Brocade Network Advisor SAN User Manual v11.1x (53-1002167-01, May 2011)

880 Brocade Network Advisor SAN User Manual
53-1002167-01
Event action definitions
30
Deleting an event action definition
Perform the following steps to delete an event action definition.
1. Select Monitor > Event Processing > Event Actions.
The Event Actions dialog box displays.
2. Select the definition that you want to delete from the Event Actions list.
3. Click Delete.
A message displays asking you to confirm the deletion request.
4. Click Yes to delete the definition, or No to cancel the request.
Snort message forwarding
Snort is a third-party tool that monitors network traffic in real time. When Snort detects dangerous
payloads or other abnormal behavior, it sends an alert to Syslog in real time. You can turn Snort
messages on or off using the Add Syslog Filter dialog box
By default, the Forward Snort© Messages feature is not enabled. You must enable it to have Snort
messages forwarded to the configured Syslog destinations.
To forward Snort messages, complete the following steps:
1. In the Add Syslog Filter dialog box, click the Forward Snort® Messages check box (see step 8
in Adding a syslog filter” on page 866).
2. From the Identification pane of the Add Event Action dialog box, click Next to advance to the
Events pane. See “Creating an event action definition” on page 867 for complete instructions
on event actions.
The Events pane of the Add Event Action dialog box displays, as shown in Figure 392. Snor
Message is the default in the Show list.
FIGURE 392 Events pane of the Add Event Action dialog box