STRM Users Guide
Creating a Sentry
47
Step 8
Click
Next
.
The Sentry Responses window appears.
Step 9
Choose one of the following options:
a
If you selected the auto learn option:
Maximum emitted events
per IP
Specify the maximum number of times you wish this event
to generate per IP address. For example, if you set the
maximum alerts to 2, only two events are generated per
attacker IP address.
Sharing
Click
Share Sentry
to access the Select Users window,
which allows you to indicate any users you wish to share
this sentry.
Note:
This option is only available when the Auto learn
policy, learn for check box is selected.
Table 4-3
Sentry Attributes Parameters (continued)
Parameter
Action
Table 4-4
Sentry Response Parameters
Parameter Sub-Parameter Action
Email Subject
Specify a subject for the notification e-mail sent by the
sentry engine.
Recipient(s)
Specify the recipient(s) of the notification e-mail sent
by the sentry engine. Separate multiple entries with a
comma.
Format
Specify the amount of text included in the e-mail.
Options include: Subject Only, Brief, Detailed - Text,
Detailed - HTML
Содержание SECURITY THREAT RESPONSE MANAGER 2008.2 R2 - LOG MANAGEMENT ADMINISTRATION GUIDE REV 1
Страница 13: ...STRM Users Guide Assets 7 Note For more information see Chapter 8 Managing Assets...
Страница 100: ...STRM Users Guide 94 INVESTIGATING OFFENSES...
Страница 138: ......
Страница 226: ......