18.07.2013 Views

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

Sidewinder G2 6.1.1 Administration Guide - Glossary of Technical ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

SNMP and <strong>Sidewinder</strong> <strong>G2</strong><br />

14-6 Configuring the SNMP Agent<br />

Note: This type <strong>of</strong> event is not logged when an administrator attempts to switch to<br />

an unauthorized role (srole) or enter incorrect login information.<br />

UPS_SYSTEM_SHUTDOWN—This trap is sent when the <strong>Sidewinder</strong><br />

<strong>G2</strong> has been running on UPS battery power for the estimated<br />

battery time. (See “Configuring the <strong>Sidewinder</strong> <strong>G2</strong> to use a UPS”<br />

on page 3-58 for additional information on UPS)<br />

SYN_FLOOD_ATTACK—This trap is sent when the <strong>Sidewinder</strong> <strong>G2</strong><br />

encounters a SYN attack.<br />

TE_VIOLATION—This trap is sent when an unauthorized user or<br />

process attempts to perform an illegal operation on a file on the<br />

<strong>Sidewinder</strong> <strong>G2</strong>.<br />

NETWORK_TRAFFIC—This trap is sent when the number <strong>of</strong> traffic<br />

audit events written by the various proxies (WWW, Telnet, FTP,<br />

etc.) going through the <strong>Sidewinder</strong> <strong>G2</strong> exceeds a specified number<br />

in a specified time period. This information can be useful for<br />

monitoring the use <strong>of</strong> the <strong>Sidewinder</strong> <strong>G2</strong> services by internal users.<br />

Note: Network traffic thresholds are reported as number <strong>of</strong> events per second, and<br />

not as number <strong>of</strong> bytes per second.<br />

CRIT_COMP_FAILURE—This trap when the <strong>Sidewinder</strong> <strong>G2</strong> detects<br />

that a critical component has failed. For example, this trap occurs<br />

when daemond detects a s<strong>of</strong>tware module has failed.<br />

VIRUSMIME—This trap occurs when the number <strong>of</strong> mail or HTTP<br />

messages that failed the MIME/Virus filter exceeds a specified<br />

threshold in a specified time period.<br />

<strong>Sidewinder</strong> <strong>G2</strong> SNMP MIBs<br />

Management Information Bases (MIBs) are associated with both the<br />

management station and the SNMP agent in the <strong>Sidewinder</strong> <strong>G2</strong>. The<br />

<strong>Sidewinder</strong> <strong>G2</strong> SNMP agent supports two MIB structures (as well as a<br />

Host MIB).<br />

mib2—This is a standard SNMP MIB as defined in RFC-1213.<br />

sccMibSw—This is a <strong>Sidewinder</strong> <strong>G2</strong>-specific MIB provided by<br />

Secure Computing Corporation. Figure 14-3 shows the location <strong>of</strong><br />

the <strong>Sidewinder</strong> <strong>G2</strong> MIB structures within the SNMP root hierarchy.<br />

Note: MIBs that are used to compile the SNMP agent for the <strong>Sidewinder</strong> <strong>G2</strong> are located in<br />

/etc/sidewinder/snmp.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!