Juniper SECURITY THREAT RESPONSE MANAGER 2008.2 - EVENT CATEGORY CORRELATION REFERENCE GUIDE REV 1 Reference Manual page 13

Event category correlation reference guide
Table of Contents

Advertisement

Table 2-3 Correlation Group 1 Tests (continued)
Traffic Type
Correlation Rules (Tests)
Local-to-Remote
Correlation Group 1 performs the following tests for
Local-to-Remote traffic:
Note: For test details, see
Remote-to-Local
Correlation Group 1 performs the following tests for
Remote-to-Local traffic:
Note: For test details, see
STRM Event Category Correlation Reference
About Event Category Correlation
Relevance of the day of the week
Device credibility
Event rate
Attacker
Source port
Target port
Attacker age
Attacker network
Attacker risk
Remote Target
Geographic Location
Time of the attack
Relevance of the day of the week
Device credibility
Event rate
Target
Source port
Target age
Attacker port
Remote attacker
Attacker IP address
Geographic location
Time of the attack
Target network
Target risk
Open target port
Vulnerable targeted port
Vulnerable port
Table 2-2
.
Table 2-2
.
7

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the SECURITY THREAT RESPONSE MANAGER 2008.2 - EVENT CATEGORY CORRELATION REFERENCE GUIDE REV 1 and is the answer not in the manual?

Questions and answers

This manual is also suitable for:

Security threat response manager

Table of Contents