Fortinet FortiDB manual Rule Chaining

Page 21

 

 

Rule Chaining

Chaining with Parameterized User-Defined Rules

In this case, the alert will be generated only for first object in the SELECT list; namely: vje.test.

FortiDB Version 3.2 Utilities

User Guide

15-32000-81369-20081219

19

Image 21
Contents Utilities User Guide Trademarks FortiDB Utilities User GuideTable of Contents Index FortiDB MA Utilities Selecting Addresses for Auto-Discovery Auto DiscoveryResults from Auto-Discovery Selecting Non-Standard Ports for Auto-DiscoveryDiscovered Database Information Populating Connection Form MS-SQLMS-SQL Connection Summary Button Connection Summary Output Connection SummaryRule Chaining Rule Chaining Setting ScreenRule Chaining Chaining with Parameterized User-Defined Rules General Pudr Steps Parameterized User-Defined Rule Flow DiagramValidating the Pudr before Saving Disabled Parameter CheckboxesExample of Chaining to a PL/SQL-based Pudr Item Setting for Session PolicyPolicy Settings for Suspicious Login Time Immediate Table Columns That Could Appear in Alerts Chained-Rule Alerts UBM Session Policy and PudrResulting Killed Session DB Example Multiple Source-Rule-Violation BehaviorRule Chaining Setting a Report Schedule Setting a Timer-based ScheduleAlert Report Manager Setting a Calendar-based Schedule Deleting a Previously Set Timer ScheduleSetting a Timer-Based Schedule Deleting a Timer ScheduleSetting a Randomized Interval Setting a Combined ScheduleSetting a Calendar-Based Schedule Setting a Randomized IntervalEnabling Email Recipients Reporting by TimeSpecifying Report Parameters ARM Reporting by Time ARM Reporting by Time Calendar Pop-upNew Reports Menu New Report Setting Screen topNew Report Setting Screen bottom Using the Select Checkbox to Affect Multiple Reports Saved and Enabled ReportRunning and Analyzing Reports Activating ARMStatus Menu Status Dialog View Reports Dropdown List on Current Reports ScreenReport Summary Action Current Report ConfigurationChoosing Summary Report Action Summary-Action Output TypesReport Detailed Action LimitationReport Size Archiving Reports Custom Reports Using This FeatureScheduling Custom ReportsTime-only Schedule Settings Daily Schedule Settings Weekly Schedule Settings Monthly Schedule SettingsCustomer and Company Information Report and Template Generation and Management Company Information DialogCustom Reports Main Adding Reports Modifying ReportsAdding a Report Deleting Reports Modifying a ReportDeleting a Report Modifying Report Templates Generating Reports Report ResultTemplates Manager Modifying a Template Generated Html Report Example Report History Report HistoryUser Administration for Custom Reports and SOX Reports Licensing and AdministrationReports radio button on the User Administration screen Property Purpose Possible Values DefaultLimitations Property Purpose Possible Values Default1SOX Reports within Custom Reports Manager SOX Compliance ReportsReports and Acronyms General Setup InstructionsCommon Report Header Fields Report Name AcronymHistory of Privilege Changes Report HPC Cobit Objectives and Setup RequirementsReport Body Columns HPC Report SampleAUC Report Sample Abnormal or Unauthorized Changes to Data Report AUCAUS Report Sample Abnormal Use of Service Accounts Report AUSATD Report Sample Abnormal Termination of Database Activity Report ATDEnd of Period Adjustments Report EPA Settings Dialog for the EPA ReportEPA Report Sample Assumptions CaseVAS Report Sample Verification of Audit Settings Report VASLicensing and Administration Archiving ReportsReport Size Verification of Audit Settings Report VAS Index