HP ProCurve Threat Management Solution Implementation Guide 2009-05
2-31
HP ProCurve Network Immunity Manager Standalone Solution
Step 3: Respond to Threats
Figure 2-28. Create an Action Window
4. Select an action. You can select from a list that contains all of the actions available to PCM+.
The actions most likely to be relevant to network immunity are listed below.
• MAC Lockout —Lock out a MAC address from a switch or access point.
• MAC Mirroring—Set up MAC mirroring.
• Policy Manager: Display Message Dialog—Display a message on the management
console.
• Policy Manager: Execute Command on Server—Execute a PCM+ command.
• Policy Manager: Forward Trap—Forward a trap to another application, such as an
additional management tool.
• Policy Manager: Send Email—Send an e-mail notification to the specified e-mail
address.
• Port Mirroring—Set up port mirroring.
• Port Settings: Enable/Disable Port(s)—Shut down a targeted port or ports.
• Port Settings: Rate-limit—Limit the data rate on a targeted port or ports.
• Report Manager: Generate Report—Generate a security report.
• Security: VT Configuration—Configure Virus Throttle (connection-rate filtering)
on a target switch or switches.
• Traffic: Traffic Sampling—sFlow—Enable sFlow.
• VLAN Manager: Quarantine VLAN—Configure a VLAN to isolate or quarantine
ahost.
5. For Name, type a name for the action.
6. Optionally, enter a description for Description.