TO UNSUBSCRIBE: email "unsubscribe issforum" in the body of your message to
[EMAIL PROTECTED]  Contact [EMAIL PROTECTED] for help with any problems!
----------------------------------------------------------------------------

Hello everybody,

we collect and visualize events from an NT Network Engine on a RealSecure 
console (version 3.2.1).
I've got two questions:

1) How is it possible to filter one type of pre-defined events (for example 
FTP_Syst) in order to keep only the ones that don't originate from our 
machines, while keeping all the records for another type of events 
concerning the same protocol (in my example, say FTP_User)? It seems to me 
that the user specified filters are well-suited to filter all the traffic 
related to a specific protocol, but not to refine the detection done at the 
pre-defined events level.

2) Concerning the reports, is it possible to get the DNS resolved names of 
the machines instead of the IP adresses?

Thank you very much for your help!

Francois

______________________________________________________
Get Your Private, Free Email at http://www.hotmail.com



Reply via email to