18.07.2013 Views

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

Table <strong>of</strong> Contents<br />

xiv<br />

Configuring the heartbeat burbs . . . . . . . . . . . . . . . . . . . . . . . . . . . 493<br />

Configuring <strong>Sidewinder</strong> <strong>G2</strong> for HA . . . . . . . . . . . . . . . . . . . . . . . . . 493<br />

Joining a <strong>Sidewinder</strong> <strong>G2</strong> to an existing HA cluster . . . . . . . . . . . . 498<br />

Enabling and disabling load sharing for an HA cluster . . . . . . . . . . 500<br />

Removing a <strong>Sidewinder</strong> <strong>G2</strong> from an HA cluster . . . . . . . . . . . . . . . 501<br />

Understanding the HA cluster tree structure . . . . . . . . . . . . . . . . . . . 502<br />

Managing an HA cluster . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 503<br />

Modifying HA common parameters . . . . . . . . . . . . . . . . . . . . . . . . 504<br />

Modifying HA local parameters . . . . . . . . . . . . . . . . . . . . . . . . . . . 508<br />

Scheduling a s<strong>of</strong>t shutdown for an HA cluster <strong>Sidewinder</strong> <strong>G2</strong> . . . . 510<br />

Connecting directly to a secondary/standby . . . . . . . . . . . . . . . . . 511<br />

CHAPTER 18 Monitoring . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 513<br />

Monitoring <strong>Sidewinder</strong> <strong>G2</strong> status using the dashboard . . . . . . . . . . . 514<br />

Viewing device information . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 515<br />

Viewing network traffic information . . . . . . . . . . . . . . . . . . . . . . . . . . 518<br />

Viewing IPS attack and system event summaries . . . . . . . . . . . . . . . 521<br />

Understanding audit event severities . . . . . . . . . . . . . . . . . . . . . . . 521<br />

Viewing the summary statistics . . . . . . . . . . . . . . . . . . . . . . . . . . . 522<br />

Monitoring <strong>Sidewinder</strong> <strong>G2</strong> status using the command line . . . . . . . . 525<br />

Checking system status . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 525<br />

Checking network status . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 527<br />

CHAPTER 19 Auditing and Reporting . . . . . . . . . . . . . . . . . . . . . . . . . . . . 531<br />

Overview <strong>of</strong> the audit process . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 532<br />

Auditing on the <strong>Sidewinder</strong> <strong>G2</strong> . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 533<br />

Understanding audit file names . . . . . . . . . . . . . . . . . . . . . . . . . . . 534<br />

Viewing audit information . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 534<br />

Exporting audit data . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 538<br />

Filtering audit data . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 539<br />

Creating custom audit filters . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 544<br />

Understanding audit messages . . . . . . . . . . . . . . . . . . . . . . . . . . . 547<br />

Logging application messages using syslog . . . . . . . . . . . . . . . . . . . 548<br />

Redirecting audit output to a syslog server . . . . . . . . . . . . . . . . . . 549<br />

Viewing syslog messages . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 550<br />

Generating reports using the Admin Console . . . . . . . . . . . . . . . . . . 551<br />

About the Reports window . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . . 552<br />

Viewing auto-generated reports . . . . . . . . . . . . . . . . . . . . . . . . . . . 557<br />

Generating exportable reports . . . . . . . . . . . . . . . . . . . . . . . . . . . . 558<br />

Generating reports using <strong>Sidewinder</strong> <strong>G2</strong> Security Reporter . . . . . . . 559<br />

Formatting & exporting audit data for use with external tools . . . . . . 560<br />

Overview <strong>of</strong> supported log file formats . . . . . . . . . . . . . . . . . . . . . . 560<br />

Using <strong>Sidewinder</strong> <strong>G2</strong> formatting and exporting tools . . . . . . . . . . . 561

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!