Juniper SECURITY THREAT RESPONSE MANAGER 2008.2 - CONFIGURING DSMS REV 1 Manual page 209

Configuring dsms
Hide thumbs Also See for SECURITY THREAT RESPONSE MANAGER 2008.2 - CONFIGURING DSMS REV 1:
Table of Contents

Advertisement

</Field>
- <Field Name="Destination IP">
- <Patterns>
<Pattern Group="1"
Order="1">\>\s(\d+\.\d+\.\d+\.\d+)\.</Pattern>
</Patterns>
</Field>
- <Field Name="Destination Port">
- <Patterns>
<Pattern Group="1" Order="1">\.(\d+)\:\s</Pattern>
</Patterns>
</Field>
- <Field Name="Source IP Pre NAT">
<Patterns />
</Field>
- <Field Name="Source Port Pre NAT">
<Patterns />
</Field>
- <Field Name="Destination IP Pre NAT">
<Patterns />
</Field>
- <Field Name="Destination Port Pre NAT">
<Patterns />
</Field>
- <Field Name="Source IP Post NAT">
<Patterns />
</Field>
- <Field Name="Source Port Post NAT">
<Patterns />
</Field>
- <Field Name="Destination IP Post NAT">
<Patterns />
</Field>
- <Field Name="Destination Port Post NAT">
<Patterns />
</Field>
- <Field Name="Protocol">
<Patterns />
</Field>
- <Field Name="User Name">
- <Patterns>
<Pattern Group="1"
Order="1">user=\"([^\"]+)\"</Pattern>
</Patterns>
</Field>
- <Field Name="Source Mac Address">
- <Patterns>
<Pattern Group="1"Order="1">([0-9a-fA-F]
[0-9a-fA-F][:\-][0-9a-fA-F][0-9a-fA-F][:\-][0-9a-fA-F]
[0-9a-fA-F][:\-][0-9a-fA-F][0-9a-fA-F][:\-][0-9a-fA-F]
Configuring DSMs Guide
Building the Universal DSM XML Configuration File
203

Advertisement

Table of Contents
loading

This manual is also suitable for:

Security threat response manager

Table of Contents