Juniper SECURITY THREAT RESPONSE MANAGER 2008.2 R2 - REV1 Manual page 80

Table of Contents

Advertisement

74
M
S
ANAGING
ENTRIES
Step 5
Table 4-21 Edit Behavior, Anomaly, or Threshold Sentry (continued)
Parameter
Description
Maximum
Specify the maximum number of number of times you wish this
responses per
event to generate a response.
events
Is Enabled
Select the check box to enable this sentry. Clear the check box to
disable the sentry.
Test as group
Select the check box is you wish all objects to add together to be
tested. Clear the check box if you wish each object to be
evaluated separately.
Restrictions
Select the check box for one or more restrictions you wish to
enforce for an active sentry including:
Permissions
Specify the users you wish to allow access to edit this sentry.
Package
Using the drop-down list box, select the sentry package you wish
to apply to this sentry. To edit an existing package, click Edit or
to create a new package, click Create New.
Responses
Specify the method you wish to be notified if this sentry
generates an event. The options are:
QRL
Specifies the details of the current view for this sentry.
Edit the variables, as necessary. The list of variables includes all configured values
for this sentry. Only the variables that apply to this sentry appear.
STRM Users Guide
Date is relevant - Select the check box to indicate that this
sentry must consider the date. When selected, date fields
appear. Enter the relevant dates you wish this sentry to
monitor.
Day of week is relevant - Select the check box to indicate
that this sentry must consider the day of the week. When
selected, day of the week fields appear. Using the drop-down
list boxes, select the relevant days you wish this sentry to
consider.
Time of day is relevant - Select the check box to indicate that
this sentry must consider time of day. When selected, time of
day fields appear. Using the drop-down list box, select the
time of day you wish this sentry to consider.
Email
Log - Sends event information to standard syslog on STRM
Console.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Security threat response manager 2008.2 r2

Table of Contents