TO UNSUBSCRIBE: email "unsubscribe issforum" in the body of your message to [EMAIL PROTECTED] Contact [EMAIL PROTECTED] for help with any problems! ---------------------------------------------------------------------------- Hello everybody, we collect and visualize events from an NT Network Engine on a RealSecure console (version 3.2.1). I've got two questions: 1) How is it possible to filter one type of pre-defined events (for example FTP_Syst) in order to keep only the ones that don't originate from our machines, while keeping all the records for another type of events concerning the same protocol (in my example, say FTP_User)? It seems to me that the user specified filters are well-suited to filter all the traffic related to a specific protocol, but not to refine the detection done at the pre-defined events level. 2) Concerning the reports, is it possible to get the DNS resolved names of the machines instead of the IP adresses? Thank you very much for your help! Francois ______________________________________________________ Get Your Private, Free Email at http://www.hotmail.com
