McAfee HISCDE-AB-IA - Host Intrusion Prevention Product Manual page 149

Product guide for use with epolicy orchestrator 4.5
Table of Contents

Advertisement

Index
A
activity logs, Host IPS
customizing options
93
deleting entries
93
firewall logging options
85
IPS logging options
85
viewing
93
working with Activity Log tab
adaptive mode
applying
21
FAQ
21
rules not created automatically
with IPS vs firewall
21
about
10
automatic tuning
18
exception and
32
Firewall Options policies
64
Firewall Rules policies
67
IPS Options policy
34
placing Host IPS clients in 20,
advanced properties, Host IPS
automatic responses
26
alerts, Host IPS
firewall
87
intrusion alerts
86
learn mode and unknown network traffic
responding to 86,
87
setting options for clients
83
spoof detected
87
Windows clients
86
allow and block actions
network communications, Firewall Policy
stateful firewall filtering
60
application protection rules
about
33
configuring
45
creating
45
IPS Rules policy 33, 36,
45
overview
43
processes, allowed or blocked
working with
43
automatic responses, Host IPS
about
26
configuring
17
rules and events
26
B
basic protection
default Host IPS policies
18
Host IPS
7
behavioral rules
defining legitimate Host IPS activity
shielding and enveloping
32
Blocked Hosts tab, working with
McAfee Host Intrusion Prevention 8.0 Product Guide for ePolicy Orchestrator 4.5
93
21
33
63
89
43
32
91
buffer overflow
configuring Trusted Applications policy
IPS behavioral rules and
32
preventing on Solaris client
C
client rules
Firewall 64,
71
creating, with adaptive and learn modes
creatng exceptions
32
Firewall 64,
71
Host IPS queries
13
IPS
36
IPS Rules policy, overview
50
Client UI policy
about
8
configuring
74
define
74
General tab, configuring
75
options
83
overview
73
passwords
75
tray icon control, configuring
troubleshooting
76
ClientControl utility
command-line syntax
144
function and setup
144
stopping services
144
using to troubleshoot
144
clients
analyzing data on Host IPS clients
Linux (See Linux client)
97
naming conventions for Host IPS
queries for groups of
13
Solaris (See Solaris client)
94
tuning Host IPS
19
updating with task or agent wake-up call
Windows (See Windows client)
working with, in Host IPS
19
command-line options
ClientControl.exe, upgrade automation
Solaris client, restarting
96
stopping and restarting Linux client
stopping the Solaris client
96
verifying Linux client is running
verifying Solaris client is running
compliance
configuring Host IPS dashboards to view
custom signatures
common sections
102
directives vaild on Windows
directives valid on Linux
134
directives valid on Solaris
134
Linux
127
Linux, UNIX_apache (HTTP)
78
94
10
75
19
19
28
81
84
99
99
96
17
123
130
149

Advertisement

Table of Contents
loading

This manual is also suitable for:

Host intrusion prevention 8.0

Table of Contents