home *** CD-ROM | disk | FTP | other *** search
/ Chip 2005 June / ccd0605.iso / Software / Shareware / Comunicatii / outpost / OutpostProInstall.exe / PRESETS.INI < prev    next >
Encoding:
INI File  |  2004-11-23  |  10.9 KB  |  361 lines

  1. ;Last modify build:    #355
  2. ;Last modify date:    01.09.2004
  3.  
  4. ;10000xx - reserved by Ads presets
  5. ;10001xx - reserved by Content presets 
  6. ;10002xx - reserved by DNS presets 
  7. ;10003xx - reserved by Attachment presets 
  8. ;10004xx - reserved by Attack Detection
  9. ;10005xx - reserved by Active Content
  10. ;10006xx - reserved by Connection Log
  11.  
  12. [PresetsVer]
  13. IniSectionVer=355, 00000000
  14.  
  15. [Fields]
  16. ;Ads
  17. 100000="%ps_ads_key_count%", VISIBLE|FORMAT_RIGHT, 80, TEXT_INTEGER, 
  18.  
  19. ;content
  20. 100100="%ps_content_key_count%", VISIBLE|FORMAT_RIGHT, 80, TEXT_INTEGER, 
  21. 100101="%ps_content_url_count%", VISIBLE|FORMAT_RIGHT, 80, TEXT_INTEGER, 
  22.  
  23. ;DNS
  24. 100200="%ps_dns_count%", VISIBLE|FORMAT_RIGHT, 80, TEXT_INTEGER, 
  25.  
  26. :Attachment
  27. 100300="%ps_attach_file_count%", VISIBLE|FORMAT_RIGHT, 80, TEXT_INTEGER, 
  28.  
  29. ;Attack
  30.  
  31. ;Active Content
  32. 100500="%ps_act_cont_event_count%", VISIBLE|FORMAT_RIGHT, 80, TEXT_INTEGER,
  33.  
  34.  
  35. [AliaseToIDMapping]
  36.  
  37. ;Ads
  38. ps_ads_key_count=100000
  39.  
  40. ;content
  41. ps_content_key_count=100100
  42. ps_content_url_count=100101
  43.  
  44. ;DNS
  45. ps_dns_count=100200
  46.  
  47. ;Attachment
  48. ps_attach_file_count=100300
  49.  
  50. ;Attack
  51.  
  52. ;Active Content
  53. ps_act_cont_event_count=100500
  54.  
  55. ;////////////////////////////////////////////////////////
  56. ;//
  57. ;//    presets
  58. ;//
  59. ;////////////////////////////////////////////////////////
  60.  
  61.  
  62. ;////////////////////////////////////////////////////////
  63. ;Ads
  64. [ps_ads_block]
  65. _PARENT=Ads
  66. DisplayName=%Last 10 Ads blocked%
  67. Icon=op_log.dll, 16
  68. OpenIcon=op_log.dll, 16
  69. DataTable=SELECT TOP 10 * from ads_log order by fld_20005_11 desc 
  70. DefaultOrder=20005, 20002, 20003, 20004
  71. MaxRecordCount=10
  72.  
  73. [ps_ads_keywords]
  74. _PARENT=Ads
  75. DisplayName=%Most popular keywords%
  76. Icon=op_log.dll, 16
  77. OpenIcon=op_log.dll, 16
  78. DataTable=SELECT fld_20004_9/*Keyword*/, count(fld_20004_9) as ps_ads_key_count from ads_log group by fld_20004_9 order by 2 desc 
  79. DefaultOrder=20004, 100000
  80.  
  81. ;////////////////////////////////////////////////////////
  82. ;Content
  83. [ps_content_keywords]
  84. _PARENT=Content
  85. DisplayName=%Most often keywords used for blocking%
  86. Icon=op_log.dll, 16
  87. OpenIcon=op_log.dll, 16
  88. DataTable=SELECT fld_21004_9/*Keyword*/, count(fld_21004_9) as ps_content_key_count from cnt_log group by fld_21004_9 order by 2 desc
  89. DefaultOrder=21004, 100100
  90.  
  91. [ps_content_often]
  92. _PARENT=Content
  93. DisplayName=%Most often sites blocked%
  94. Icon=op_log.dll, 16
  95. OpenIcon=op_log.dll, 16
  96. DataTable=SELECT fld_21003_9/*URL*/, count(fld_21003_9) as ps_content_url_count from cnt_log group by fld_21003_9 order by 2 desc
  97. DefaultOrder=21003, 100101
  98.  
  99. [ps_content_10]
  100. _PARENT=Content
  101. DisplayName=%Last 10 sites blocked%
  102. Icon=op_log.dll, 16
  103. OpenIcon=op_log.dll, 16
  104. DataTable=SELECT TOP 10 * FROM cnt_log order by fld_21005_11/*Date Time*/ desc
  105. DefaultOrder=21005, 21002, 21003, 21004
  106. MaxRecordCount=10
  107.  
  108. ;////////////////////////////////////////////////////////
  109. ;DNS Cache
  110. [ps_dNS_cache_used]
  111. _PARENT=Dns
  112. DisplayName=%Most used records%
  113. Icon=op_log.dll, 16
  114. OpenIcon=op_log.dll, 16
  115. DataTable=SELECT fld_22004_9/*Host*/, count(fld_22004_9) as ps_dns_count from dns_log WHERE fld_22002_7=2/*Event Type*/ group by fld_22004_9 order by 2 desc
  116. DefaultOrder=22004, 100200
  117.  
  118. [ps_dNS_cache_10_used]
  119. _PARENT=Dns
  120. DisplayName=%Last 10 used records%
  121. Icon=op_log.dll, 16
  122. OpenIcon=op_log.dll, 16
  123. DataTable=SELECT TOP 10 fld_22003_9/*IP*/, fld_22004_9/*Host*/, fld_22005_11/*Date Time*/ FROM dns_log WHERE fld_22002_7=2/*Event Type*/ order by fld_22005_11/*Date Time*/ desc
  124. DefaultOrder=22005, 22004, 22003
  125. MaxRecordCount=10
  126.  
  127. [ps_dNS_cache_10_new]
  128. _PARENT=Dns
  129. DisplayName=%Last 10 new records%
  130. Icon=op_log.dll, 16
  131. OpenIcon=op_log.dll, 16
  132. DataTable=SELECT TOP 10 fld_22003_9/*IP*/, fld_22004_9/*Host*/, fld_22005_11/*Date Time*/ FROM dns_log WHERE fld_22002_7=0/*Event Type*/ order by fld_22005_11/*Date Time*/ desc
  133. DefaultOrder=22005, 22004, 22003
  134. MaxRecordCount=10
  135.  
  136. ;////////////////////////////////////////////////////////
  137. ;Attachment filter
  138. [ps_attachment_quar]
  139. _PARENT=EmailAttachments
  140. DisplayName=%Most often renamed file types%
  141. Icon=op_log.dll, 16
  142. OpenIcon=op_log.dll, 16
  143. DataTable=SELECT fld_23006_9/*File type*/, count(fld_23006_9) as ps_attach_file_count FROM email_log where fld_23007_2=1 or fld_23007_2=3 group by fld_23006_9 order by 2 desc
  144. DefaultOrder=23006, 100300
  145.  
  146. [ps_attachment_10]
  147. _PARENT=EmailAttachments
  148. DisplayName=%Last 10 e-mails with attachments%
  149. Icon=op_log.dll, 16
  150. OpenIcon=op_log.dll, 16
  151. DataTable=SELECT TOP 10 * FROM email_log order by fld_23002_11/*Date Time*/ desc
  152. DefaultOrder=23002, 23003, 23004, 23005, 23006, 23007
  153. MaxRecordCount=10
  154.  
  155. ;////////////////////////////////////////////////////////
  156. ;Attack Detection
  157. [ps_suspicious_packets]
  158. _PARENT=Protect
  159. DisplayName=%Suspicious packets%
  160. Icon=op_log.dll, 16
  161. OpenIcon=op_log.dll, 16
  162. DataTable=select fld_24007_11/*Date Time*/, fld_24002_8/*IP*/, fld_24006_10/*Scan data*/, fld_24005_7/*Scan count*/, fld_24003_8/*IP1*/ from prot_log where fld_24004_6=3 order by 1 desc
  163. DefaultOrder=24007, 24002, 24006
  164.  
  165. [ps_atack_10]
  166. _PARENT=Protect
  167. DisplayName=%Last 10 Attacks detected%
  168. Icon=op_log.dll, 16
  169. OpenIcon=op_log.dll, 16
  170. DataTable=SELECT TOP 10 * FROM prot_log where fld_24004_6 <> 3 ORDER BY fld_24007_11/*Date Time*/ desc
  171. DefaultOrder=24007, 24004, 24002, 24006
  172. MaxRecordCount=10
  173.  
  174. ;////////////////////////////////////////////////////////
  175. ;Active Content
  176. [ps_active_content_blocked]
  177. _PARENT=Web
  178. DisplayName=%Most often active elements blocked%
  179. Icon=op_log.dll, 16
  180. OpenIcon=op_log.dll, 16
  181. DataTable=SELECT fld_25002_7/*Event Type*/, count(fld_25002_7) as ps_act_cont_event_count from web_log group by fld_25002_7/*Event Type*/ order by 2 desc
  182. DefaultOrder=25002, 100500
  183.  
  184. [ps_active_content_active]
  185. _PARENT=Web
  186. DisplayName=%Sites with a lot of active elements%
  187. Icon=op_log.dll, 16
  188. OpenIcon=op_log.dll, 16
  189. DataTable=SELECT fld_25003_9/*URL*/, count(fld_25003_9) as ps_act_cont_event_count from web_log group by fld_25003_9  order by 2 desc
  190. DefaultOrder=25003, 100500
  191.  
  192. [ps_active_content_10]
  193. _PARENT=Web
  194. DisplayName=%Last 10 active elements blocked%
  195. Icon=op_log.dll, 16
  196. OpenIcon=op_log.dll, 16
  197. DataTable=SELECT TOP 10 fld_25003_9/*URL*/, fld_25002_7/*Elements*/, fld_25005_11/*Date Time*/ FROM web_log order by fld_25005_11/*Date Time*/ desc
  198. DefaultOrder=25005, 25002, 25003
  199. MaxRecordCount=10
  200.  
  201. ;////////////////////////////////////////////////////////
  202. ;Allowed history
  203. [ps_conn_log_allow_today]
  204. _PARENT=conn_log_allow
  205. DisplayName=%Allowed Today%
  206. IsFilter=true
  207. EnableDBNotify=false
  208. DefaultOrder=30023, 30027, 30038, 30024, 30033, 30031, 30032, 30029, 30030, 30025, 30037, 30028, 30036, 30034, 30035
  209. SortField=fld_30027_11
  210. AscSort=no
  211. [ps_conn_log_allow_today\Filter]
  212. _NoCopyIfExist=true
  213. 30027={Enable:=1}{UseLastTime:=true}{LastTimeType:=5}{LastTimeValue:=1}{FromTime:=2003.2.16.17.39.1}{ToTime:=2003.2.16.17.39.1}
  214.  
  215. [ps_conn_log_allow_10_min]
  216. _PARENT=conn_log_allow
  217. DisplayName=%Allowed during last 10 min%
  218. IsFilter=true
  219. EnableDBNotify=false
  220. DefaultOrder=30023, 30027, 30038, 30024, 30033, 30031, 30032, 30029, 30030, 30025, 30037, 30028, 30036, 30034, 30035
  221. SortField=fld_30027_11
  222. AscSort=no
  223. [ps_conn_log_allow_10_min\Filter]
  224. _NoCopyIfExist=true
  225. 30027={Enable:=1}{UseLastTime:=true}{LastTimeType:=1}{LastTimeValue:=10}{FromTime:=2003.2.16.17.39.1}{ToTime:=2003.2.16.17.39.1}
  226.  
  227.  
  228. ;////////////////////////////////////////////////////////
  229. ;Blocked history
  230. [ps_conn_log_block_today]
  231. _PARENT=conn_log_block
  232. DisplayName=%Blocked Today%
  233. IsFilter=true
  234. EnableDBNotify=false
  235. DefaultOrder=30023, 30027, 30038, 30024, 30033, 30031, 30032, 30029, 30030, 30025, 30037, 30028, 30036, 30034, 30035
  236. SortField=fld_30027_11
  237. AscSort=no
  238. [ps_conn_log_block_today\Filter]
  239. _NoCopyIfExist=true
  240. 30027={Enable:=1}{UseLastTime:=true}{LastTimeType:=5}{LastTimeValue:=1}{FromTime:=2003.2.16.17.39.1}{ToTime:=2003.2.16.17.39.1}
  241.  
  242. [ps_conn_log_block_today_10_min]
  243. _PARENT=conn_log_block
  244. DisplayName=%Blocked during last 10 min%
  245. IsFilter=true
  246. CanAddFilter=0
  247. EnableDBNotify=false
  248. DefaultOrder=30023, 30027, 30038, 30024, 30033, 30031, 30032, 30029, 30030, 30025, 30037, 30028, 30036, 30034, 30035
  249. SortField=fld_30027_11
  250. AscSort=no
  251. [ps_conn_log_block_today_10_min\Filter]
  252. _NoCopyIfExist=true
  253. 30027={Enable:=1}{UseLastTime:=true}{LastTimeType:=1}{LastTimeValue:=10}{FromTime:=2003.2.16.17.39.1}{ToTime:=2003.2.16.17.39.1}
  254.  
  255. ;////////////////////////////////////////////////////////
  256. ;Netbios history
  257. [conn_log_allow_netbios_filter]
  258. _PARENT=conn_log_allow
  259. DisplayName=%NetBios history Allow%
  260. IsFilter=true
  261. CanAddFilter=0
  262. EnableDBNotify=false
  263. DefaultOrder=30023, 30027, 30038, 30024, 30033, 30031, 30032, 30029, 30030, 30025, 30037, 30028, 30036, 30034, 30035
  264. SortField=fld_30027_11
  265. AscSort=no
  266.  
  267. [conn_log_allow_netbios_filter\Filter]
  268. _NoCopyIfExist=true
  269. 30038={Enable:=1}{Values_0:=NETBIOS}
  270.  
  271. [conn_log_allow_netbios_filter\FieldsState]
  272. _NoCopyIfExist=true
  273. 30027=VISIBLE, 1, 100
  274. 30038=HIDE, 3, 120
  275. 30024=VISIBLE, 3, 80
  276. 30033=HIDE, 4, 100
  277. 30031=VISIBLE, 2, 100
  278. 30032=HIDE, 5, 100
  279. 30029=HIDE, 7, 100
  280. 30030=HIDE, 8, 100
  281. 30025=HIDE, 6, 300
  282. 30037=HIDE, 9, 300
  283. 30028=HIDE, 10, 100
  284. 30036=HIDE, 11, 100
  285. 30034=HIDE, 12, 100
  286. 30035=HIDE, 13, 100
  287.  
  288.  
  289. ;////////////////////////////////////////////////////////
  290. ;Web History
  291. [conn_log_allow_web_filter]
  292. _PARENT=conn_log_allow
  293. DisplayName=%Web history Allow%
  294. IsFilter=true
  295. CanAddFilter=0
  296. EnableDBNotify=false
  297. DefaultOrder=30023, 30027, 30038, 30024, 30033, 30031, 30032, 30029, 30030, 30025, 30037, 30028, 30036, 30034, 30035
  298. SortField=fld_30027_11
  299. AscSort=no
  300.  
  301. [conn_log_allow_web_filter\Filter]
  302. _NoCopyIfExist=true
  303. 30033={Enable:=1}{TCP:=true}
  304. 30032={Enable:=1}{Ports:=80-83, 443, 1080, 3128, 8080, 8088}
  305.  
  306. [conn_log_allow_web_filter\FieldsState]
  307. _NoCopyIfExist=true
  308. 30027=VISIBLE, 1, 100
  309. 30038=HIDE, 4, 120
  310. 30024=HIDE, 6, 80
  311. 30033=HIDE, 5, 100
  312. 30031=VISIBLE, 2, 100
  313. 30032=HIDE, 7, 100
  314. 30029=HIDE, 9, 100
  315. 30030=HIDE, 10, 100
  316. 30025=HIDE, 8, 300
  317. 30037=HIDE, 11, 300
  318. 30028=HIDE, 12, 100
  319. 30036=HIDE, 13, 100
  320. 30034=VISIBLE, 3, 100
  321. 30035=VISIBLE, 4, 100
  322.  
  323.  
  324. ;////////////////////////////////////////////////////////
  325. ;Email history
  326. [conn_log_allow_email_filter]
  327. _PARENT=conn_log_allow
  328. DisplayName=%Email history Allow%
  329. IsFilter=true
  330. CanAddFilter=0
  331. EnableDBNotify=false
  332. DefaultOrder=30023, 30027, 30038, 30024, 30033, 30031, 30032, 30029, 30030, 30025, 30037, 30028, 30036, 30034, 30035
  333. SortField=fld_30027_11
  334. AscSort=no
  335.  
  336. [conn_log_allow_email_filter\Filter]
  337. _NoCopyIfExist=true
  338. 30033={Enable:=1}{TCP:=true}
  339. 30032={Enable:=1}{Ports:=25, 109, 110, 143, 995}
  340.  
  341. [conn_log_allow_email_filter\FieldsState]
  342. _NoCopyIfExist=true
  343. 30027=VISIBLE, 1, 100
  344. 30038=HIDE, 5, 120
  345. 30024=VISIBLE, 3, 80
  346. 30033=HIDE, 6, 100
  347. 30031=VISIBLE, 2, 100
  348. 30032=HIDE, 7, 100
  349. 30029=HIDE, 9, 100
  350. 30030=HIDE, 10, 100
  351. 30025=HIDE, 8, 300
  352. 30037=HIDE, 11, 300
  353. 30028=HIDE, 12, 100
  354. 30036=HIDE, 13, 100
  355. 30034=VISIBLE, 4, 100
  356. 30035=VISIBLE, 5, 100
  357.  
  358. ;////////////////////////////////////////////////////////
  359. ;eof presets
  360. ////////////////////////////////////////////////////////
  361.