Symantec 10268947 User Guide - Page 130

Protection Policies tab, using Search Events

Page 130 highlights

130 Index viewing details 50 operational logs about 122 options about 80 viewing advanced network 52, 55 P packets enabling capture mode 93 PAD about 85 panel LCD 38 parameters event source 78 event target policy 76 event type 77 response rules 76, 79 viewing sensors 87 passive mode about 32 sensor processes 30 passive modes about deployment 40 passphrases editing 39 managing 39 patches accessing sites 16 policies about 25 about protection 65 adjusting the view 68 annotating 71 Auto Update tab 67 column view 69 Full Event List tab 67 modifying the view 38 Notes tab 68 Protection Policies tab 67 Search Events tab 67 searching event types 68 understanding the workarea 67 updating 70 viewing 66 viewing event type details 70 port mapping about 87 ports flow reports by destination 117 flow reports by source 117 mapping 87 viewing mappings 87 viewing port mappings 87 portscan top event type 111 primary default master node 52 priority color coding 95 configuring levels 77 mapping level 101, 105 processes about sensors 30 ProductUpdates accessing 16 protection policies about 25, 65 adjusting the view 68 annotating 71 Auto Update tab 67 column view 69 Full Event List tab 67 Notes tab 68 Protection Policies tab 67 Search Events tab 67 understanding the workarea 67 updating 70 using Search Events 68 viewing 66 viewing event type details 70 Protection Policies tab about 67 protocol anomaly detection. See PAD protocols about anomaly detection architecture 21 EDP 23 flow 115 flow reports by 117 list of events 114 viewing mappings to supported 87 watching for anomalies 87 Q QSP query service proxy. See QSP secure communication 29

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134

130
Index
viewing details
50
operational logs
about 122
options
about 80
viewing advanced network
52, 55
P
packets
enabling capture mode
93
PAD
about 85
panel
LCD 38
parameters
event source
78
event target policy
76
event type
77
response rules
76, 79
viewing sensors
87
passive mode
about 32
sensor processes
30
passive modes
about deployment
40
passphrases
editing 39
managing 39
patches
accessing sites
16
policies
about 25
about protection
65
adjusting the view
68
annotating 71
Auto Update tab
67
column view
69
Full Event List tab
67
modifying the view
38
Notes tab
68
Protection Policies tab
67
Search Events tab
67
searching event types
68
understanding the workarea
67
updating 70
viewing 66
viewing event type details
70
port mapping
about 87
ports
flow reports by destination
117
flow reports by source
117
mapping 87
viewing mappings
87
viewing port mappings
87
portscan
top event type
111
primary
default master node
52
priority
color coding
95
configuring levels
77
mapping level
101, 105
processes
about sensors
30
ProductUpdates
accessing 16
protection policies
about
25, 65
adjusting the view
68
annotating 71
Auto Update tab
67
column view
69
Full Event List tab
67
Notes tab
68
Protection Policies tab
67
Search Events tab
67
understanding the workarea
67
updating 70
using Search Events
68
viewing 66
viewing event type details
70
Protection Policies tab
about 67
protocol anomaly detection.
See
PAD
protocols
about anomaly detection architecture
21
EDP 23
flow 115
flow reports by
117
list of events
114
viewing mappings to supported
87
watching for anomalies
87
Q
QSP
query service proxy.
See
QSP
secure communication
29