.N Delete ITA Filter Log #Policy Name .L 2 #Policy structure .D This policy appends an entry to the ITAFilter.log file every 20 seconds. When the ITAFilter notices this appended entry it deletes itself - thus managing its size. #Policy Description .V 1013534865 #Policy revision number .Z 2176 #Policy ID .Z 2176 #Policy ID .R Start timer #Rule Definition ..D This rule monitors for agent startup and starts a timer #Rule Description ..Z 2175 #Rule ID ..K #Rule And Select logic ..V 0 #Rule Value ..S #Select Clause(s) ...S ITA Start up #Status ....T *Intruder Alert agent*starting* #Regular text ....T *Policy "ITA Agent Status* activated* #Regular text ....T *Policy "ITA Agent Status* modified* #Regular text ....C 0 #Case sensitivity ....Z 2173 #ID of the clause ..S #Select Clause(s) ...S ITA web agent #Status ....T *agent zeus* #Regular text ....C 0 #Case sensitivity ....Z 2172 #ID of the clause ..A #Action Clause(s) ...I Start Timer #Set timer ....S 300 d #Goes off time ....I 20 #Timer Intervals ....Z 2174 #ID of the clause .R Raise flag #Rule Definition ..D This rule raises a flag everytime the timer goes off. #Rule Description ..Z 2171 #Rule ID ..V 0 #Rule Value ..S #Select Clause(s) ...I Timer #Timer ....I 2174 #ID list ....Z 2169 #ID of the clause ..A #Action Clause(s) ...B Raise Flag #Raise Flag ....G #Global context ....Z 2170 #ID of the clause .R Del ITAFilter.log #Rule Definition ..D This rule appends an entry to the ITAFilter.log file #Rule Description ..Z 2168 #Rule ID ..V 0 #Rule Value ..S #Select Clause(s) ...B Flag #Flag(S) ....I 2170 #ID list ....F 2170 #Flag list ....Z 2166 #ID of the clause ..A #Action Clause(s) ...A Append to File #Append to File(s) ....T C:\Program Files\Symantec\ITA\system\itafilter.log #Regular text ....Z 2167 #ID of the clause