202 Monitoring
Managing incident and event data
Selecting columns
The Network Security console provides a way to adjust the view by selecting
which columns the Network Security console displays.
■
See
“Selecting incident columns”
on page 202.
■
See
“Selecting event columns”
on page 203.
Selecting incident columns
Not all incidents contain data in every category, so you may want to remove
empty columns or add others to customize the display.
All users can
modify the
display of incident data by selecting columns.
To customize the incident columns
1
On the
Incidents
tab, in the upper
Incidents
pane, click
Columns
.
2
In
Table Column Chooser
, do one of the following:
■
Click
Select All
to display all columns.
■
Click the individual columns that you want to view.
3
Click
OK
to save and close.
The Incidents tab can display the following incident data
:
■
Last Mod.
Time
Indicates the date and time when Symantec Network Security
last modified the incident record.
■
Name
Indicates t
he user group of the current user.
■
Severity
Indicates t
he severity level assigned to the incident. An
incident’s severity is a measure of the potential damage that it
can cause.
■
Source
Indicates t
he IP address of the
attack source.
If the source is
made up of multiple addresses, then the Network Security
console displays
(multiple IPs)
and you can view the list of
addresses by double-clicking the event to see Event Details.
■
Destination
Indicates t
he IP address of the attack target. If the destination is
made up of multiple addresses, then the Network Security
console displays
(multiple IPs)
and you can view the list of
addresses by double-clicking the event to see Event Details.
■
Event Count
Indicates the total number of events associated with this incident
that have been logged to the database.
Summary of Contents for 10521146 - Network Security 7120
Page 1: ...Symantec Network Security Administration Guide...
Page 12: ...12 Contents Index...
Page 14: ...14...
Page 70: ...70...
Page 110: ...110 Populating the topology database Adding nodes and objects...
Page 158: ...158 Responding Managing flow alert rules...
Page 188: ...188...
Page 242: ...242 Reporting Playing recorded traffic...
Page 268: ...268 Managing log files Exporting data...
Page 316: ...316 Advanced configuration Configuring advanced parameters...
Page 318: ...318...
Page 338: ...338 SQL reference Using MySQL tables...
Page 366: ...366 Glossary...
Page 392: ...392 Index...