122 Protection policies
Defining new protection policies
To clone a protection policy
1
In the
Policies
tab, select a protection policy.
2
Click
Clone
.
3
In
Clone Policy
, enter a name for the new protection policy, and click
OK
.
4
Modify the cloned protection policy.
See
“Adding or editing user-defined protection policies”
on page 121.
Enabling or disabling logging rules
The Network Security console provides the tools to determine how Symantec
Network Security monitors the network. Do this by setting logging rules that
specify which event types deserve alerting, and which can be ignored. This
section describes how to enable or disable event logging rules. Symantec
Network Security displays an event in the Incidents tab each time it detects an
event type specified by a logging rule.
You can also keep tabs on event types that you do not want logged every time
they are detected. You can apply the
For Every Non-Logged Events Log One
Event
option to notify you periodically, to prevent being inundated.
To enable logging rules to monitor events
1
In the
Policies
tab, do one of the following:
■
Click
New
>
Full Event List
.
Set Logging rules to alert
you when specified event
types are detected. The
alerts will be displayed in the
Incidents tab.
Set Blocking rules to prevent
specified event types from
entering the network.
Optional: Click here to be
alerted periodically about
non-logged event types.
Summary of Contents for 10521146 - Network Security 7120
Page 1: ...Symantec Network Security Administration Guide...
Page 12: ...12 Contents Index...
Page 14: ...14...
Page 70: ...70...
Page 110: ...110 Populating the topology database Adding nodes and objects...
Page 158: ...158 Responding Managing flow alert rules...
Page 188: ...188...
Page 242: ...242 Reporting Playing recorded traffic...
Page 268: ...268 Managing log files Exporting data...
Page 316: ...316 Advanced configuration Configuring advanced parameters...
Page 318: ...318...
Page 338: ...338 SQL reference Using MySQL tables...
Page 366: ...366 Glossary...
Page 392: ...392 Index...