Table 55 Fields of the attack event details list

Field

Description

Time

Time when the attack event occurred

 

 

Src IP

Attack source IP address

 

 

Dest IP

Attack destination IP address

 

 

Event

Name of the event

 

 

Dest Port

Attack destination port

 

 

Protocol

Protocol used by the attack

 

 

Event Count

Number of events that occurred at the time

 

 

 

 

CAUTION:

Logs are aggregated at 3 o’clock every day. When you query event information of the current month, the system displays only the data collected from the first day of the month to the day before the current day.

Report exporting management

This function is for exporting reports periodically. You can specify the report export period, filter, template, and notification mode to define a report export task. Then, the system will automatically export reports according to your configuration. You may specify to send a generated reports file to an Email box or download the reports file from the system.

Configuration guide

From the navigation tree of the firewall management component, select Event Export Tasks under Event Analysis to enter the report export task management page, as shown in Figure 48, where you can query report tasks by specifying a report period and/or filter.

Figure 48 Report export task management page

Table 56 Query options of the report export task list

Option

Description

 

Select the export interval, which can be Day, Week, Month, Year or All. The

Period

system will display export tasks with the export interval being the one you

 

selected.

 

 

Filter

Select a filter to filter the report export tasks.

 

 

49

Page 53
Image 53
HP Firewall manual Report exporting management, Fields of the attack event details list

Firewall specifications

HP Firewall, often positioned as a key component in enterprise network security, is designed to protect sensitive data and maintain secure communications across various environments. The primary role of a firewall is to monitor incoming and outgoing network traffic and make decisions based on a set of security rules. HP Firewalls utilize a combination of hardware and software to create a robust security framework that helps organizations manage their network perimeter effectively.

One of the main features of HP Firewall is its advanced security protocols that provide deep packet inspection. This technology scrutinizes packet contents beyond the header information, analyzing data flows for signs of malicious activity. By employing Stateful Inspection, HP Firewalls maintain a state table that logs active connections, allowing the firewall to evaluate packets in the context of established sessions. This helps optimize resource usage while delivering high-performance security.

Another characteristic of HP Firewall is its integration with HP's broader security ecosystem. By working seamlessly with other HP security products, such as HP Secure Access and HP Advanced Malware Protection, organizations can deploy a multi-layered security strategy. This integration enables centralized management, streamlining security policies and improving response times against threats.

HP Firewalls also feature next-generation capabilities. This includes intrusion prevention systems (IPS) that actively monitor network traffic for suspected threats and automatically take action to block potential breaches. Additionally, these firewalls come with application awareness features, allowing organizations to enforce policies based on specific applications rather than simply based on port or protocol. This granularity enhances control over minimal use of bandwidth while simultaneously mitigating risks from unwanted applications.

Furthermore, HP Firewall models are equipped with user identity management, allowing organizations to apply security policies based on user roles and the specific needs of the business. This significantly improves the overall security posture as it adds another layer of control.

Scalability is a notable characteristic of HP Firewalls, making them suitable for both small businesses and large enterprises. Organizations can expand their security infrastructure as needed while maintaining efficiency.

In summary, HP Firewalls deliver advanced security features, scalability, and seamless integration within the HP security ecosystem. Their emphasis on deep packet inspection, real-time monitoring, and user identity management make them a powerful asset in the defense against cyber threats, ensuring that organizations can protect their critical data and maintain the integrity of their network environments.