CHAPTER2 SNMP Trap Alarms
MSBR | SNMP Alarms
Alarm acIDSPolicyAlarm
Severity Condition Text Corrective Action
Minor or
Major
(depending
on crossed
threshold)
Threshold of a
specific IDS
Policy rule is
crossed.
(see Alarm
Text above)
1. Identify additional traps
(acIDSThresholdCrossNotification)
that were sent alongside this Intru-
sion Detection System (IDS) alarm.
2. Locate the remote hosts (IP
addresses) that are specified in the
traps.
3. Examine the behavior of those hosts
(with regard to the reason specified
in the alarm), and attempt to fix
incorrect operation.
4. If necessary, change the configured
thresholds in the IDS Rule table
under the IDS Policy table.
- 63 -