HP-UX Host Intrusion Detection System Version 4.4 Administrator Guide (5900-1634, April 2011)

3 Getting Started with HP-UX HIDS................................................................37
HIDS Quick Start Guide..........................................................................................................37
Agents..................................................................................................................................38
System Manager....................................................................................................................38
Starting HP-UX HIDS for the First Time........................................................................................38
Operations Screens.................................................................................................................39
Basic Screen Actions...............................................................................................................40
Selecting Entries in Lists.......................................................................................................40
Searching Entries...............................................................................................................40
Sorting Entries...................................................................................................................40
4 Using the System Manager Screen..............................................................41
Starting the HP-UX HIDS System Manager..................................................................................42
Stopping the HP-UX HIDS System Manager................................................................................42
System Manager Components..................................................................................................43
Starting HP-UX HIDS Agents.....................................................................................................44
Getting the Status of Agent Hosts..............................................................................................45
Resynchronizing Agent Hosts....................................................................................................46
Activating Schedules on Agent Hosts.........................................................................................47
Stopping Schedules on Agent Hosts..........................................................................................47
Halting HP-UX HIDS Agents.....................................................................................................48
Accessing Other Screens.........................................................................................................49
Schedule Manager Screen..................................................................................................49
Host Manager Screen.........................................................................................................49
Network Node Screen........................................................................................................50
Preferences Screen.............................................................................................................50
Returning to the System Manager Screen...............................................................................50
5 Using the Schedule Manager Screen..........................................................51
The Schedule Manager...........................................................................................................51
Creating a Surveillance Schedule.........................................................................................52
Opening the Schedule Manager Screen...............................................................................52
Closing the Schedule Manager Screen.................................................................................53
Configuring Surveillance Schedules...........................................................................................53
Creating a New Surveillance Schedule.................................................................................54
Copying a Surveillance Schedule.........................................................................................54
Modifying a Surveillance Schedule......................................................................................55
Renaming a Surveillance Schedule.......................................................................................55
Deleting a Surveillance Schedule.........................................................................................56
Undoing and Redoing Changes...........................................................................................56
Saving a Surveillance Schedule...........................................................................................56
Configuring to Monitor HP-UX Containers (HP-UX SRP).................................................................57
Adding a New Container (SRP) Configuration.......................................................................57
Copying a Container (SRP) Configuration..............................................................................57
Modifying a Container (SRP) Configuration...........................................................................58
Renaming a Container (SRP) Configuration............................................................................58
Deleting a Container (SRP) Configuration..............................................................................59
Configuring Surveillance Groups..............................................................................................59
Creating a New Surveillance Group.....................................................................................59
Copying a Surveillance Group.............................................................................................60
Modifying a Surveillance Group..........................................................................................60
Renaming a Surveillance Group...........................................................................................60
Deleting a Surveillance Group.............................................................................................61
4 Contents