465 lines
18 KiB
XML
465 lines
18 KiB
XML
|
<?xml version="1.0" encoding="UTF-8"?>
|
||
|
<zabbix_export>
|
||
|
<version>3.0</version>
|
||
|
<date>2018-12-13T08:05:38Z</date>
|
||
|
<groups>
|
||
|
<group>
|
||
|
<name>Templates Security Firewall</name>
|
||
|
</group>
|
||
|
</groups>
|
||
|
<templates>
|
||
|
<template>
|
||
|
<template>TrendMicro-Officescan</template>
|
||
|
<name>TrendMicro-Officescan</name>
|
||
|
<description/>
|
||
|
<groups>
|
||
|
<group>
|
||
|
<name>Templates Security Firewall</name>
|
||
|
</group>
|
||
|
</groups>
|
||
|
<applications>
|
||
|
<application>
|
||
|
<name>Virenscanner</name>
|
||
|
</application>
|
||
|
</applications>
|
||
|
<items>
|
||
|
<item>
|
||
|
<name>Update Virenpattern</name>
|
||
|
<type>7</type>
|
||
|
<snmp_community/>
|
||
|
<multiplier>0</multiplier>
|
||
|
<snmp_oid/>
|
||
|
<key>log[{$TRENDMICRO.OS.UPDATELOG},"(.{14}),.,1,1,(.*)",,,,\1#\2]</key>
|
||
|
<delay>10</delay>
|
||
|
<history>90</history>
|
||
|
<trends>0</trends>
|
||
|
<status>0</status>
|
||
|
<value_type>2</value_type>
|
||
|
<allowed_hosts/>
|
||
|
<units/>
|
||
|
<delta>0</delta>
|
||
|
<snmpv3_contextname/>
|
||
|
<snmpv3_securityname/>
|
||
|
<snmpv3_securitylevel>0</snmpv3_securitylevel>
|
||
|
<snmpv3_authprotocol>0</snmpv3_authprotocol>
|
||
|
<snmpv3_authpassphrase/>
|
||
|
<snmpv3_privprotocol>0</snmpv3_privprotocol>
|
||
|
<snmpv3_privpassphrase/>
|
||
|
<formula>1</formula>
|
||
|
<delay_flex/>
|
||
|
<params/>
|
||
|
<ipmi_sensor/>
|
||
|
<data_type>0</data_type>
|
||
|
<authtype>0</authtype>
|
||
|
<username/>
|
||
|
<password/>
|
||
|
<publickey/>
|
||
|
<privatekey/>
|
||
|
<port/>
|
||
|
<description>Z-Zahl {2,3}
|
||
|
I-ID des Moduls
|
||
|
E-Erfolg {1-ja, 0-nein}
|
||
|
TEXT-Wert des Eintrages</description>
|
||
|
<inventory_link>0</inventory_link>
|
||
|
<applications>
|
||
|
<application>
|
||
|
<name>Virenscanner</name>
|
||
|
</application>
|
||
|
</applications>
|
||
|
<valuemap/>
|
||
|
<logtimefmt>yyyyMMddhhmmss#TEXT</logtimefmt>
|
||
|
</item>
|
||
|
<item>
|
||
|
<name>Plug-in-Manager Komponentenliste</name>
|
||
|
<type>7</type>
|
||
|
<snmp_community/>
|
||
|
<multiplier>0</multiplier>
|
||
|
<snmp_oid/>
|
||
|
<key>log[{$TRENDMICRO.OS.UPDATELOG},".*,.,8,1,.*: (.*)",,,,\1]</key>
|
||
|
<delay>10</delay>
|
||
|
<history>90</history>
|
||
|
<trends>0</trends>
|
||
|
<status>0</status>
|
||
|
<value_type>2</value_type>
|
||
|
<allowed_hosts/>
|
||
|
<units/>
|
||
|
<delta>0</delta>
|
||
|
<snmpv3_contextname/>
|
||
|
<snmpv3_securityname/>
|
||
|
<snmpv3_securitylevel>0</snmpv3_securitylevel>
|
||
|
<snmpv3_authprotocol>0</snmpv3_authprotocol>
|
||
|
<snmpv3_authpassphrase/>
|
||
|
<snmpv3_privprotocol>0</snmpv3_privprotocol>
|
||
|
<snmpv3_privpassphrase/>
|
||
|
<formula>1</formula>
|
||
|
<delay_flex/>
|
||
|
<params/>
|
||
|
<ipmi_sensor/>
|
||
|
<data_type>0</data_type>
|
||
|
<authtype>0</authtype>
|
||
|
<username/>
|
||
|
<password/>
|
||
|
<publickey/>
|
||
|
<privatekey/>
|
||
|
<port/>
|
||
|
<description>Z-Zahl {2,3}
|
||
|
I-ID des Moduls
|
||
|
E-Erfolg {1-ja, 0-nein}
|
||
|
TEXT-Wert des Eintrages</description>
|
||
|
<inventory_link>0</inventory_link>
|
||
|
<applications>
|
||
|
<application>
|
||
|
<name>Virenscanner</name>
|
||
|
</application>
|
||
|
</applications>
|
||
|
<valuemap/>
|
||
|
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
|
||
|
</item>
|
||
|
<item>
|
||
|
<name>Viren-Cleanup-Template</name>
|
||
|
<type>7</type>
|
||
|
<snmp_community/>
|
||
|
<multiplier>0</multiplier>
|
||
|
<snmp_oid/>
|
||
|
<key>log[{$TRENDMICRO.OS.UPDATELOG},".*,.,9,1,(.*)",,,,\1]</key>
|
||
|
<delay>10</delay>
|
||
|
<history>90</history>
|
||
|
<trends>0</trends>
|
||
|
<status>0</status>
|
||
|
<value_type>2</value_type>
|
||
|
<allowed_hosts/>
|
||
|
<units/>
|
||
|
<delta>0</delta>
|
||
|
<snmpv3_contextname/>
|
||
|
<snmpv3_securityname/>
|
||
|
<snmpv3_securitylevel>0</snmpv3_securitylevel>
|
||
|
<snmpv3_authprotocol>0</snmpv3_authprotocol>
|
||
|
<snmpv3_authpassphrase/>
|
||
|
<snmpv3_privprotocol>0</snmpv3_privprotocol>
|
||
|
<snmpv3_privpassphrase/>
|
||
|
<formula>1</formula>
|
||
|
<delay_flex/>
|
||
|
<params/>
|
||
|
<ipmi_sensor/>
|
||
|
<data_type>0</data_type>
|
||
|
<authtype>0</authtype>
|
||
|
<username/>
|
||
|
<password/>
|
||
|
<publickey/>
|
||
|
<privatekey/>
|
||
|
<port/>
|
||
|
<description>Z-Zahl {2,3}
|
||
|
I-ID des Moduls
|
||
|
E-Erfolg {1-ja, 0-nein}
|
||
|
TEXT-Wert des Eintrages</description>
|
||
|
<inventory_link>0</inventory_link>
|
||
|
<applications>
|
||
|
<application>
|
||
|
<name>Virenscanner</name>
|
||
|
</application>
|
||
|
</applications>
|
||
|
<valuemap/>
|
||
|
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
|
||
|
</item>
|
||
|
<item>
|
||
|
<name>IntelliTrap Ausnahme-Pattern</name>
|
||
|
<type>7</type>
|
||
|
<snmp_community/>
|
||
|
<multiplier>0</multiplier>
|
||
|
<snmp_oid/>
|
||
|
<key>log[{$TRENDMICRO.OS.UPDATELOG},".*,.,36,1,(.*)",,,,\1]</key>
|
||
|
<delay>10</delay>
|
||
|
<history>90</history>
|
||
|
<trends>0</trends>
|
||
|
<status>0</status>
|
||
|
<value_type>2</value_type>
|
||
|
<allowed_hosts/>
|
||
|
<units/>
|
||
|
<delta>0</delta>
|
||
|
<snmpv3_contextname/>
|
||
|
<snmpv3_securityname/>
|
||
|
<snmpv3_securitylevel>0</snmpv3_securitylevel>
|
||
|
<snmpv3_authprotocol>0</snmpv3_authprotocol>
|
||
|
<snmpv3_authpassphrase/>
|
||
|
<snmpv3_privprotocol>0</snmpv3_privprotocol>
|
||
|
<snmpv3_privpassphrase/>
|
||
|
<formula>1</formula>
|
||
|
<delay_flex/>
|
||
|
<params/>
|
||
|
<ipmi_sensor/>
|
||
|
<data_type>0</data_type>
|
||
|
<authtype>0</authtype>
|
||
|
<username/>
|
||
|
<password/>
|
||
|
<publickey/>
|
||
|
<privatekey/>
|
||
|
<port/>
|
||
|
<description>Z-Zahl {2,3}
|
||
|
I-ID des Moduls
|
||
|
E-Erfolg {1-ja, 0-nein}
|
||
|
TEXT-Wert des Eintrages</description>
|
||
|
<inventory_link>0</inventory_link>
|
||
|
<applications>
|
||
|
<application>
|
||
|
<name>Virenscanner</name>
|
||
|
</application>
|
||
|
</applications>
|
||
|
<valuemap/>
|
||
|
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
|
||
|
</item>
|
||
|
<item>
|
||
|
<name>Spyware-Aktivmonitor-Pattern</name>
|
||
|
<type>7</type>
|
||
|
<snmp_community/>
|
||
|
<multiplier>0</multiplier>
|
||
|
<snmp_oid/>
|
||
|
<key>log[{$TRENDMICRO.OS.UPDATELOG},".*,.,42,1,(.*)",,,,\1]</key>
|
||
|
<delay>10</delay>
|
||
|
<history>90</history>
|
||
|
<trends>0</trends>
|
||
|
<status>0</status>
|
||
|
<value_type>2</value_type>
|
||
|
<allowed_hosts/>
|
||
|
<units/>
|
||
|
<delta>0</delta>
|
||
|
<snmpv3_contextname/>
|
||
|
<snmpv3_securityname/>
|
||
|
<snmpv3_securitylevel>0</snmpv3_securitylevel>
|
||
|
<snmpv3_authprotocol>0</snmpv3_authprotocol>
|
||
|
<snmpv3_authpassphrase/>
|
||
|
<snmpv3_privprotocol>0</snmpv3_privprotocol>
|
||
|
<snmpv3_privpassphrase/>
|
||
|
<formula>1</formula>
|
||
|
<delay_flex/>
|
||
|
<params/>
|
||
|
<ipmi_sensor/>
|
||
|
<data_type>0</data_type>
|
||
|
<authtype>0</authtype>
|
||
|
<username/>
|
||
|
<password/>
|
||
|
<publickey/>
|
||
|
<privatekey/>
|
||
|
<port/>
|
||
|
<description>Z-Zahl {2,3}
|
||
|
I-ID des Moduls
|
||
|
E-Erfolg {1-ja, 0-nein}
|
||
|
TEXT-Wert des Eintrages</description>
|
||
|
<inventory_link>0</inventory_link>
|
||
|
<applications>
|
||
|
<application>
|
||
|
<name>Virenscanner</name>
|
||
|
</application>
|
||
|
</applications>
|
||
|
<valuemap/>
|
||
|
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
|
||
|
</item>
|
||
|
<item>
|
||
|
<name>Spyware-Pattern</name>
|
||
|
<type>7</type>
|
||
|
<snmp_community/>
|
||
|
<multiplier>0</multiplier>
|
||
|
<snmp_oid/>
|
||
|
<key>log[{$TRENDMICRO.OS.UPDATELOG},".*,.,43,1,(.*)",,,,\1]</key>
|
||
|
<delay>10</delay>
|
||
|
<history>90</history>
|
||
|
<trends>0</trends>
|
||
|
<status>0</status>
|
||
|
<value_type>2</value_type>
|
||
|
<allowed_hosts/>
|
||
|
<units/>
|
||
|
<delta>0</delta>
|
||
|
<snmpv3_contextname/>
|
||
|
<snmpv3_securityname/>
|
||
|
<snmpv3_securitylevel>0</snmpv3_securitylevel>
|
||
|
<snmpv3_authprotocol>0</snmpv3_authprotocol>
|
||
|
<snmpv3_authpassphrase/>
|
||
|
<snmpv3_privprotocol>0</snmpv3_privprotocol>
|
||
|
<snmpv3_privpassphrase/>
|
||
|
<formula>1</formula>
|
||
|
<delay_flex/>
|
||
|
<params/>
|
||
|
<ipmi_sensor/>
|
||
|
<data_type>0</data_type>
|
||
|
<authtype>0</authtype>
|
||
|
<username/>
|
||
|
<password/>
|
||
|
<publickey/>
|
||
|
<privatekey/>
|
||
|
<port/>
|
||
|
<description>Z-Zahl {2,3}
|
||
|
I-ID des Moduls
|
||
|
E-Erfolg {1-ja, 0-nein}
|
||
|
TEXT-Wert des Eintrages</description>
|
||
|
<inventory_link>0</inventory_link>
|
||
|
<applications>
|
||
|
<application>
|
||
|
<name>Virenscanner</name>
|
||
|
</application>
|
||
|
</applications>
|
||
|
<valuemap/>
|
||
|
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
|
||
|
</item>
|
||
|
<item>
|
||
|
<name>Agent-Pattern der intelligenten Suche</name>
|
||
|
<type>7</type>
|
||
|
<snmp_community/>
|
||
|
<multiplier>0</multiplier>
|
||
|
<snmp_oid/>
|
||
|
<key>log[{$TRENDMICRO.OS.UPDATELOG},".*,.,51,1,(.*)",,,,\1]</key>
|
||
|
<delay>10</delay>
|
||
|
<history>90</history>
|
||
|
<trends>0</trends>
|
||
|
<status>0</status>
|
||
|
<value_type>2</value_type>
|
||
|
<allowed_hosts/>
|
||
|
<units/>
|
||
|
<delta>0</delta>
|
||
|
<snmpv3_contextname/>
|
||
|
<snmpv3_securityname/>
|
||
|
<snmpv3_securitylevel>0</snmpv3_securitylevel>
|
||
|
<snmpv3_authprotocol>0</snmpv3_authprotocol>
|
||
|
<snmpv3_authpassphrase/>
|
||
|
<snmpv3_privprotocol>0</snmpv3_privprotocol>
|
||
|
<snmpv3_privpassphrase/>
|
||
|
<formula>1</formula>
|
||
|
<delay_flex/>
|
||
|
<params/>
|
||
|
<ipmi_sensor/>
|
||
|
<data_type>0</data_type>
|
||
|
<authtype>0</authtype>
|
||
|
<username/>
|
||
|
<password/>
|
||
|
<publickey/>
|
||
|
<privatekey/>
|
||
|
<port/>
|
||
|
<description>Z-Zahl {2,3}
|
||
|
I-ID des Moduls
|
||
|
E-Erfolg {1-ja, 0-nein}
|
||
|
TEXT-Wert des Eintrages</description>
|
||
|
<inventory_link>0</inventory_link>
|
||
|
<applications>
|
||
|
<application>
|
||
|
<name>Virenscanner</name>
|
||
|
</application>
|
||
|
</applications>
|
||
|
<valuemap/>
|
||
|
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
|
||
|
</item>
|
||
|
<item>
|
||
|
<name>Pattern für digitale Signaturen</name>
|
||
|
<type>7</type>
|
||
|
<snmp_community/>
|
||
|
<multiplier>0</multiplier>
|
||
|
<snmp_oid/>
|
||
|
<key>log[{$TRENDMICRO.OS.UPDATELOG},".*,.,54,1,(.*)",,,,\1]</key>
|
||
|
<delay>10</delay>
|
||
|
<history>90</history>
|
||
|
<trends>0</trends>
|
||
|
<status>0</status>
|
||
|
<value_type>2</value_type>
|
||
|
<allowed_hosts/>
|
||
|
<units/>
|
||
|
<delta>0</delta>
|
||
|
<snmpv3_contextname/>
|
||
|
<snmpv3_securityname/>
|
||
|
<snmpv3_securitylevel>0</snmpv3_securitylevel>
|
||
|
<snmpv3_authprotocol>0</snmpv3_authprotocol>
|
||
|
<snmpv3_authpassphrase/>
|
||
|
<snmpv3_privprotocol>0</snmpv3_privprotocol>
|
||
|
<snmpv3_privpassphrase/>
|
||
|
<formula>1</formula>
|
||
|
<delay_flex/>
|
||
|
<params/>
|
||
|
<ipmi_sensor/>
|
||
|
<data_type>0</data_type>
|
||
|
<authtype>0</authtype>
|
||
|
<username/>
|
||
|
<password/>
|
||
|
<publickey/>
|
||
|
<privatekey/>
|
||
|
<port/>
|
||
|
<description>Z-Zahl {2,3}
|
||
|
I-ID des Moduls
|
||
|
E-Erfolg {1-ja, 0-nein}
|
||
|
TEXT-Wert des Eintrages</description>
|
||
|
<inventory_link>0</inventory_link>
|
||
|
<applications>
|
||
|
<application>
|
||
|
<name>Virenscanner</name>
|
||
|
</application>
|
||
|
</applications>
|
||
|
<valuemap/>
|
||
|
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
|
||
|
</item>
|
||
|
<item>
|
||
|
<name>Pattern zur Erkennung der Verhaltensüberwachung</name>
|
||
|
<type>7</type>
|
||
|
<snmp_community/>
|
||
|
<multiplier>0</multiplier>
|
||
|
<snmp_oid/>
|
||
|
<key>log[{$TRENDMICRO.OS.UPDATELOG},".*,.,58,1,(.*)",,,,\1]</key>
|
||
|
<delay>10</delay>
|
||
|
<history>90</history>
|
||
|
<trends>0</trends>
|
||
|
<status>0</status>
|
||
|
<value_type>2</value_type>
|
||
|
<allowed_hosts/>
|
||
|
<units/>
|
||
|
<delta>0</delta>
|
||
|
<snmpv3_contextname/>
|
||
|
<snmpv3_securityname/>
|
||
|
<snmpv3_securitylevel>0</snmpv3_securitylevel>
|
||
|
<snmpv3_authprotocol>0</snmpv3_authprotocol>
|
||
|
<snmpv3_authpassphrase/>
|
||
|
<snmpv3_privprotocol>0</snmpv3_privprotocol>
|
||
|
<snmpv3_privpassphrase/>
|
||
|
<formula>1</formula>
|
||
|
<delay_flex/>
|
||
|
<params/>
|
||
|
<ipmi_sensor/>
|
||
|
<data_type>0</data_type>
|
||
|
<authtype>0</authtype>
|
||
|
<username/>
|
||
|
<password/>
|
||
|
<publickey/>
|
||
|
<privatekey/>
|
||
|
<port/>
|
||
|
<description>Z-Zahl {2,3}
|
||
|
I-ID des Moduls
|
||
|
E-Erfolg {1-ja, 0-nein}
|
||
|
TEXT-Wert des Eintrages</description>
|
||
|
<inventory_link>0</inventory_link>
|
||
|
<applications>
|
||
|
<application>
|
||
|
<name>Virenscanner</name>
|
||
|
</application>
|
||
|
</applications>
|
||
|
<valuemap/>
|
||
|
<logtimefmt>yyyyMMddhhmmss,Z,I,E,TEXT</logtimefmt>
|
||
|
</item>
|
||
|
</items>
|
||
|
<discovery_rules/>
|
||
|
<macros>
|
||
|
<macro>
|
||
|
<macro>{$TRENDMICRO.OS.UPDATELOG}</macro>
|
||
|
<value>C:\Program Files (x86)\Trend Micro\OfficeScan\PCCSRV\Log\update.log</value>
|
||
|
</macro>
|
||
|
</macros>
|
||
|
<templates/>
|
||
|
<screens/>
|
||
|
</template>
|
||
|
</templates>
|
||
|
<triggers>
|
||
|
<trigger>
|
||
|
<expression>{TrendMicro-Officescan:log[{$TRENDMICRO.OS.UPDATELOG},"(.{14}),.,1,1,(.*)",,,,\1#\2].nodata(86400)}=0</expression>
|
||
|
<name>Update Virenpattern - kein Update</name>
|
||
|
<url/>
|
||
|
<status>0</status>
|
||
|
<priority>1</priority>
|
||
|
<description/>
|
||
|
<type>0</type>
|
||
|
<dependencies/>
|
||
|
</trigger>
|
||
|
</triggers>
|
||
|
</zabbix_export>
|