1.3 Sentinel Rapid Deployment User Interfaces

Sentinel includes the following easy-to-use user interfaces:

1.3.1 Sentinel 6.1 Rapid Deployment Web Interface

With the Novell Sentinel 6.1 Rapid Deployment Web interface, you can manage reports and launch the Sentinel Control Center (SCC), the Sentinel Data Manager, and the Solution Designer. You can also download the Collector Manager installer and the Client installer from the Applications page of the Sentinel 6.1 Rapid Deployment Web interface.

For more information, see Managing Sentinel Rapid Deployment Through the Web Interface in the Sentinel Rapid Deployment User Guide.

1.3.2 Sentinel Control Center

The SCC provides an integrated security management dashboard that enables analysts to quickly identify new trends or attacks, manipulate and interact with real-time graphical information, and respond to incidents.

You can launch the SCC either as a client application or by using Java Webstart.

The key features of the SCC include:

  • Active Views: Provides real-time analytics and visualization

  • Analysis: Runs and saves offline queries

  • Incidents: Provides incident creation and management

  • Correlation: Provides correlation rules definition and management

  • iTRAC: Provides process management for documenting, enforcing, and tracking incident resolution processes

  • Reporting: Provides historical reports and metrics

  • Event Source Management: Provides collector deployment and monitoring

  • Solution Manager: Installs, implements, and tests the Solution Pack contents

For more information, see Sentinel Control Center in the Sentinel Rapid Deployment User Guide.

1.3.3 Sentinel Data Manager

The Sentinel Data Manager allows you to manage the Sentinel database. You can perform the following operations in the Sentinel Data Manager:

  • Monitor database space utilization.

  • View and manage database partitions.

  • Manage database archives.

  • Import archived data back into the database.

For more information, see Sentinel Data Manager in the Sentinel Rapid Deployment User Guide.

1.3.4 Sentinel Solution Designer

The Sentinel Solution Designer is used to create and modify Solution Packs, which are packaged sets of Sentinel content, such as correlation rules, actions, iTRAC workflows, and reports.

Sentinel content is the extended functionality of the Sentinel system. This content includes Sentinel Actions, Integrators, and Sentinel plug-ins such as Collectors, Connectors, and Solution Packs that might include multiple other types of plug-ins. These modular components are used to integrate with third-party systems, install a complete control-based security solution, and provide automated remediation for detected incidents.

For more information, see Solution Packs in the Sentinel Rapid Deployment User Guide.

1.3.5 Sentinel Plug-In SDK

The Sentinel Plug-in SDK includes libraries and code developed by the Novell Engineering, as well as the template and sample code that you can use to develop your own projects. For more information, see the Sentinel SDK.