•
Engine Version
— Version number of the
detecting product’s engine (if applicable).
•
Threat Source IPv6 Address
— IPv6 address of
the system from which the threat
originated.
•
Event Category
— Category of the event.
Possible categories depend on the product.
•
Threat Source MAC Address
— MAC address of
the system from which the threat
originated.
•
Event Generated Time (UTC)
— Time in Coordinated
Universal Time that the event was detected.
•
Threat Source URL
— URL from which the
threat originated.
•
Event ID
— Unique identifier of the event.
•
Threat Source User Name
— User name from
which the threat originated.
•
Event Received Time (UTC)
— Time in Coordinated
Universal Time that the event was received
by the McAfee ePO server.
•
Threat Type
— Class of the threat.
•
File Path
— File path of the system which sent
the event.
•
User Name
— Threat source user name or
email address.
•
Host Name
— Name of the system which sent
the event.
Working with the Threat Event Log
Use these tasks to view and purge the Threat Event Log
Tasks
•
Viewing the Threat Event Log on page 117
Use this task to view the Threat Event Log.
•
Purging Threat Events on page 117
Use this task to purge Threat Event records from the database. Purging Threat Event
records deletes them permanently.
•
Purging the Threat Event Log on a schedule on page 118
Use this task to purge the Threat Event Log with a scheduled server task.
Viewing the Threat Event Log
Use this task to view the Threat Event Log.
Task
For option definitions, click
?
in the interface.
1
Click
Menu
|
Reporting
|
Threat Event Log
.
2
Click any of the column titles to sort the events. You can also click
Actions
|
Choose Columns
and the
Select Columns to Display page appears.
3
From the Available Columns list, select different table columns that meet your needs, then click
Save
.
4
Select events in the table, then click
Actions
and select
Show Related Systems
to see the details of the
systems that sent the selected events.
Purging Threat Events
Use this task to purge Threat Event records from the database. Purging Threat Event records deletes
them permanently.
Other important server information
ePolicy Orchestrator Log Files
11
McAfee
®
ePolicy Orchestrator
®
4.6.0 Software Product Guide
117
Содержание EPOCDE-AA-BA - ePolicy Orchestrator - PC
Страница 1: ...Product Guide McAfee ePolicy Orchestrator 4 6 0 Software...
Страница 14: ......
Страница 20: ......
Страница 24: ......
Страница 26: ......
Страница 42: ......
Страница 46: ......
Страница 76: ......
Страница 100: ......
Страница 108: ......
Страница 120: ......
Страница 158: ......
Страница 162: ......
Страница 210: ......
Страница 228: ......
Страница 238: ......
Страница 264: ......
Страница 288: ......
Страница 310: ......
Страница 314: ......
Страница 328: ...00...