Siteprotector Components - IBM SP3001 Hardware Configuration Manual

Security siteprotector system
Hide thumbs Also See for SP3001:
Table of Contents

Advertisement

Installed SiteProtector Components
Agent Manager
Console (user must install separately)
SiteProtector Database
Event Collector
SiteProtector Reporting
SP Core (See "SiteProtector components" for details)
IBM Security Server Protection for Windows
SiteProtector SecurityFusion module
Event Archiver
Included licenses
The SiteProtector SP3001 appliance includes licenses for the SiteProtector Reporting component, IBM
Security Server Protection for Windows, and the SecurityFusion module.

SiteProtector components

The SiteProtector SP3001 appliance consists of required and optional SiteProtector components that
provide the base functionality necessary to accept, monitor, and analyze network events. Depending on
your Site requirements, you may need to install more than one of some components.
Component descriptions
The following table describes the SiteProtector components:
SiteProtector Component
Agent Manager
Console
Event Archiver
Event Collector
Event Viewer
Optional SiteProtector Components
Event Viewer
X-Press Update Servers
Description
The Agent Manager manages the command and control activities of the Desktop
Protection agents, IBM Security Server Protection, and Proventia Network MFS,
X-Press Update Server, and Event Archiver; and it also facilitates data transfer
from agents to the Event Collector.
The SiteProtector
Console is the main interface to SiteProtector where you can
perform most SiteProtector functions, such as monitoring events, scheduling
scans, generating reports, and configuring agents. You can also use the
SiteProtector Console to configure the SiteProtector SP3001 appliance's
administration options.
The Event Archiver provides the capability to archive security events to a
remote location, thereby reducing the number of events that the database must
store.
Note: See the SiteProtector Configuration Guide for information about configuring
the Event Archiver.
The Event Collector manages real-time events from sensors and agents as well
as vulnerability data from scanners.
The SiteProtector Event Viewer receives unprocessed events from the Event
Collector to provide near real-time access to security data for troubleshooting.
Chapter 1. Introduction to the SiteProtector SP3001 Appliance
3

Advertisement

Table of Contents
loading

Table of Contents