Symantec 10268947 User Guide - Page 131

Search Events tab, customizing responses

Page 131 highlights

queries replaying traffic flow data 84 traffic playback tool 83 querying current flows 117 exported flows 119 policy event type list 76 R refinement about 24 detection rules method 86, 89 reliability assigning levels 105 mapping level 105 reports console 109 format 110 querying flows 117 replaying traffic flow 84 top level 110 traffic playback 83 viewing current flows 117 viewing exported flows 119 response actions enabling console 82 response rules 78 TCP reset 81 response rules 77 about automated 25 color coding 75 configuring console response 82 custom response 81 event source parameters 78 event target parameter 76 event type parameters 77 export flow action 82 next action parameter 79 none option 80 parameters 76 response parameter 79 searching for event types 76 setting confidence levels 78 setting event sources 78 setting event targets 76 setting event types 77 setting next actions 79 setting response actions 78 SNMP notification 80 Index 131 TCP reset 81 TrackBack 80 viewing 75 responses about 25 about automated 74 about parameters 76 assigning priority levels 77 automated 74 configuring confidence level 78 configuring priority 77 customizing responses 81 email notifications 80 enabling automatic next action 79 failure of custom 103 flow alert rules 83 none option 80 setting parameters 79 SNMP notifications 80 tracking data stream to source 80 traffic record 81 viewing port mappings 87 viewing rules 75 RestrictedUser pre-defined login account 103 roles about administration of 27 routers viewing 59 rules about refinement 24 flow alert 83 refinement detection 86, 89 S Search Events tab about 67 creating a subset of event types 68 sensor manager node architecture 29 sensors about node architecture 30 about sensor processes 30 viewing interface details 93 viewing parameters 87 serial console about 39 severity 77 mapping level 101, 105

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134

131
Index
queries
replaying traffic flow data
84
traffic playback tool
83
querying
current flows
117
exported flows
119
policy event type list
76
R
refinement
about 24
detection rules method
86, 89
reliability
assigning levels
105
mapping level
105
reports
console 109
format 110
querying flows
117
replaying traffic flow
84
top level
110
traffic playback
83
viewing current flows
117
viewing exported flows
119
response actions
enabling console
82
response rules
78
TCP reset
81
response rules
77
about automated
25
color coding
75
configuring console response
82
custom response
81
event source parameters
78
event target parameter
76
event type parameters
77
export flow action
82
next action parameter
79
none option
80
parameters 76
response parameter
79
searching for event types
76
setting confidence levels
78
setting event sources
78
setting event targets
76
setting event types
77
setting next actions
79
setting response actions
78
SNMP notification
80
TCP reset
81
TrackBack 80
viewing 75
responses
about 25
about automated
74
about parameters
76
assigning priority levels
77
automated 74
configuring confidence level
78
configuring priority
77
customizing responses
81
email notifications
80
enabling automatic next action
79
failure of custom
103
flow alert rules
83
none option
80
setting parameters
79
SNMP notifications
80
tracking data stream to source
80
traffic record
81
viewing port mappings
87
viewing rules
75
RestrictedUser
pre-defined login account
103
roles
about administration of
27
routers
viewing 59
rules
about refinement
24
flow alert
83
refinement detection
86, 89
S
Search Events tab
about 67
creating a subset of event types
68
sensor manager
node architecture
29
sensors
about node architecture
30
about sensor processes
30
viewing interface details
93
viewing parameters
87
serial console
about 39
severity 77
mapping level
101, 105