Novell SENTINEL RAPID DEPLOYMENT 6.1 - 12-2009 User Manual page 240

Table of Contents

Advertisement

The Mapping tab allows you to:
Add new map definitions
Edit map definitions
Delete map definitions
Update map data
Mapping works together with the Referenced from Map Data Source setting for individual fields
under
Section 10.8, "Event Configuration," on page
range. The following are the default maps available:
AccountIdentity: Contains information about identities and the accounts associated with
them. The keys are UserName, UserDomain, and CustomerName (for MSSPs). This map is
populated from information in the Account and Identity tables in the Sentinel database.
Asset: Contains the data from the map data source file
automatically generated from asset data from Sentinel Database when an asset Collector is run.
This file can also be populated manually. The keys are PhysicalAssetName and CustomerName
(for MSSPs).
AssetToRegulation: Contains the data from the map data source file
AssetToRegulation.csv
CustomerHierarchy: Generally used for Managed Security Service Providers (MSSPs). This
file can be used to organize customers into a four-level hierarchy. It contains data from the
customerhierachy.csv
IpToCountry: Contains the data from the
must be populated manually.
IsExploitWatchlist: Contains the data from the
file. (vulnerabilities and threats). The
from Advisor and Vulnerability data from the Sentinel Database when either an Advisor feed is
completed or a vulnerability Collector is run. The keys are IP, AttackName, DeviceName, and
CustomerName (for MSSPs).
To view maps in the GUI:
1 Navigate to the Admin tab and select Map Data Configuration from the Navigation pane or
click the Map Data Configuration button
240 Sentinel 6.1 Rapid Deployment User Guide
249. You can map by using a string or number
. This file must be populated manually.
. This file must be populated manually. The key is
IpToCountry.csv
exploitDetection.csv
exploitDetection.csv
.
. The
asset.csv
asset.csv
CustomerName
map data source file. This file
map data source
file is automatically generated
is
.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sentinel rapid deployment 6.1

Table of Contents