Symantec Security Expressions Server manual Adding Scheduled Tasks, Basic Settings

Page 75

Audit-On-Schedule

The Scheduled Tasks table contains the following information:

Column

Description

 

 

 

Click this button to start or stop the task in this row. This

Run Now/Stop/Initializing

column also displays "Initializing" when a task is in the middle

 

of a process.

Edit

Click this link to edit the task in this row.

Delete

Click this link to delete the task in this row.

Description

A description of this task, created when you scheduled the task.

Machine Lists

Machine Lists to audit. All devices in all Machine Lists listed will

be audited. You can only edit global Machine Lists in the

 

SecurityExpressions Console.

Policies

Name of the Policies to use for the audit.

Run On

Server on which to run audit.

Last Ran

Last time this task ran.

Current Schedule

Time and frequency of the scheduled task.

Notifications

List of notifications to run when the task completes.

Windows Group Edit Access

Windows User Groups who can modify this task.

Windows Group Run Access

Windows User Groups who can use this task to run audits.

 

How many computers were included in the most recently ran or

Hosts

currently running audit. This would be the total number of

 

computers in all machine lists selected for the audit.

Done

How many computers were audited or had an audit attempt

during the most recently ran or currently running audit.

 

Successful

How many computers were successfully audited during the

most recently ran or currently running audit.

 

Connection Error

How many computers were not audited due to a connection

error during the most recently ran or currently running audit.

 

 

How many computers were not audited because they weren't

Not Found

found on the network during the most recently ran or currently

 

running audit.

Adding Scheduled Tasks

To configure a new scheduled task:

1.Click the Audit-On-Schedule tab and then the Scheduled Tasks link.

2.Click the Add New button to configure a new task.

Basic Settings

3.In the Description box, type a brief statement identifying the scheduled task.

4.In the Policies list, select one or more policies on which you want to base any audits this task performs.

Policies are configured on the Policies page. If none of the existing policies meet your needs, you can configure a new one by clicking the Edit Policy List link, which opens the

67

Image 75
Contents SecurityExpressions Server User Guide Page Table Of Contents Page Table Of Contents Page Vii Page Contacting Us Page Contacting Technical Support Technical SupportPage SecurityExpressions Console Other ProductsPage About SecurityExpressions Audit & Compliance Server OverviewPage How to Audit your Local Computer Self-Service AuditWhat is Self-Service Auditing? Self-Service Audit AgreementDisplays on the page. No detailed audit results appear Pages with Role Settings Configure ServersAbout Server Configuration Local Server SettingsSetup Viewing Audit ResultsDatabase Connection Windows 2000 Servers Secure ConnectionClick OK on the Default Web Site Properties window Credential Store UserCreating Credential Stores Site Preferences Enable Web ServicesSecurityExpressions Console Credential Stores Software RegistrationAccess Item Rights Global Machine List Access User RolesPolicy File Library Library SynchronizationCheck the Synchronize with a policy file library box How System Scores are Calculated About Policy FilesAgent & Service Configuration Default method for remote execution on WindowsTarget Options SSH Agent Authentication Database Cleanup Add Task Update TaskCancel PoliciesAgent Downloads Site PreferencesClick Use the Following Agreement Allow Remediation Page Policies Table What is Audit-on-Connect?Audit-On-Connect PoliciesPage Adding Policies Editing Policies Deleting Policies Configuring with Run-Time Policy VariablesPage Scopes ScopesAdd a New Scope Page Edit a Scope Scopes Table Supported Operators Deleting ScopesDNS Domain Name Scopes Expression ScopesSupported Functions Org Unit ScopesDetection Method Scopes Notifications Editing Notifications Creating New Command NotificationsCreating New Email Notifications Click Add NewClick Add New Creating New Command Notifications Notification Variables Deleting NotificationsAdding Exceptions ExceptionsExceptions Exceptions Table Column DescriptionConnection Monitors Specify Password and Encrypted PasswordConnection Monitors Deleting ExceptionsConfiguring Connection Monitors RemoveEnabling Connection Monitors IP Range Section Connection Monitor Configuration FileOptions DefaultProcessing the Configuration File Configuration File SyntaxActive Directory Active Directory Connection Monitor only Slow Links NetworkInitial Token Trace Route InformationNetwork Admissions Control Unmanaged SystemsRedirection Web HealthyQuarantined/Unknown Reaudit if quarantinedAudit on Connect Tracing Redirection Web Page BehaviorAudit on Connect Tracing Page Page Audit-On-Schedule What is Audit-on-Schedule?Page Adding Policies Editing Policies Deleting Policies Page Notifications Click Add New Click Add New Deleting Notifications My Machine Lists My Machine ListsEditing Machine Lists Adding Machine ListsScheduled Tasks Scheduled TasksDeleting Machine Lists Editing Global Machine ListsAdding Scheduled Tasks Basic SettingsSchedule Settings Hosts Not Connected Settings Credentials Settings Other Options SettingsEditing Scheduled Tasks Windows Group AccessSchedule Settings Notifications Other Options Settings Deleting Scheduled Tasks Page Adding a New Audit-On-Connect Report Profile View Audit-On-Connect ActivityBrowse Audit-On-Connect Activity Audit-On-Connect Activity Table Column DescriptionDeleting Report Profiles Editing Report ProfilesAudit-On-Connect Exceptions Report Audit-On-Connect Error Log ReportPage View Audit Results Browse Audit ResultsAdding a New Audit Results Report Profile Page Deleting Audit Report Results Profiles Scheduled Audits Log ReportAdding Custom Reports to the Server Application Editing Audit Report Results ProfilesPage Glossary Page Index ConfigureIP address 33, 44, 45 Rule weights