analysis custom gi

Prev Next

Customize guest image parameters, such as user name and domain name, by using the Configuration Wizard to change the factory default settings on an appliance.

All the fields in the Configuration Wizard are optional. To use the wizard, use the following methods:

  • To change an answer while running the Wizard, enter CTRL+C, and then enter the step number.

  • To skip a parameter, press Enter. To clear a previously saved value, enter clear. Entering a new value will overwrite the previous value of the parameter.

  • To save changes and exit, press Enter.

The following table lists the configuration prompts in the wizard:

Step

Response

Enable Custom GI Config?

Enter yes to enable the administrator to set guest image parameters.

Username?

Enter a user name. The user name can include alphanumeric characters, a dot ("."), a dash ("-"), and an underscore ("_"). For example, john.smith.

Domain Name?

Enter the domain for the guest image. For example: fireeye.com.

Hostname?

Enter the host name. For example john.smith-pc.

Windows Recent Files?

Enter a file path name. For example, c:\windows\sample.txt.

Office Recent Files?

Enter a file path name. For example, c:\office\recent. txt.

Browser History?

Enter a URL. For example, http://www.google.com.

Honey Credentials?

Enter a honey credential that includes type (system or browser), user name, and password. For example, browser:john.smith: honey_password123.

Honey Files?

Enter a honey file that allows you to detect and alert malicious activity. For example, c:\honey_file.txt.

Honey Directories:

Enter a honey directory. For example, c:\honey,

DNS Cache Entries

Enter parameters for a DNS cache. For example, google.com:199.34.255.1.

Host File Entries

Enter parameters for a host file. For example, google.com:199.34.255.1.

Outlook Account

Enter parameters for an Outlook account. For example, john.smith@fireeye.com:mypassword123.

FTP Account

Enter parameters for an FTP account. For example, ftp://myftp.com:john.smith:ftppassword123.

Skype User Account

Enter parameters for a Skype account. For example, john.smith:skypepassword123.

Home Drive

Enter a home drive. For example, C:.

Language

Enter a language. For example, Japanese.

Time Zone

Enter a time zone. For example, (GMT-08:00) Pacific Time (US & Canada).

Syntax

analysis custom gi

Parameters

None

Example

The following example runs the Configuration Wizard that allows you to customize parameter settings for your installed guest images.

hostname (config) # analysis custom gi

Respond to the configuration prompts as they appear (see the table above).

User role

Admin or Operator

Command mode

Config

Supported appliances

This command is supported on the following appliances running the specified releases or later:

  • Malware Analysis: Release 8.1

  • Email Security — Server: Release 8.1.3

  • Network Security: Release 8.2