Managing Application Views; Default Application Views; Adding An Applications Object; Editing An Applications Object - Juniper SECURITY THREAT RESPONSE MANAGER 2008.2 Administration Manual

Strm administration guide
Hide thumbs Also See for SECURITY THREAT RESPONSE MANAGER 2008.2:
Table of Contents

Advertisement

146
M
V
ANAGING
IEWS
Managing
Application Views
Default Application
Views
Application Views display traffic originating from the application server by the client
connection and the server connection. Using the Application Views, you can view
traffic by application identification. This section provides information on managing
Application Views including:

Default Application Views

Adding an Applications Object

Editing an Applications Object

Application View includes the following default groups:
Table 8-5 Application Views
Sub-Component
Chat
ClientServer
ContentDelivery
DataTransfer
DataWarehousing
DirectoryServices
FilePrint
Games
Healthcare
InnerSystem
InternetProtocol
Known_to_client_or_
server
Legacy
Mail
STRM Administration Guide
Description
Specifies traffic originating from chat sources, such as AOL,
ICQ, IRC, MISN, and MSN.
Specifies traffic originating from a client server such as
Meeting Maker, NetIQ, FIX, MATIP, or CVSup.
Specifies traffic originating from content delivery applications,
such as, EntryPoint, BackWeb, or Webshots.
DataTransfer group displays traffic originating from data being
transferred from traffic of common file/data transfer protocols,
such as FTP, Misc-Transfer-Ports, NFS, NNTPNews, TFTP,
WindowsFileSharing, WindowsNetworkPorts, and XFER.
Specifies traffic originating from database applications.
Specifies traffic originating from directory services, such as
WINS, CRS, or RRP.
Specifies traffic originating from file print applications, such as,
a printer or IPP.
Specifies traffic originating from game applications, such as,
Doom, Quake, Half-Life, or Kali.
Specifies traffic originating from health care related
applications, such as, DICOM or HL7.
Specifies traffic originating from the STRM application, such
as, Common Ports, Flowgen, and UpdateDaemon.
Specifies traffic originating from Internet protocol related
applications, such as, ActiveX or SOAP-HTTP.
When viewing client data, this group captures the server data.
When viewing server data, this group captures the client data.
Specifies traffic originating from legacy applications, such as,
SNA, LAT, FNA, or SLP.
Specifies all traffic originating from e-mail application traffic,
such as, ESMTP, IMAP, MISC-MAIL-Port, POP, POP-Port,
SMTP, and SMTP-Port.

Advertisement

Table of Contents
loading

Table of Contents