62
Integrating Symantec Mail Security with Symantec Security Information Manager
Interpreting events in the Information Manager
Administration events that are sent to the Information Manager
Table B-4
(continued)
Event ID
(SES_EVENT_<Unique ID>)
SES_EVENT_HOST_INTRUSION
(1032000)
SES_EVENT_CONFIGURATION_CHANGE
(92008)
SES_EVENT_CONFIGURATION_CHANGE
(92008)
SES_EVENT_HOST_INTRUSION
(1032000)
SES_EVENT_CONFIGURATION_CHANGE
(92008)
SES_EVENT_CONFIGURATION_CHANGE
(92008)
SES_EVENT_LIST_UPDATE_FAILED
(92059)
SES_EVENT_VIRUS_DEFINITION_
UPDATE_FAILED (92054)
SES_EVENT_LIST_UPDATE_FAILED
(92059)
SES_EVENT_VIRUS_DEFINITION_
UPDATE_FAILED (92054)
SES_EVENT_CONFIGURATION_CHANGE
(92008)
SES_EVENT_CONFIGURATION_CHANGE
(92008)
Severity
Event class
Warning
symc_host_intrusion
Informational
symc_config_update
Informational
symc_config_update
Minor
symc_host_intrusion
Informational
symc_config_update
Informational
symc_config_update
Minor
symc_defupdate
Major
symc_defupdate
Critical
symc_defupdate
Critical
symc_defupdate
Informational
symc_config_update
Informational
symc_config_update
Rule
Description
(Reason
sent)
User login
failed
Enable/add
host
Disable/
remove host
Prohibited
action
Delete all
Change
group policy
Antispam
filters old
Antivirus
filters old
Antispam
license
expired
Antivirus
license
expired
Certificate
imported
Dictionary
items
imported