Juniper SECURITY THREAT RESPONSE MANAGER 2008.2 R2 - LOG MANAGEMENT REV 1 Manual page 52

Strm log management users guide
Hide thumbs Also See for SECURITY THREAT RESPONSE MANAGER 2008.2 R2 - LOG MANAGEMENT REV 1:
Table of Contents

Advertisement

46
C
R
ONFIGURING
ULES
Table 4-2 Event Rule Response Parameters
Parameter
Severity
Credibility
Relevance
Dispatch New Event
Event Name
Event Description
Severity
Credibility
Relevance
High-Level Category
Low-Level Category
Email
Enter e-mail address
to notify
STRM Log Management Users Guide
Description
Select the check box if you wish this rule to set or
adjust severity to the configured level. Once
selected, you can configure the desired level.
Select the check box if you wish this rule to set or
adjust credibility to the configured level. Once
selected, you can configure the desired level.
Select the check box if you wish this rule to set or
adjust relevance to the configured level. Once
selected, you can configure the desired level.
Select the check box to dispatch a new event in
addition to the original event, which will be
processed like all other events in the system.
The Dispatch New Event parameters appear when
you select the check box. By default, the check box
is clear.
Specify the name of the event you wish to display in
the Event Viewer.
Specify a description for the event. The description
appears in the Annotations of the event details.
Specify the severity for the event. The range is 1
(lowest) to 10 (highest) and the default is 1. The
Severity appears in the Annotation of the event
details.
Specify the credibility of the event. The range is 1
(lowest) to 10 (highest) and the default is 10.
Credibility appears in the Annotation of the event
details.
Specify the relevance of the event. The range is 1
(lowest) to 10 (highest) and the default is 1.
Relevance appears in the Annotation of the event
details.
Specify the high-level event category you wish this
rule to use when processing events.
For more information on event categories, see the
Event Category Correlation Reference Guide.
Specify the low-level event category you wish this
rule to use when processing events.
For more information on event categories, see the
Event Category Correlation Reference Guide.
Select the check box to display the email options. By
default, the check box is clear.
Specify the e-mail address(es) to send notification if
the event generates. Separate multiple e-mail
addresses using a comma.

Advertisement

Table of Contents
loading

Table of Contents