18.07.2013 Views

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.2 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Chapter 7: Configuring Network Defenses<br />

Configuring the ARP Network Defense<br />

218<br />

For example, the audit is limited to generating an audit event for the first<br />

three (3) occurrences for every 60 seconds. If <strong>Sidewinder</strong> <strong>G2</strong> stopped<br />

100 ARP attacks in 60 seconds, then <strong>Sidewinder</strong> <strong>G2</strong> generates three<br />

records for the first three denials, and then generates another audit<br />

record stating that 97 occurrences were suppressed in that 60 second<br />

window.<br />

Limiting audit in this manner reduces system load.<br />

• Always audit — Generates an audit record for every audit event.<br />

Caution: Unlimited auditing runs the risk <strong>of</strong> overflowing the log partition<br />

and creating problems for the <strong>Sidewinder</strong> <strong>G2</strong>.<br />

Options for viewing the audit output generated by these selections include:<br />

• Admin Console > Dashboard<br />

• Admin Console > Audit and Reports<br />

• <strong>Sidewinder</strong> <strong>G2</strong> Security Reporter<br />

• Third-party reporting tools

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!