McAfee HISCDE-AB-IA Product Guide - Page 24

Assigning permission sets, Menu | User Management | Permission Sets

Page 24 highlights

Managing Your Protection System management Intrusion Prevention policy pages and the Host Intrusion Prevention event and client rules pages under Reporting. For this Host IPS feature... IPS Firewall General These permissions are available... None, view settings only, or view and change settings. None, view settings only, or view and change settings. None, view settings only, or view and change settings. The global administrator also needs to give ePolicy Orchestrator permissions to handle other areas that work with Host Intrusion Prevention, including queries and dashboards. For example, to analyze and manage firewall client rules found on the Host IPS pages under Reporting, a user needs view permissions for Event Log, view permissions for Systems, view permissions for System Tree access, and view and change permission for the Host Intrusion Prevention Firewall feature. Table 3: Permissions required for working with various features For these Host IPS features These permission sets are required Host IPS dashboards Dashboards, Queries Host IPS queries Queries Host IPS client events and client rules Systems, System Tree access, Threat Event Log Host IPS server tasks Server Tasks Host IPS packages in repository Software Host IPS automatic responses Automatic Responses, Event Notifications, Client Events For more information on permission sets, see the ePolicy Orchestrator documentation. Assigning permission sets Use this task to assign permissions to Host Intrusion Prevention features on the ePO server. Before you begin Determine the Host Intrusion Prevention features to which you want to give access and the additional permission sets that must be assigned to access all aspects of that Host Intrusion Prevention feature. For example, to view Firewall Client rules, the user must have permission to the Firewall feature in the Host Intrusion Prevention permission set, as well as to Event log, Systems, and System Tree access permission sets. Task For option definitions, click ? in the interface. 1 Click Menu | User Management | Permission Sets. 2 Next to Host Intrusion Prevention, click Edit. 3 Select the desired permission for each feature: • None • View settings only • View and change settings 4 Click Save. 24 McAfee Host Intrusion Prevention 8.0 Product Guide for ePolicy Orchestrator 4.5

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154

Intrusion Prevention policy pages and the Host Intrusion Prevention event and client rules pages
under Reporting.
These permissions are available...
For this Host IPS feature...
None, view settings only, or view and change settings.
IPS
None, view settings only, or view and change settings.
Firewall
None, view settings only, or view and change settings.
General
The global administrator also needs to give ePolicy Orchestrator permissions to handle other
areas that work with Host Intrusion Prevention, including queries and dashboards. For example,
to analyze and manage firewall client rules found on the Host IPS pages under Reporting, a
user needs view permissions for Event Log, view permissions for Systems, view permissions
for System Tree access, and view and change permission for the Host Intrusion Prevention
Firewall feature.
Table 3: Permissions required for working with various features
These permission sets are required
For these Host IPS features
Dashboards, Queries
Host IPS dashboards
Queries
Host IPS queries
Systems, System Tree access, Threat Event Log
Host IPS client events and client rules
Server Tasks
Host IPS server tasks
Software
Host IPS packages in repository
Automatic Responses, Event Notifications, Client Events
Host IPS automatic responses
For more information on permission sets, see the ePolicy Orchestrator documentation.
Assigning permission sets
Use this task to assign permissions to Host Intrusion Prevention features on the ePO server.
Before you begin
Determine the Host Intrusion Prevention features to which you want to give access and the
additional permission sets that must be assigned to access all aspects of that Host Intrusion
Prevention feature. For example, to view Firewall Client rules, the user must have permission
to the Firewall feature in the Host Intrusion Prevention permission set, as well as to Event log,
Systems, and System Tree access permission sets.
Task
For option definitions, click
?
in the interface.
1
Click
Menu | User Management | Permission Sets
.
2
Next to Host Intrusion Prevention, click
Edit
.
3
Select the desired permission for each feature:
None
View settings only
View and change settings
4
Click
Save
.
Managing Your Protection
System management
McAfee Host Intrusion Prevention 8.0 Product Guide for ePolicy Orchestrator 4.5
24