Configure the following event notification to notify administrators when Network VirusWall
has detected potential vulnerability attacks.
Procedure
- Go to .The Event Notifications screen appears.
- Click Network Access
Control.A list of events appears.
- In the Event column, click Potential vulnerability attacks.The Potential Vulnerability Attacks screen appears.
- Specify the following notification settings.SettingsDescriptionDetectionsSpecify the amount of potential vulnerability attacks detected by Network VirusWall.PeriodSpecify the period of time.Reported bySpecify the number of Network VirusWall devices that reported the potential vulnerability attack.
- Select recipients for the notification.
- From the Available Users and Groups list, select contact groups or user accounts.
- Click >.The selected contact groups or user accounts appear in the Selected Users and Groups list.
- Enable one or more of the following notification methods.MethodDescriptionEmail messageTo customize the email notification template, use supported token variables or modify the text in the Subject and Message fields.For more information, see Standard Token Variables and Network Access Control Token Variables.Windows event logTo customize the notification template, use supported token variables or modify the text in the Message field.For more information, see Standard Token Variables and Network Access Control Token Variables.SNMP trapApex Central stores SNMP trap notifications in a Management Information Base (MIB). To view the SNMP trap notifications, go to and click Download MIB file under SNMP Trap Settings.Trigger applicationSpecify the full path of the application file and any parameters for the command.SyslogApex Central can direct syslogs to supported third-party products, including Cisco Security Monitoring, Analysis and Response (MARS).
- To test if recipients can receive the event notification, click Test.
- Click Save.