Let's say some one IP on a particular network is hogging the bandwidth. I am not exporting netflow from its ingress interface, so I have to look at the traffic as it comes into our more central devices. I would like to see a list of every IP in use on that network in the last 15 minutes that netflow knows about (say, 172.20.13.x) on one screen and what they are accessing, at least a TopN. I thought the IP search would do it, but it just gives a list of individual addresses and I would have to click on each one separately. I am sure this is very simple and I am missing something obvious. Thanks much!! -Debbi