|










| |
|

|
eTrust
Audit Features
|
Monitor Your System With
eTrust's Leading Auditing Tool
eTrust Audit is a comprehensive auditing solution
for today’s dynamic eBusiness. It efficiently collects enterprise-wide
security and system audit data from a wide spectrum of sources including UNIX,
Windows NT and 2000, Web servers, other eTrust products, mainframe
systems, and multiple RDBMS. eTrust Audit filters collected information
for consolidated viewing and reporting, stores this information in a central
database for easy access and reporting, and automatically triggers appropriate
actions upon detecting unusual or malicious activities on the system.

Features
 | Wide
Support of Servers and Applications.
eTrust Audit's policy-based
approach to security and audit management and its rich set of
out-of-the-box policies allows for a simple initial implementation
of the host-based intrusion detection system in the enterprise,
enhanced functionality in the area of long-term audit collection,
storage, analysis and reporting, and collection of security-related
events across multiple machines and domains from various types of
servers and applications, including UNIX and Windows NT/2000, the
eTrust product suite, Web servers, Unicenter TNG, mainframe security
products, database services, and other applications. The collected
information is placed into a centralized database, making it
available for analysis, reporting, and correlation, and helping your
organization form a complete picture of system activities.
|
|
 | Central Audit Log
Data Repository
Potentially valuable log
data are generated in a variety of places throughout the enterprise.
However, this type of data is useful only when it is centralized,
searchable, and stored in a relational database. eTrust Audit meets
this requirement by collecting audit log data, from a variety of
sources, into a central repository built around a relational
database.
|
|
 | Flexible
Filtering, Actions, and Alerts.
All log events can be filtered at
almost any level, including the end-user (client) level, and
selected events can trigger a number of actions and alerts
individually or simultaneously. Administrators can specify filter
criteria so that only relevant information is presented. eTrust
Audit also lets you automate the triggering process for detected
events. This flexibility allows you to create and manage the
enterprise security audit environment to meet your security
requirements.
|
|
 | Centralized
Policy Management.
eTrust Audit provides strong
centralized security policy management functionality. The ability to
define your organization's security policy and perform remote
distribution of host-based Intrusion Detection rules to the client
from one central host is one of the top needs of security managers
and administrators today. eTrust Audit's policy-based approach to
security and audit management, as well as its rich set of
out-of-the-box policies, provide security administrators with a
simple initial implementation of the host-based intrusion detection
system in the enterprise.
|
|
 |
Real-time Monitoring.
Critical events can be filtered,
logged, and sent to Security Monitors . a capability that allows
systems, network, and security personnel to be notified of critical
events in near real-time. In the event of hacker attacks,
maintaining the ability to immediately react to an attack becomes
crucial. eTrust Audit is designed to cope with hacker attacks and
provide instantaneous damage and attack control.
|
|
 | Bundled
Report Creation and Web Based Reporting.
eTrust Audit comes bundled with
numerous reporting and graph functions. Additional reporting
capabilities can be easily added using SQL, Crystal Reports, or any
other SQL-based report or development tool. Additionally, eTrust
Audit can generate reports in HTML language so that any Web browser
can view the report data without extra software, providing
accessibility to the Report Viewer.
|
|
 |
Cross-Platform and
Cross-Application Event Management.
eTrust Audit collects Audit Log data
from various sources, which allows for central security and event
monitoring in mixed-enterprise environments. The ability to
correlate events among different systems makes eTrust Audit a
critical management tool for today's eBusiness world. Its ability to
identify activity patterns across different systems and applications
gives administrators the upper hand when dealing with unauthorized
accesses or hackers. malicious assaults.
|
|
 |
GUI Tools for Collections and
Viewing.
eTrust Audit's Viewer is an
easy-to-use graphical tool that lets you view and filter audit data
in a consistent, searchable format with powerful filters and
reporting capabilities. eTrust Audit's intuitive approach greatly
simplifies collections and use of audit data.
|
|
|