Quick Start; Security Analysts; Active Views Tab - Novell SENTINEL RAPID DEPLOYMENT 6.1 - 12-2009 User Manual

Table of Contents

Advertisement

Quick Start

1 3
This section assumes that your security administrator has built the necessary filters and configured
Collectors for your system.
Section 13.1, "Security Analysts," on page 293
Section 13.2, "Creating Incidents," on page 297
Section 13.3, "iTRAC," on page 298
Section 13.4, "Correlation," on page 308

13.1 Security Analysts

Section 13.1.1, "Active Views Tab," on page 293
Section 13.1.2, "Exploit Detection," on page 294
Section 13.1.3, "Asset Data," on page 295
Section 13.1.4, "Event Query," on page 296

13.1.1 Active Views Tab

In the Active Views tab, you can monitor events as they happen, performing queries on these events.
You can monitor them in a table form or through a 3-D graphical representation.
1 Select the Active View tab.
2 Click Active Views > Create an Active View.
3 Select a filter from the Filter drop-down menu, then click Select.
13
Quick Start
293

Advertisement

Table of Contents
loading

This manual is also suitable for:

Sentinel rapid deployment 6.1

Table of Contents