XYGATE Merged Audit Reference Manual

Table Of Contents
XYGATE Merged Audit
®
Reference Manual
Contents
XYPRO Technology Corporation vii Proprietary and Confidential
3.7 Sending XMA Data to an Audit Logging Appliance ........................... 76
3.7.1 Configuring Filters to Implement a SIEM.......................... 77
3.7.2 Configuring Filters to Transmit Data via UDP .................... 78
3.7.3 Configuring the SYSLOGQ Filters................................... 79
3.7.4 Troubleshooting Communication with SIEM Appliances ........ 80
3.7.5 Parsing XMA SYSLOG Messages ..................................... 81
Chapter 4. Generating Reports Using XRM ....................................................... 85
4.1 Generating Audit Reports Using XMA_REPORT ............................... 85
4.2 Select the Audit Subvolume .................................................... 86
4.3 Select by Date and/or Time Range ............................................ 87
4.4 Select by Subject Userid ........................................................ 87
4.5 Select by Subject Login Name(s) ............................................... 88
4.6 Select by System ................................................................. 89
4.7 Select by Subject Terminal ..................................................... 89
4.8 Select Subject by Object Type ................................................. 90
4.9 Select by Object Name .......................................................... 90
4.10 Select by Operation .............................................................. 91
4.11 Select By Outcome ............................................................... 92
4.12 Select the Output File’s Location .............................................. 92
4.13 Select the Report’s Sort Order ................................................. 93
4.14 Select by Rule Name ............................................................. 93
4.15 Select by XYGATE Product Code ............................................... 94
4.16 Select by ALERTED Column ..................................................... 94
4.17 Select by Text in the Result Column .......................................... 95
4.18 Select by Message Code ......................................................... 95
4.19 Select by Message ID ............................................................. 95
4.20 Run the Report ................................................................... 95
4.21 Running Reports from Archived Tables ....................................... 97
Chapter 5. Using XMA_MANAGER ................................................................... 99
5.1 Introduction ....................................................................... 99
5.
2 The XYGATEMA Management Main Menu ...................................... 99
5.3 The Pathway Management Menu ..............................................100
5.4 The Movers Management Menu ................................................101
5.5 The Database Management Menu .............................................104