Classifying unknown traffic

Classifying unknown traffic

What is the best way to classify unknown traffic, I cannot find anywhere where the log analyzer tells me the actual port that the traffic is using, so I don't have any way of knowing what it is. Is there a report which shows the actual ports of the unknown traffic instead of just "unknown" ? Also is there a way to sort the ports in the custom protocol configuration.. its very hard to sort through thousands of ports when they are in no order.

                New to ADSelfService Plus?