Previous Topic: Ideal Models

Next Topic: Event Categories

Ideal Models List

The following is the current list of ideal_models:

Name

Description

Antivirus

The Antivirus model covers the events which come from antivirus products. Examples include: CA eTrust Antivirus, ITM, McAfee VirusScan, Symantec Antivirus Corporate Edition, TrendMicro OfficeScan.

Authentication Service

CA SiteMinder Policy Server, Cisco Secure ACS

Content Management

CA SCM, SurfControl E-mail Filter

Corporate Mail Server

Microsoft Exchange

DBMS

The DBMS model covers products such as MS-SQL, MySQL, DB2, or Oracle.

Firewall

A firewall is a perimeter security device commonly used to protect network entities from other network entities. This includes network firewalls and personal firewalls. BorderWare Firewall Server, CheckPoint, Cisco PIX, Netscreen/Juniper.

Host IDS/IPS

The host IDS model covers products such as Access Control, Cisco ACS or McAfee Host Intrusion Prevention. CA eTrust Access Control.

Identity and Account Provisioning

The Identity and Account Provisioning model covers the events which come from provisioning products such as CA Identity Manager.

Network Device

Cisco IOS-based Devices (switches, routers) and other vendors as well.

Network IDS/IPS

CA eTrust ID, Enterasys Dragon, SNORT, ISS, etc.

Network Management

CA Unicenter NSM Event Management, HP OpenView, etc.

Operating System

Windows, Unix, Top-Secret, ACF2, Top-Secret, etc.

Proxy Server

WebSphere Edge Caching Proxy Server

Security Management System

CiscoWorks LMS, CiscoWorks VPN/Security Manager, CiscoWorks ACL Manager, Microsoft MOM, ISS RealSecurie Site Protector, Symantec Enterprise Security Manager, TrendMicro Control Manager

VPN Gateway

Nortel Connectivity

Vulnerability Management

Nessus Client, ISS Internet Scanner, Foundstone Foundscan, Nessus Server

Webserver

Microsoft IIS, Sun Sun One, Apache