STRM-LM Installation Guide
Identifying Network Settings
5
At a minimum, we recommend that you define objects in the network hierarchy for:
•
Internal/external Demilitarized zone (DMZ)
•
VPN
•
All internal IP address space (for example, 0.0.0.0/8)
•
Proxy servers
•
Network Address Translation (NAT) IP address range
•
Server Network subnets
•
Voice over IP (VoIP) subnets
For more information, see the
STRM-LM Administration Guide
- Setting Up
STRM-LM, Creating Your Network Hierarchy.
Identifying Network
Settings
Before you install STRM-LM, you must have the following information for each
system you wish to install:
•
Hostname
•
IP address
•
Network Mask address
•
Subnet Mask
•
Default Gateway
•
Primary DNS Server
•
Secondary DNS Server (Optional)
•
Public IP address for networks using Network Address Translation (NAT)
•
E-mail Server
•
NTP Server (Console only) or Time server
Identifying Security
Monitoring Devices
STRM-LM can collect and correlate events received from external sources such as
security equipment (for example, firewalls, VPNs, or IDSs) and host or application
security logs, such as, window logs. Device Support Modules (DSMs) allows you
to integrate STRM-LM with this external data.
Table 1-1
Network Hierarchy
Description
Name
IP/CIDR Value
Weight
Содержание SECURITY THREAT RESPONSE MANAGER - LOG MANAGEMENT INSTALLATION REV 1
Страница 4: ......
Страница 11: ...STRM LM Installation Guide Identifying Security Monitoring Devices 7 ...
Страница 12: ......
Страница 20: ...STRM LM Installation Guide 16 INSTALLING STRM LM ...
Страница 28: ......
Страница 30: ......