Symantec 10521146 Administration Guide - Page 256

Setting SESA Bridge Export, Configuration, Network Security Parameters, Select Node, SESA Event Export

Page 256 highlights

256 Managing log files Exporting data ■ SESA 2.0 ■ SESA Integration Package (SIP) installed on the SESA Manager, to register Symantec Network Security with SESA 2.0 ■ SESA Bridge installed on each software or appliance node that will send events to SESA ■ SESA Agent ■ Symantec Event Manager for Intrusion Protection (The Symantec Event Manager is optional. To view reports, you must install it, but to view raw events, you do not need it. See the Symantec Network Security Installation Guide and Symantec Network Security 7100 Series Implementation Guide for more information about the SESA Bridge. Setting SESA Bridge Export SESA Bridge Export serves as the on/off switch for sending events to Symantec Enterprise Security Administrator (SESA). If this value is true, events are sent to the local SESA Agent to be passed on to a SESA Manager. Note that you must have a local SESA Agent installed and configured for the SESA Bridge to function. The default value is false on 7100 Series appliances. On Network Security software nodes, this default reflects whether or not the SESA Bridge was installed during the installation process. You can use either the default SESA Event Manager, or the IDS Event Manager. The SESA Bridge option is not required to use Symantec Network Security in native mode. To configure this parameter 1 Click Configuration > Node > Network Security Parameters. 2 In Select Node, choose the node from the pull-down list, and click OK. 3 In the left pane under SESA Event Export, click SESA Bridge Export. 4 In the lower right pane, do one of the following: ■ Click True to enable the SESA Bridge. ■ Click False to disable the SESA Bridge. 5 Click Apply. 6 In Apply Changes To, select the node to which to apply the parameter. 7 Click OK to save the changes to this node and close.

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392

256
Managing log files
Exporting data
SESA 2.0
SESA Integration Package (SIP) installed on the SESA Manager, to register
Symantec Network Security with SESA 2.0
SESA Bridge installed on each software or appliance node that will send
events to SESA
SESA Agent
Symantec Event Manager for Intrusion Protection (The Symantec Event
Manager is optional. To view reports, you must install it, but to view raw
events, you do not need it.
See the
Symantec Network Security Installation Guide
and
Symantec Network
Security 7100 Series Implementation Guide
for more information about the SESA
Bridge.
Setting SESA Bridge Export
SESA Bridge Export
serves as the on/off switch for sending events to Symantec
Enterprise Security Administrator (SESA). If this value is
true
, events are sent
to the local SESA Agent to be passed on to a SESA Manager. Note that you must
have a local SESA Agent installed and configured for the SESA Bridge to
function.
The default value is
false
on 7100 Series appliances. On Network Security
software nodes, this default reflects whether or not the SESA Bridge was
installed during the installation process.
You can use either the default SESA Event Manager, or the IDS Event Manager.
The SESA Bridge option is not required to use Symantec Network Security in
native mode.
To configure this parameter
1
Click
Configuration
>
Node
>
Network Security Parameters
.
2
In
Select Node
, choose the node from the pull-down list, and click
OK
.
3
In the left pane under
SESA Event Export
, click
SESA Bridge Export
.
4
In the lower right pane, do one of the following:
Click True to enable the SESA Bridge.
Click False to disable the SESA Bridge.
5
Click
Apply
.
6
In
Apply Changes To
, select the node to which to apply the parameter.
7
Click
OK
to save the changes to this node and close.