Juniper SECURITY THREAT RESPONSE MANAGER 2008.2 R2 - LOG MANAGEMENT REV 1 Manual page 25

Strm log management users guide
Hide thumbs Also See for SECURITY THREAT RESPONSE MANAGER 2008.2 R2 - LOG MANAGEMENT REV 1:
Table of Contents

Advertisement

Table 3-3 Event Details
Parameter
Description
Event Name
Specifies the normalized name of the event.
Low Level
Specifies the low-level category of this event.
Category
For more information on categories, see the Event Category
Correlation Reference Guide.
Event Description
Specifies a description of the event, if available.
Severity
Specifies the severity of this event.
Credibility
Specifies the credibility of this event.
Relevance
Specifies the relevance of this event.
Magnitude
Specifies the magnitude for this event.
Source IP
Specifies the source IP address of the event.
Source Port
Specifies the source port of this event.
Destination IP
Specifies the destination IP address of the event.
Destination Port
Specifies the destination port of this event.
Pre NAT Source
Network Address Translation (NAT) translates an IP address in
IP
one network to a different IP address in another network. For a
firewall or another device capable of NAT, this parameter
indicates the source IP address before the NAT values were
applied.
Pre NAT Source
For a firewall or another device capable of NAT, this parameter
Port
indicates the source port before the NAT values were applied.
Pre NAT
For a firewall or another device capable of NAT, this parameter
Destination IP
indicates the destination IP address before the NAT values were
applied.
Pre NAT
For a firewall or another device capable of NAT, this parameter
Destination Port
indicates the destination port before the NAT values were
applied.
Post NAT Source
For a firewall or another device capable of NAT, this parameter
IP
indicates the source IP address after the NAT values were
applied.
Post NAT Source
For a firewall or another device capable of NAT, this parameter
Port
indicates the source port after the NAT values were applied.
Post NAT
For a firewall or another device capable of NAT, this parameter
Destination IP
indicates the destination IP address after the NAT values were
applied.
Post NAT
For a firewall or another device capable of NAT, this parameter
Destination Port
indicates the destination port after the NAT values were applied.
Protocol
Specifies the protocol associated with this event.
Username
Specifies the username associated with this event, if available.
QID
Specifies the STRM Log Management identifier for this event.
Each event has a unique QID. For information on mapping a QID,
see
STRM Log Management Users Guide
Modifying Event Mapping
Viewing Events
.
19

Advertisement

Table of Contents
loading

Table of Contents