Method and apparatus for analyzing source internet protocol (SIP) activity
in a network is described. In one example, a SIP address is obtained. Log
data collected over a predefined time period by a plurality of network
facilities is automatically queried using the SIP address as parametric
input to generate a report. The report includes sample activity for the
SIP and statistics for targeted network facilities, firewall activity,
targeted network spaces, and targeted IP addresses.