Installed SiteProtector Components
Optional SiteProtector Components
Agent Manager
Console (user must install separately)
SiteProtector Database
Event Collector
SiteProtector Reporting
SP Core (See “SiteProtector components” for details)
IBM Security Server Protection for Windows
SiteProtector SecurityFusion module
Event Archiver
Event Viewer
X-Press Update Servers
Included licenses
The SiteProtector SP3001 appliance includes licenses for the SiteProtector Reporting component, IBM
Security Server Protection for Windows, and the SecurityFusion module.
SiteProtector components
The SiteProtector SP3001 appliance consists of required and optional SiteProtector components that
provide the base functionality necessary to accept, monitor, and analyze network events. Depending on
your Site requirements, you may need to install more than one of some components.
Component descriptions
The following table describes the SiteProtector components:
SiteProtector Component
Description
Agent Manager
The Agent Manager manages the command and control activities of the Desktop
Protection agents, IBM Security Server Protection, and Proventia Network MFS,
X-Press Update Server, and Event Archiver; and it also facilitates data transfer
from agents to the Event Collector.
Console
The SiteProtector
™
Console is the main interface to SiteProtector where you can
perform most SiteProtector functions, such as monitoring events, scheduling
scans, generating reports, and configuring agents. You can also use the
SiteProtector Console to configure the SiteProtector SP3001 appliance's
administration options.
Event Archiver
The Event Archiver provides the capability to archive security events to a
remote location, thereby reducing the number of events that the database must
store.
Note:
See the
SiteProtector Configuration Guide
for information about configuring
the Event Archiver.
Event Collector
The Event Collector manages real-time events from sensors and agents as well
as vulnerability data from scanners.
Event Viewer
The SiteProtector Event Viewer receives unprocessed events from the Event
Collector to provide near real-time access to security data for troubleshooting.
Chapter 1. Introduction to the SiteProtector SP3001 Appliance
3
Summary of Contents for SP3001
Page 4: ...iv SiteProtector System SP3001 Hardware Configuration ...
Page 12: ...6 SiteProtector System SP3001 Hardware Configuration ...
Page 16: ...10 SiteProtector System SP3001 Hardware Configuration ...
Page 26: ...20 SiteProtector System SP3001 Hardware Configuration ...
Page 30: ...7 Close the Remote Desktop session 24 SiteProtector System SP3001 Hardware Configuration ...
Page 32: ...26 SiteProtector System SP3001 Hardware Configuration ...
Page 42: ...36 SiteProtector System SP3001 Hardware Configuration ...
Page 46: ...40 SiteProtector System SP3001 Hardware Configuration ...
Page 48: ...42 SiteProtector System SP3001 Hardware Configuration ...
Page 49: ......
Page 50: ... Printed in USA ...