Introduction to Symantec Event Manager for Intrusion Protection
|Article:TECH112102|||||Created: 2003-01-19|||||Updated: 2005-01-24|||||Article URL http://www.symantec.com/docs/TECH112102|
This document provides basic information about Symantec Event Manager for Intrusion Protection 1.0.
Symantec Event Manager for Intrusion Protection provides intrusion detection information via a central console, enabling you to see a consistent, holistic view of your IDS security posture. Through the collection and normalization of intrusion detection information from Symantec and key third-party products, Symantec Event Manager for Intrusion Protection can reduce confusing data, making impending threats more easily identifiable. Combining powerful alert notification, enterprise reporting, and role-based administration with a highly scalable secure architecture, Symantec Event Manager for Intrusion Protection is ideally suited to enterprise and managed security services environments.
Symantec Event Manager for Intrusion Protection provides you with the capability to manage IDS events through the Symantec Enterprise Security Architecture (SESA) Console. You can manage events from the following products:
- Symantec Host IDS
- Symantec ManHunt
- Symantec Decoy Server
- Symantec Event Collectors for IDS products
- ManHunt Smart Agent events from ManHunt
- Symantec Gateway Security
SESA is an underlying software infrastructure that integrates multiple Symantec and third-party products to provide flexible control of security within organizations. It protects your IT infrastructure from malicious code, intrusions, and blended threats. You can monitor and manage security-related events through the SESA Console.
Deciding whether to use Symantec Event Manager for Intrusion Protection
Article URL http://www.symantec.com/docs/TECH112102