HP ProCurve Threat Management Solution Implementation Guide 2009-05
3-122
HP ProCurve Network Immunity Manager with a Third-Party IDS/IPS
Step 2: Detect Threats
4. Click the Configuration tab in the right pane.
Figure 3-132. Default TippingPoint Alert in PCM+ Policy Manager Window
5. Configure settings for triggering the alert:
• Trap OID—By default, the alert can be triggered by any SNMP trap. If you want to limit
which SNMP traps trigger the alert, configure this setting.
• Severity—Configure this setting if you want to trigger an alert based on how critical
an event is. PCM+ classifies events as follows:
– Informational
– Warning
– Minor
– Major
– Critical
Select one of the following and then select the severity level of the event:
– Equal to
– Not equal to
– Greater than
– Less than
For example, you might want to trigger the alert only if the event is a warning level or
higher. In this case, you would select Greater than and then select Warning.
• Signature ID, Signature Sub-ID, or Signature Name—Configure this setting to trigger the
alert if an event matches or does not match a particular signature. Select one of the
following:
– Matches
– Not matches
– Contains
– Not contains
Then type the signature ID or signature name in the box provided.