
omb.kex_tierReadiness tier used for graph color coding.
omb.kex_primaryPrimary key-exchange algorithm shown in selection details.
server.portConnection port used for context or edge labeling.
quantum_readyBoolean readiness indicator used for simplified node status.

Reading the Dashboard

Find large or central nodes

Applications with many connections have greater potential remediation impact and may deserve priority.

Use color to locate risk

Green represents PQC READY, blue MODERN, yellow CLASSICAL, and red LEGACY.

Select before pivoting

Inspect the selected connection details, then open Application Detail when host- or cipher-level evidence is required.

Watch the aggregate score

The risk score should change as filters remove or add connection populations, helping quantify the effect of a proposed remediation scope.

Filtering and Performance

The dashboard opens with a default time range of Last 1 year. Global Elasticsearch dashboard filters apply to the panels unless a panel description states otherwise. Preserve relevant filters when navigating between related dashboards so the investigation remains scoped to the same application, host, tier, or certificate population.