HP Host Intrusion Detection System (HIDS) manual On the System Manager Screen, Status Field Values

Models: Host Intrusion Detection System (HIDS)

1 270
Download 270 pages 6.58 Kb
Page 59
Image 59

System Manager Screen

On the System Manager Screen

On the System Manager Screen

The System Manager screen (Figure 4-1) has a number of menus and buttons, which are described in the procedures in the following sections. It also has two lists — Schedules and Monitored Nodes — and a status line, which are described here.

Schedules list: the names of the available surveillance schedules that can be downloaded to agent hosts. Left-clickto select one; double-left-clickto view or edit it.

Monitored Nodes list: the current monitored agent hosts. The columns displayed can be changed; see “Preferences Screen” on page 115. The column fields are:

Status: the current state of an agent host and any surveillance schedule. The possible status values are described in “Status Field Values” below.

Host: the host name assigned on the Host Manager screen.

Address: the host IP address assigned on the Host Manager screen.

Tag: the tag name assigned on the Host Manager screen.

Schedule: the name of the surveillance schedule that is currently loaded, scheduled or running on this host. or None if no schedule is currently loaded.

Total Alerts: the total number of alerts generated by this host; the highest severity of all alerts is color-coded with a red (high), yellow (medium), or blue (low) ball.

Unseen Alerts: the number of alerts that have not yet been marked as seen; the highest severity of all unseen alerts is color-coded with a red (high), yellow (medium), or blue (low) ball.

Status line: the bottom line of the screen shows the processing and completion status for the commands you execute.

Status Field Values

Status Value

Description

Activating

The agent is activating the schedule.

Available

The agent is running on the host but is not running a schedule.

Downloading

The System Manager is downloading a schedule to the agent.

Error

The agent detected an error; check the error log.

No Agent Available No agent was detected on the agent host.

Polling

The System Manager is communicating with the host.

Resyncing

The System Manager and agent are resynchronizing.

Running

The schedule is running on the agent.

Scheduled

The schedule is waiting for its next active time block on the agent.

Status Unknown The System Manager does not know the status of the agent host. Stopping Schedule The agent is stopping its current schedule

Chapter 4

47

Page 59
Image 59
HP Host Intrusion Detection System (HIDS) On the System Manager Screen, Status Field Values, Status Value Description