Microolap EtherSensor
Overview of Features
Microolap EtherSensor Application
System requirements
Operation Description
Administrator's Qualification
List of Accompanying Documents
Installation of Microolap EtherSensor
What Is Included into the Software Distribution Package
Microolap EtherSensor Ethernet Connection
Management Interface
Listening Interface
Setting up Switches
Using Third-Party Information Security Tools
Sensor Settings
Message Sources
EtherSensor EtherCAP
Setting up the Configurator
Manual Setup (Config File)
EtherSensor ICAP
Setting up the Configurator
Manual Setup (Config File)
EtherSensor LotusTXN
Setting up the Configurator
Manual Setup (Config File)
Capture Results Delivery
Setting up the Configurator
DEVICELOCK Profiles
FALCONGAZE Profiles
SMTP Profiles
FTP Profiles
SFTP Profiles
FILEDROP Profiles
IMAP Profiles
INFOWATCH Profiles
SMB Profiles
SYSLOG Profiles
Lua Scripts
GROUP Profiles
Manual Setup (Config File)
DEVICELOCK Profiles
FALCONGAZE Profiles
SMTP Profiles
FTP Profiles
SFTP Profiles
FILEDROP Profiles
IMAP Profiles
INFOWATCH Profiles
SMB Profiles
SYSLOG Profiles
GROUP Profiles
Logging
Setting up the Configurator
Manual Setup (Config File)
EtherSensor Agent
Agent Operation Conditions
Agent Installation
Agent Files
Agent Logical Modules
Data Transferred to EtherStat
Data Transferred to EtherSensor
Working with the Agent
Possible Agent Operation Methods
Configuring the Service EtherSensor Agent
Agent Operation Logging
Troubleshooting
Event and Object Analysis
Setting up the Configurator
Manual Setup (Config File)
Messages Created
Capture Results Filtering
Filtration Basics
Filter Configuration
Tables
Rules
Criteria and Conditions
ALL, * Condition
DETECTOR Condition
PROTOCOL Condition
MSG-SIZE, TOTAL-SIZE Condition
CHECK-MD5 Condition
CHECK-MESSAGE-ID Condition
HOSTNAME Condition
IP Condition
HEADER Condition
ATTACH-NAME Condition
ATTACH-EXIST Condition
TAG Condition
FROM, TO, CC, BCC, ADDRESS, SUBJECT Condition
TEXT Condition
Actions
ACCEPT Action
DROP Action
JUMP Action
RETURN Action
LABEL Action
TAG Action
DATETIME Action
DNS Action
DNSBL-LH, DNSBL-RH Action
SAVE RAW DATA Action
TRANSPORT Action
HEADER Action
HEADER_EX Action
LOG Action
Short rules for developing filters
Tips
Prefiltering HTTP Requests
Conditions
ALL, * Condition
METHOD Condition
IP Condition
REQ-SIZE, RESP-SIZE, SIZE Condition
REQ-HEADER, RESP-HEADER Condition
URL Condition
TAG Condition
Actions
ACCEPT Action
DROP Action
JUMP Action
RETURN Action
COPY Action
ACCESS-LOG Action
TAG Action
LABEL Action
Filter Use Cases
Adding a Host Name
Host Filtering
URL Filtering
Filtering by HTTP+DNSBL
Filtering Large HTTP Objects
EtherSensor Updater Service
Setting up the Configurator
Manual Setup (Config File)
Sensor Routine Maintenance
Questions on the Sensor Maintenance
Licensing EtherSensor
The License File
Runtime Environment UHID (HardwareID)
How the Licensing System Works
What to Do in Case of Emergency
Hardware Failure
Unauthorized Access to the Software or OS
GUI Localization
Language Files
Editing GUI Elements
Microolap EtherSensor Changelog