Juniper SECURITY THREAT RESPONSE MANAGER 2008.2 Administration Manual page 138

Strm administration guide
Hide thumbs Also See for SECURITY THREAT RESPONSE MANAGER 2008.2:
Table of Contents

Advertisement

130
M
S
ANAGING
ENTRIES
Step 7
Table 7-3 Edit Behavior, Anomaly, or Threshold Sentry (continued)
Parameter
Description
Restrictions
Select the check box for one or more restrictions you wish to
enforce for an active sentry including:
Permissions
Specify the users you wish to allow access to edit this sentry.
Package
Using the drop-down list box, select the sentry package you wish
to apply to this sentry. To edit an existing package, click Edit or
to create a new package, click Create New. For more information
on sentry packages, see
Responses
Specify the method you wish to be notified if this sentry
generates an event. The options are:
QRL
Specifies the details of the current view for this sentry.
Edit the variables, as necessary. The list of variables includes all configured values
for this sentry. Only the variables that apply to this sentry appear. When creating a
custom sentry, you can create your own variable.
Table 7-4 Default Variables
Parameter
Description
$$Base
Specify the current traffic level weight that you wish to assign to
the current traffic levels against the learned behaviors and the
current trend. This variable is for behavioral sentries. The higher
the value indicates more weight on the previously recorded
value. When you configure a sentry, you must enter a value
between 0 to 100, however, when you view a sentry, this value
appears in decimal format as 0.01 to 1.
STRM Administration Guide
Date is relevant - Select the check box to indicate that this
sentry must consider the date. When selected, date fields
appear. Enter the relevant dates you wish this sentry to
monitor.
Day of week is relevant - Select the check box to indicate
that this sentry must consider the day of the week. When
selected, day of the week fields appear. Using the drop-down
list boxes, select the relevant days you wish this sentry to
consider.
Time of day is relevant - Select the check box to indicate that
this sentry must consider time of day. When selected, time of
day fields appear. Using the drop-down list box, select the
time of day you wish this sentry to consider.
Email
Log - Sends event information to standard syslog on STRM
Console.
Managing Packages
.

Advertisement

Table of Contents
loading

Table of Contents