Configs/Templates/Templates Security Firewall/TrendMicro-Officescan.xml

465 lines
18 KiB
XML
Raw Normal View History

<?xml version="1.0" encoding="UTF-8"?>
<zabbix_export>
<version>3.0</version>
<date>2018-12-13T08:05:38Z</date>
<groups>
<group>
<name>Templates Security Firewall</name>
</group>
</groups>
<templates>
<template>
<template>TrendMicro-Officescan</template>
<name>TrendMicro-Officescan</name>
<description/>
<groups>
<group>
<name>Templates Security Firewall</name>
</group>
</groups>
<applications>
<application>
<name>Virenscanner</name>
</application>
</applications>
<items>
<item>
<name>Update Virenpattern</name>
<type>7</type>
<snmp_community/>
<multiplier>0</multiplier>
<snmp_oid/>
<key>log[{$TRENDMICRO.OS.UPDATELOG},&quot;(.{14}),.,1,1,(.*)&quot;,,,,\1#\2]</key>
<delay>10</delay>
<history>90</history>
<trends>0</trends>
<status>0</status>
<value_type>2</value_type>
<allowed_hosts/>
<units/>
<delta>0</delta>
<snmpv3_contextname/>
<snmpv3_securityname/>
<snmpv3_securitylevel>0</snmpv3_securitylevel>
<snmpv3_authprotocol>0</snmpv3_authprotocol>
<snmpv3_authpassphrase/>
<snmpv3_privprotocol>0</snmpv3_privprotocol>
<snmpv3_privpassphrase/>
<formula>1</formula>
<delay_flex/>
<params/>
<ipmi_sensor/>
<data_type>0</data_type>
<authtype>0</authtype>
<username/>
<password/>
<publickey/>
<privatekey/>
<port/>
<description>Z-Zahl {2,3}&#13;
I-ID des Moduls&#13;
E-Erfolg {1-ja, 0-nein}&#13;
TEXT-Wert des Eintrages</description>
<inventory_link>0</inventory_link>
<applications>
<application>
<name>Virenscanner</name>
</application>
</applications>
<valuemap/>
<logtimefmt>yyyyMMddhhmmss#TEXT</logtimefmt>
</item>
<item>
<name>Plug-in-Manager Komponentenliste</name>
<type>7</type>
<snmp_community/>
<multiplier>0</multiplier>
<snmp_oid/>
<key>log[{$TRENDMICRO.OS.UPDATELOG},&quot;.*,.,8,1,.*: (.*)&quot;,,,,\1]</key>
<delay>10</delay>
<history>90</history>
<trends>0</trends>
<status>0</status>
<value_type>2</value_type>
<allowed_hosts/>
<units/>
<delta>0</delta>
<snmpv3_contextname/>
<snmpv3_securityname/>
<snmpv3_securitylevel>0</snmpv3_securitylevel>
<snmpv3_authprotocol>0</snmpv3_authprotocol>
<snmpv3_authpassphrase/>
<snmpv3_privprotocol>0</snmpv3_privprotocol>
<snmpv3_privpassphrase/>
<formula>1</formula>
<delay_flex/>
<params/>
<ipmi_sensor/>
<data_type>0</data_type>
<authtype>0</authtype>
<username/>
<password/>
<publickey/>
<privatekey/>
<port/>
<description>Z-Zahl {2,3}&#13;
I-ID des Moduls&#13;
E-Erfolg {1-ja, 0-nein}&#13;
TEXT-Wert des Eintrages</description>
<inventory_link>0</inventory_link>
<applications>
<application>
<name>Virenscanner</name>
</application>
</applications>
<valuemap/>
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
</item>
<item>
<name>Viren-Cleanup-Template</name>
<type>7</type>
<snmp_community/>
<multiplier>0</multiplier>
<snmp_oid/>
<key>log[{$TRENDMICRO.OS.UPDATELOG},&quot;.*,.,9,1,(.*)&quot;,,,,\1]</key>
<delay>10</delay>
<history>90</history>
<trends>0</trends>
<status>0</status>
<value_type>2</value_type>
<allowed_hosts/>
<units/>
<delta>0</delta>
<snmpv3_contextname/>
<snmpv3_securityname/>
<snmpv3_securitylevel>0</snmpv3_securitylevel>
<snmpv3_authprotocol>0</snmpv3_authprotocol>
<snmpv3_authpassphrase/>
<snmpv3_privprotocol>0</snmpv3_privprotocol>
<snmpv3_privpassphrase/>
<formula>1</formula>
<delay_flex/>
<params/>
<ipmi_sensor/>
<data_type>0</data_type>
<authtype>0</authtype>
<username/>
<password/>
<publickey/>
<privatekey/>
<port/>
<description>Z-Zahl {2,3}&#13;
I-ID des Moduls&#13;
E-Erfolg {1-ja, 0-nein}&#13;
TEXT-Wert des Eintrages</description>
<inventory_link>0</inventory_link>
<applications>
<application>
<name>Virenscanner</name>
</application>
</applications>
<valuemap/>
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
</item>
<item>
<name>IntelliTrap Ausnahme-Pattern</name>
<type>7</type>
<snmp_community/>
<multiplier>0</multiplier>
<snmp_oid/>
<key>log[{$TRENDMICRO.OS.UPDATELOG},&quot;.*,.,36,1,(.*)&quot;,,,,\1]</key>
<delay>10</delay>
<history>90</history>
<trends>0</trends>
<status>0</status>
<value_type>2</value_type>
<allowed_hosts/>
<units/>
<delta>0</delta>
<snmpv3_contextname/>
<snmpv3_securityname/>
<snmpv3_securitylevel>0</snmpv3_securitylevel>
<snmpv3_authprotocol>0</snmpv3_authprotocol>
<snmpv3_authpassphrase/>
<snmpv3_privprotocol>0</snmpv3_privprotocol>
<snmpv3_privpassphrase/>
<formula>1</formula>
<delay_flex/>
<params/>
<ipmi_sensor/>
<data_type>0</data_type>
<authtype>0</authtype>
<username/>
<password/>
<publickey/>
<privatekey/>
<port/>
<description>Z-Zahl {2,3}&#13;
I-ID des Moduls&#13;
E-Erfolg {1-ja, 0-nein}&#13;
TEXT-Wert des Eintrages</description>
<inventory_link>0</inventory_link>
<applications>
<application>
<name>Virenscanner</name>
</application>
</applications>
<valuemap/>
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
</item>
<item>
<name>Spyware-Aktivmonitor-Pattern</name>
<type>7</type>
<snmp_community/>
<multiplier>0</multiplier>
<snmp_oid/>
<key>log[{$TRENDMICRO.OS.UPDATELOG},&quot;.*,.,42,1,(.*)&quot;,,,,\1]</key>
<delay>10</delay>
<history>90</history>
<trends>0</trends>
<status>0</status>
<value_type>2</value_type>
<allowed_hosts/>
<units/>
<delta>0</delta>
<snmpv3_contextname/>
<snmpv3_securityname/>
<snmpv3_securitylevel>0</snmpv3_securitylevel>
<snmpv3_authprotocol>0</snmpv3_authprotocol>
<snmpv3_authpassphrase/>
<snmpv3_privprotocol>0</snmpv3_privprotocol>
<snmpv3_privpassphrase/>
<formula>1</formula>
<delay_flex/>
<params/>
<ipmi_sensor/>
<data_type>0</data_type>
<authtype>0</authtype>
<username/>
<password/>
<publickey/>
<privatekey/>
<port/>
<description>Z-Zahl {2,3}&#13;
I-ID des Moduls&#13;
E-Erfolg {1-ja, 0-nein}&#13;
TEXT-Wert des Eintrages</description>
<inventory_link>0</inventory_link>
<applications>
<application>
<name>Virenscanner</name>
</application>
</applications>
<valuemap/>
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
</item>
<item>
<name>Spyware-Pattern</name>
<type>7</type>
<snmp_community/>
<multiplier>0</multiplier>
<snmp_oid/>
<key>log[{$TRENDMICRO.OS.UPDATELOG},&quot;.*,.,43,1,(.*)&quot;,,,,\1]</key>
<delay>10</delay>
<history>90</history>
<trends>0</trends>
<status>0</status>
<value_type>2</value_type>
<allowed_hosts/>
<units/>
<delta>0</delta>
<snmpv3_contextname/>
<snmpv3_securityname/>
<snmpv3_securitylevel>0</snmpv3_securitylevel>
<snmpv3_authprotocol>0</snmpv3_authprotocol>
<snmpv3_authpassphrase/>
<snmpv3_privprotocol>0</snmpv3_privprotocol>
<snmpv3_privpassphrase/>
<formula>1</formula>
<delay_flex/>
<params/>
<ipmi_sensor/>
<data_type>0</data_type>
<authtype>0</authtype>
<username/>
<password/>
<publickey/>
<privatekey/>
<port/>
<description>Z-Zahl {2,3}&#13;
I-ID des Moduls&#13;
E-Erfolg {1-ja, 0-nein}&#13;
TEXT-Wert des Eintrages</description>
<inventory_link>0</inventory_link>
<applications>
<application>
<name>Virenscanner</name>
</application>
</applications>
<valuemap/>
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
</item>
<item>
<name>Agent-Pattern der intelligenten Suche</name>
<type>7</type>
<snmp_community/>
<multiplier>0</multiplier>
<snmp_oid/>
<key>log[{$TRENDMICRO.OS.UPDATELOG},&quot;.*,.,51,1,(.*)&quot;,,,,\1]</key>
<delay>10</delay>
<history>90</history>
<trends>0</trends>
<status>0</status>
<value_type>2</value_type>
<allowed_hosts/>
<units/>
<delta>0</delta>
<snmpv3_contextname/>
<snmpv3_securityname/>
<snmpv3_securitylevel>0</snmpv3_securitylevel>
<snmpv3_authprotocol>0</snmpv3_authprotocol>
<snmpv3_authpassphrase/>
<snmpv3_privprotocol>0</snmpv3_privprotocol>
<snmpv3_privpassphrase/>
<formula>1</formula>
<delay_flex/>
<params/>
<ipmi_sensor/>
<data_type>0</data_type>
<authtype>0</authtype>
<username/>
<password/>
<publickey/>
<privatekey/>
<port/>
<description>Z-Zahl {2,3}&#13;
I-ID des Moduls&#13;
E-Erfolg {1-ja, 0-nein}&#13;
TEXT-Wert des Eintrages</description>
<inventory_link>0</inventory_link>
<applications>
<application>
<name>Virenscanner</name>
</application>
</applications>
<valuemap/>
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
</item>
<item>
<name>Pattern für digitale Signaturen</name>
<type>7</type>
<snmp_community/>
<multiplier>0</multiplier>
<snmp_oid/>
<key>log[{$TRENDMICRO.OS.UPDATELOG},&quot;.*,.,54,1,(.*)&quot;,,,,\1]</key>
<delay>10</delay>
<history>90</history>
<trends>0</trends>
<status>0</status>
<value_type>2</value_type>
<allowed_hosts/>
<units/>
<delta>0</delta>
<snmpv3_contextname/>
<snmpv3_securityname/>
<snmpv3_securitylevel>0</snmpv3_securitylevel>
<snmpv3_authprotocol>0</snmpv3_authprotocol>
<snmpv3_authpassphrase/>
<snmpv3_privprotocol>0</snmpv3_privprotocol>
<snmpv3_privpassphrase/>
<formula>1</formula>
<delay_flex/>
<params/>
<ipmi_sensor/>
<data_type>0</data_type>
<authtype>0</authtype>
<username/>
<password/>
<publickey/>
<privatekey/>
<port/>
<description>Z-Zahl {2,3}&#13;
I-ID des Moduls&#13;
E-Erfolg {1-ja, 0-nein}&#13;
TEXT-Wert des Eintrages</description>
<inventory_link>0</inventory_link>
<applications>
<application>
<name>Virenscanner</name>
</application>
</applications>
<valuemap/>
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
</item>
<item>
<name>Pattern zur Erkennung der Verhaltensüberwachung</name>
<type>7</type>
<snmp_community/>
<multiplier>0</multiplier>
<snmp_oid/>
<key>log[{$TRENDMICRO.OS.UPDATELOG},&quot;.*,.,58,1,(.*)&quot;,,,,\1]</key>
<delay>10</delay>
<history>90</history>
<trends>0</trends>
<status>0</status>
<value_type>2</value_type>
<allowed_hosts/>
<units/>
<delta>0</delta>
<snmpv3_contextname/>
<snmpv3_securityname/>
<snmpv3_securitylevel>0</snmpv3_securitylevel>
<snmpv3_authprotocol>0</snmpv3_authprotocol>
<snmpv3_authpassphrase/>
<snmpv3_privprotocol>0</snmpv3_privprotocol>
<snmpv3_privpassphrase/>
<formula>1</formula>
<delay_flex/>
<params/>
<ipmi_sensor/>
<data_type>0</data_type>
<authtype>0</authtype>
<username/>
<password/>
<publickey/>
<privatekey/>
<port/>
<description>Z-Zahl {2,3}&#13;
I-ID des Moduls&#13;
E-Erfolg {1-ja, 0-nein}&#13;
TEXT-Wert des Eintrages</description>
<inventory_link>0</inventory_link>
<applications>
<application>
<name>Virenscanner</name>
</application>
</applications>
<valuemap/>
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
</item>
</items>
<discovery_rules/>
<macros>
<macro>
<macro>{$TRENDMICRO.OS.UPDATELOG}</macro>
<value>C:\Program Files (x86)\Trend Micro\OfficeScan\PCCSRV\Log\update.log</value>
</macro>
</macros>
<templates/>
<screens/>
</template>
</templates>
<triggers>
<trigger>
<expression>{TrendMicro-Officescan:log[{$TRENDMICRO.OS.UPDATELOG},&quot;(.{14}),.,1,1,(.*)&quot;,,,,\1#\2].nodata(86400)}=0</expression>
<name>Update Virenpattern - kein Update</name>
<url/>
<status>0</status>
<priority>1</priority>
<description/>
<type>0</type>
<dependencies/>
</trigger>
</triggers>
</zabbix_export>