Juniper SECURITY THREAT RESPONSE MANAGER 2008.2 R2 - REV1 Manual page 148

Table of Contents

Advertisement

142
U
E
SING THE
VENT
V
IEWER
Table 6-7 Aggregate Normalized Events (continued)
Aggregate Option
Event Type/ Device
Group
Device Group/ High
Level Cat
Device Group/ High
Level Cat/ Low Level
Cat
Src IP/ MAC
Src NAT/ Dst NAT
Src IP/ High Level Cat
Src IP/ Low Level Cat
Dst IP/ High Level Cat
Dst IP/ Low Level Cat
Src IP / Dst IP/ High
Level Cat
Description
Displays a summarized list of events grouped by the event
name and the device group.
Displays a summarized list of events grouped by the device
group and the high-level category.
For more information on categories, see the Event Category
Correlation Reference Guide.
Displays a summarized list of events grouped by the device
group and the low-level category.
For more information on categories, see the Event Category
Correlation Reference Guide.
Displays a summarized list of events grouped by the source
IP address and the source MAC address.
Network Address Translation (NAT) translates an IP address
in one network to a different IP address in another network.
The list of events that appears includes a summarized list of
events grouped by the source and destination information
(IP address and port) before and after NAT was applied.
Displays a summarized list of events grouped by the source
IP address and the high-level category. The aggregate
results provides a list of source IP addresses.
For more information on categories, see the Event Category
Correlation Reference Guide.
Displays a summarized list of events grouped by the source
IP address and the low-level category.
For more information on categories, see the Event Category
Correlation Reference Guide.
Displays a summarized list of events grouped by the
destination IP address and the high-level category.
For more information on categories, see the Event Category
Correlation Reference Guide.
Displays a summarized list of events grouped by the
destination IP address and the low-level category.
For more information on categories, see the Event Category
Correlation Reference Guide.
Displays a summarized list of events grouped by the source
IP address to destination IP addresses and the high-level
category.
For more information on categories, see the Event Category
Correlation Reference Guide.
STRM Users Guide

Advertisement

Table of Contents
loading

This manual is also suitable for:

Security threat response manager 2008.2 r2

Table of Contents