Symantec 10268947 User Guide - Page 67

Understanding the protection policy view, Protection Policies tab, Search Events tab

Page 67 highlights

Protection Policies 67 Viewing protection policies Understanding the protection policy view The Protection Policies view contains five main tabs, as follows: Protection Policies Search Events Full Event List Auto Update Notes * Set policies to interfaces * Override blocking rules * Apply/Unapply policies * Set search criteria * Search * View Search Events * Adjust view of list * Select events to apply logging and/or block rules * View unaltered event list * Adjust view of list * Select events to apply logging and/or blocking rules * Configure LiveUpdate so any new event types that match criteria are logged * Annotate policies to show notes as tool tips The following list describes each tab more fully: ■ Protection Policies tab: Symantec Network Security installs with a set of pre-defined policies that you can use immediately by setting them to interfaces, override existing blocking rules, and applying them. ■ Viewing protection policies ■ Search Events tab: At first, the Search Events tab displays the full list of event types that the selected policy can detect. You can reduce this list to a more manageable size by setting search parameters. Then the Search Results pane displays a subset of the types of events that you specified. You can apply logging and/or blocking rules from this tab, and add new protection policies that you define yourself. ■ Adjusting the view by searching ■ Full Event List tab: The Full Event List displays all event types that the selected policy can detect. Even after you define the display on the Search Events tab, you can use the Full Event List to view the total list of all event types. You can also set logging and blocking rules from this tab. ■ Auto Update tab: Provides the ability to establish automatic policy, signature, and engine updates through LiveUpdate. ■ Viewing policy automatic update

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134

67
Protection Policies
Viewing protection policies
Understanding the protection policy view
The Protection Policies view contains five main tabs, as follows:
The following list describes each tab more fully:
Protection Policies tab
: Symantec Network Security installs with a set of
pre-defined policies that you can use immediately by setting them to
interfaces, override existing blocking rules, and applying them.
Viewing protection policies
Search Events tab
: At first, the Search Events tab displays the full list of
event types that the selected policy can detect. You can reduce this list to a
more manageable size by setting search parameters. Then the Search
Results pane displays a subset of the types of events that you specified. You
can apply logging and/or blocking rules from this tab, and add new
protection policies that you define yourself.
Adjusting the view by searching
Full Event List tab
: The Full Event List displays all event types that the
selected policy can detect. Even after you define the display on the Search
Events tab, you can use the Full Event List to view the total list of all event
types. You can also set logging and blocking rules from this tab.
Auto Update tab
: Provides the ability to establish automatic policy,
signature, and engine updates through LiveUpdate.
Viewing policy automatic update
Protection Policies
Search Events
Full Event List
Auto Update
Notes
* Set policies
to interfaces
* Override
blocking rules
* Apply/Unapply
* Set search criteria
* Search
* View Search Events
* Select events to apply
logging and/or block
* View unaltered event list
* Adjust view of list
logging and/or blocking
* Select events to apply
* Configure LiveUpdate so any
* Annotate policies to
show notes as tool tips
new event types that match
criteria are logged
policies
* Adjust view of list
rules
rules