Juniper SECURITY THREAT RESPONSE MANAGER 2008.2 - EVENT CATEGORY CORRELATION REFERENCE GUIDE REV 1 Reference Manual page 37

Event category correlation reference guide
Table of Contents

Advertisement

Table 2-15 System Categories (continued)
Low Level Event
Category
Failed Host-Policy
Modification
Failed File
Modification
Failed Stack
Modification
Failed Application
Modification
Failed Configuration
Modification
Failed Service
Modification
Registry Addition
Host-Policy Created
File Created
Application Installed
Service Installed
Registry Deletion
Host-Policy Deleted
File Deleted
Application
Uninstalled
Service Uninstalled
System Informational Indicates system information.
System Action Allow Indicates that an attempted
System Action Deny
Cron
Description
Indicates that a modification to
the host policy has failed.
Indicates that a modification to a
file has failed.
Indicates that a modification to
the stack has failed.
Indicates that a modification to
an application has failed.
Indicates that a modification to
the configuration has failed.
Indicates that a modification to
the service has failed.
Indicates that an new item has
been added to the registry.
Indicates that a new entry has
been added to the registry.
Indicates that a new has been
created in the system.
Indicates that a new application
has been installed on the
system.
Indicates that a new service has
been installed on the system.
Indicates that a registry entry
has been deleted.
Indicates that a host policy entry
has been deleted.
Indicates that a file has been
deleted.
Indicates that an application has
been uninstalled.
Indicates that a service has
been uninstalled.
action on the system has been
authorized.
Indicates that an attempted
action on the system has been
denied.
Indicates a crontab message.
STRM Event Category Correlation Reference
Severity Level
Event Correlation/
(0 to 10)
Processing
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
3
Correlation Group 5 Scenario 2
3
Correlation Group 5 Scenario 2
4
Correlation Group 5 Scenario 2
1
Correlation Group 5 Scenario 2
System
31
Additional Event
Processing

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the SECURITY THREAT RESPONSE MANAGER 2008.2 - EVENT CATEGORY CORRELATION REFERENCE GUIDE REV 1 and is the answer not in the manual?

Questions and answers

This manual is also suitable for:

Security threat response manager

Table of Contents