Inspecting TCP Connections

Policy Server communicates with the Agent to collect TCP Connection Information periodically and disables a network interface that exceeds the configured connection limits.

Add the Agent Action to a Policy

  1. Go to Policy in the top panel.
  2. Go to Policy > Node Policy in the left Policy panel.
  3. Click the desired Policy ID in Node Policy window.
  4. Find Agent Action. Click Assign.
  5. Find Inspect TCP Connections in the Available section. Select and drag it into the Selected section.
  6. Click Add.
  7. Click Update.

Inspect TCP Connections

  1. Go to Policy in the top panel.
  2. Go to Policy > Node Policy > Agent Action in the left Policy panel.
  3. Find and click Inspect TCP Connections in the Agent Action window.
  4. Enter in Conditions, optional settings.

Under Update Interval:

  1. For Update Interval, Specify the time interval to update the TCP connection information. Enter: 0 for No Update.
  2. For Connections Change Threshold, Specify the percentage change in bandwidth to trigger TCP connection information update. (excluding LISTENING)
  3. For Connections Threshold, Specify the number of connections to be considered as TCP connection information.

Under Interface Control:

  1. For Interface Control, Specify whether to disable an interface if the connections exceed the specified limit.

Under Interface Disabled Event Notification:

  1. For Interface Disabled Event Notification, Specify how to notify a user for the event of disabling an interface if the connections exceed the specified limit.
  2. Click Update.