The User/Endpoint Directory
                  screen displays User information for a specified time range.
- 
Use the drop-down controls below the Endpoints or Users tab to specify the time period for the data that displays or to switch between Tabular view and Timeline view.
- 
Click Export to export the data as a*.csvfile or*.pngimage. NoteTabular view only supports exporting data as a*.csvfile. Timeline view can export data as a*.csvfile or a*.pngimage. The exported*.pngtimeline image only displays information for a maximum of 30 users or endpoints.
The following table describes the User information that
                  displays on the User/Endpoint Directory screen in
                  Tabular view.
User Details in Tabular View
| Column | Description | ||
|  | If the endpoint or user is assigned an important tag, Trend Micro Apex Central displays a
                                 yellow star icon (  ) to indicate
                                 importance. For more information, see User or Endpoint Importance. | ||
| User | Trend Micro Apex Central identifies and associates users with endpoints based on
                                 the type of endpoint or through integration with Active Directory. 
 Click a user name to view contact
                                 details. For more information, see Contact Information. 
 | ||
| Domain | 
 | ||
| Manager | If Active Directory synchronization is available, Trend Micro Apex Central displays the
                                 manager of the user Click a name in the manager column to view the
                                 manager's contact details. For more information, see Contact Information. | ||
| Endpoints | The number of endpoints currently associated
                                 with the user, based on the last log on information from the endpoints Click the count to view the related endpoint
                                 information in the table. For more information, see Endpoint Details. | ||
| Policies | The number of policies currently associated with the
                                 user, based on the last log on information from the endpoints Click the Policies count
                                 to view the related policy information for the user. For more information, see Policy Status. | ||
| Threats | The total number of security threats that occurred
                                 on endpoints associated with the user Click the Threats count
                                 to view the related threat information for the user. For more information, see Security Threats for Users. For example, if Henry was the last user logged on to
                                 endpoint  us-mkt-dev1, and that endpoint reported 10 virus/malware detections and 2 web violations, Henry's Threats count displays as 12. | 
The following table describes the User information that displays on the
                  User/Endpoint Directory screen in Timeline
                     view.
User Details in Timeline View
| Column | Description | ||
| User | Trend Micro Apex Central identifies and associates users with endpoints based on
                                 the type of endpoint or through integration with Active Directory. 
 | ||
| Domain | The Active Directory domain that the user belongs to | ||
| Threats | The total number of security threats that occurred
                                 on endpoints associated with the user Click the Threats count
                                 to view the related threat information for the user. For more information, see Security Threats for Users. | ||
| <Timeline> | The timeline indicates when the security threats
                                 occurred for each user. 
 | 
 
		
 ) to view the number of critical threats and the total
                                       number of all security threat detections for a user on a specific date.
) to view the number of critical threats and the total
                                       number of all security threat detections for a user on a specific date. ) to view the number of non-critical threat detections
                                       for a user on a specific date.
) to view the number of non-critical threat detections
                                       for a user on a specific date.