Symantec 10521146 Administration Guide - Page 377

FlowChaser Router Flow Collection Port

Page 377 highlights

Index 377 F fail-open about 39, 62 failover configuring watchdog group 290 configuring watchdog parameters 293 viewing incidents during 292 failures applying policies after 299 See also errors setting maximum logins 59 fault tolerance watchdog process 289 files exporting logs to 254 filters applying to incident tables 205, 206 ignoring attacks 142 incident filter options 293 preserving incidents during fail-over 206 showing incidents from selected nodes 206 showing operational events 205 viewing incidents from all nodes 293 Flag for SCP Usage setting node parameters 265 flow alert rules deleting 156 editing 156 providing a mask 157 using permits 157 viewing 155 flow statistics viewing 239 FlowChaser about 37 collecting flow status 219 configuring 220 FlowChaser Maximum Flows Per Device setting node parameters 220 FlowChaser Router Flow Collection Port setting node parameters 221 FlowChaser Router Flow Collection Threads setting node parameters 220 FlowChaser Sensor Threads setting node parameters 222 flows adding alert rules 155 alert rules 154 configuring FlowChaser 220 flows (cont.) devices with statistics 235 enabling data collection 219 mask for alert rules 157 querying 237 replaying traffic 241 reports by destination address 236 reports by destination port 237 reports by protocol 237 reports by source address 236 reports by source port 237 status collection 219 TrackBack 219 traffic playback tool 240 using permit types 157 viewing current 238 viewing exported 239 font size setting in incident tables 192 forcing database synchronization 83, 279 formats report 228 From Address setting node parameter 143 Full Event List tab about 113 G generating SSH keys 307 groups about interface groups 38 about monitoring groups 66 about user accounts 54 user group permissions 319 H Hardware Compatibility Reference viewing 22 high availability watchdog process 289 host name SMTP server for email alerts 144, 145 Hostname Used For Email Notifications setting node parameter 145

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392

377
Index
F
fail-open
about
39, 62
failover
configuring watchdog group
290
configuring watchdog parameters
293
viewing incidents during
292
failures
applying policies after
299
See also
errors
setting maximum logins
59
fault tolerance
watchdog process
289
files
exporting logs to
254
filters
applying to incident tables
205, 206
ignoring attacks
142
incident filter options
293
preserving incidents during fail-over
206
showing incidents from selected nodes
206
showing operational events
205
viewing incidents from all nodes
293
Flag for SCP Usage
setting node parameters
265
flow alert rules
deleting 156
editing 156
providing a mask
157
using permits
157
viewing 155
flow statistics
viewing 239
FlowChaser
about 37
collecting flow status
219
configuring 220
FlowChaser Maximum Flows Per Device
setting node parameters
220
FlowChaser Router Flow Collection Port
setting node parameters
221
FlowChaser Router Flow Collection Threads
setting node parameters
220
FlowChaser Sensor Threads
setting node parameters
222
flows
adding alert rules
155
alert rules
154
configuring FlowChaser
220
flows (cont.)
devices with statistics
235
enabling data collection
219
mask for alert rules
157
querying 237
replaying traffic
241
reports by destination address
236
reports by destination port
237
reports by protocol
237
reports by source address
236
reports by source port
237
status collection
219
TrackBack 219
traffic playback tool
240
using permit types
157
viewing current
238
viewing exported
239
font size
setting in incident tables
192
forcing
database synchronization
83, 279
formats
report 228
From Address
setting node parameter
143
Full Event List tab
about 113
G
generating
SSH keys
307
groups
about interface groups
38
about monitoring groups
66
about user accounts
54
user group permissions
319
H
Hardware Compatibility Reference
viewing 22
high availability
watchdog process
289
host name
SMTP server for email alerts
144, 145
Hostname Used For Email Notifications
setting node parameter
145