STRM Users Guide
52
M
ANAGING
S
ENTRIES
Season length
Specify the length of time you wish this sentry to consider a
season. A season indicates the cycle of data, which STRM
uses to determine future data flow.
For example, the below graph shows that traffic is low on
the weekend but peaks regularly during the week.
The below graph shows traffic that cycles on a daily basis.
Layer
Specifies the property and measurement used in the Y-axis
of the Network Surveillance graph. The current value being
used to draw the graphs is displayed in red in the Layers
console. The values that can be used include bytes,
packets, number of hosts, and others.
Direction
Specify the direction of traffic you wish this sentry to
monitor. The options are In, Out, or Both.
Test as group
Select the check box if you wish all objects to add together
to be tested. Clear the check box if you wish each object to
be evaluated seperately.
For a Behavior sentry, your network may include seasonal
and non-seasonal objects. We recommend that you
remove all non-seasonal traffic if you wish all objects to be
tested independently. If the amounts of non-seasonal traffic
in your network is very small (less than 1%) compared to
the seasonal traffic, you do not have to remove the
non-seasonal traffic.
Date is relevant
Select the check box if you wish this sentry to consider
date. When selected, date fields appear. Enter the relevant
dates you wish this sentry to monitor. By default, the check
box is clear.
Table 4-6
Behavior Sentry Parameters (continued)
Parameter
Action
Содержание SECURITY THREAT RESPONSE MANAGER 2008.2 R2 - LOG MANAGEMENT ADMINISTRATION GUIDE REV 1
Страница 13: ...STRM Users Guide Assets 7 Note For more information see Chapter 8 Managing Assets...
Страница 100: ...STRM Users Guide 94 INVESTIGATING OFFENSES...
Страница 138: ......
Страница 226: ......