Lockout Manager - Real Time Security Report


This article applies to:

  • Enterprise Reporter
  • Security Reporter

Question:

  • How do I confugure the Lockout Manager when utilizing the 'Real Time Security Report' functionality

Procedure:

To set up the lockout function:

1. Click the checkbox corresponding to Lockout to activate

the Severity and Duration (minutes) fields.


2. Specify the Severity of the end users’ lockout:

• Low - Choosing this option opens the Low Lockout

Components containing the Available Categories/

Groups and Assigned Categories/Groups subpanels.

Select the library category/categories or protocol(s)

the end user should not access.

For bandwidth gauges, to specify a port number the

user should not access, type a specific value in the

Port Number field, and/or use the up/down arrow

buttons to increment/decrement the current value by

one.

Click Add (for URL gauges) or Add Port (for bandwidth

gauges) to move the selection(s) to the Assigned

Categories/Groups list box.

• Medium - Choosing this option will lock out an end

user from World Wide Web access if he/she reaches

the threshold limit set up for the gauge.

• High - Choosing this option will lock out an end user

from network access via a TCP connection if he/she

reaches the threshold limit set up for the gauge.

3. Specify the Duration (minutes) of the lockout (the default

is “15” minutes), or click the “Unlimited” checkbox.


Notes:

 

After setting up gauges for monitoring end user Internet

activity, notifications for Internet abuse should be set up in

the form of policy alerts. These messages inform the administrator

when an end user has triggered an alert for having

reached the threshold limit established for a gauge. If the

end user was locked out of Internet/network for an indefinite

time period as a result of his/her Internet activity, the administrator

can determine when to unlock that end user’s workstation.

These functions are available to a group administrator only

if permissions were granted by the administrator who set up

his/her account.


Last Modified 6/28/2012.
https://support.trustwave.com/kb/KnowledgebaseArticle14685.aspx