Edit Notification Action Window
The Edit Notification Action window lets you edit an existing notification or create a new one. In
the window you can enable or disable the notification, specify the notification
type and trigger, define the required conditions, and configure the actions that occur when the notification is activated. At the bottom of the window
you can read a summary description of the notification's properties.
To create a new notification, click the Add button in the Manage Notifications window. To edit a notification, select a notification in the Manage Notifications window table and click the Edit button.
Click areas in the window for more information.
- Enable Notification
- Select the checkbox to enable the notification. When a notification is enabled, then the defined action takes place when the trigger occurs and the conditions are met.
- Notes
- Enter notes for the notification that describe the notification action or other notification details. This information is displayed in the Manage Notifications window.
- Type
- The notification type defines the source of the event that
activates the notification. Use the drop-down menu to select one of the
following notification types:
- End-System Group
- End-System
- User Group
- Health Result
- Registration
- Trigger
- Triggers allow you to determine when a notification action occurs based on filtering for a specific event. Use the drop-down
menu to select the event for which you want to filter. The list of
triggers changes according to the notification type you have selected.
Selecting "Any" or "Any Change" means that no filtering occurs.
- End-System Group - the actions are performed when entries in the group are added or removed. "Any Change" would include added, removed, and modified.
- End-System - the actions are performed based on:
- an end-system being added, deleted, or moved
- an end-system state or a state change
- an authentication type or device type change
- a custom field change
- whether the end-system is registered
- an end-system IP address change. An event is generated when an end-system is added with a static IP, the end-system IP changes after IP resolution, or the end-system IP changes due to DHCP rediscover.
- when an end-system is added to a MAC-based end-system group. Note that a notification is not generated if the end-system is already a member of three end-system groups and is added to an additional group, unless the option "Remove from Current Group Assignments" is enabled when the end-system is added to the group.
- certain errors occurring
- User Group - the actions occur when entries in the group are added or removed. "Any Change" would include added, removed, and modified.
- Health Result - the actions occur based on the risk level of a health result.
- Registration - the actions occur when a registered user or device is added, removed, or updated.
Conditions
This section lets you define additional conditions that, in addition to the trigger, determines when actions occur. Conditions can be used to limit the scope of events that trigger a notification action. The list of conditions changes according to the notification type you have selected.
- Appliances
- Filter end-system notifications based on the engines you select here. Only end-systems being managed by the selected engines trigger the notification actions.
- User Group
- Select a user group to use as a filter for the User Group notification type. When the end-system is a member of this user group, then the notification actions are performed. If you don't select this checkbox and specify a group, then the notification is sent if any user group is matched.
- NAC Profile
- End-System events are filtered based on the NAC profile assigned to the end-system. Use the drop-down menu to select the desired profile.
- End-System Group
- Select an end-system group to use as a filter for the End-System Group notification type. When the end-system is a member of this end-system group, then the notification actions are performed. If you don't select this checkbox and specify a group, then the notification is sent if any end-system group is matched.
- Time Group
- Specify a time group to use as a filter for the End-System, Health Result, and Registration notification types. When the day and time that the end-system (the source of the event) connects to the network matches the time group, then the notification actions are performed.
- Location Group
- Specify a location group to use as a filter for the End-System, Health Result, and Registration notification types. When the location where the end-system (the source of the event) connects to the network matches the location group, then the notification actions are performed.
- Device Type Group
- Specify a device type group to use as a filter for the End-System, Health Result, and Registration notification types. When the end-system's device type matches the device type group, then the notification actions are performed.
Actions
Use the checkboxes to specify the actions you want to take place when a notification is triggered
and the conditions are met.
You can test a notification by clicking the Test Action button . (A notification must be saved before it can be tested.)
- Select this checkbox if you want an email sent if the notification is triggered. Use the drop-down menu to select one of your pre-defined email lists. If no lists have been defined, the menu is empty and you can click the Edit Email Lists button to define a list.
- Syslog Server(s)
- Select this checkbox if you want to create a syslog message if the notification is triggered. Enter the IP address or hostname for each syslog server where the message is sent. Multiple syslog servers can be listed, separated by either a comma or a space.
- Trap Server
- Select this checkbox if you want to send an SNMP trap if the notification is triggered. Enter the IP address for a trap receiver where the trap is sent. Valid trap receivers are systems running an SNMP Trap Service. From the Credential drop-down menu, select the appropriate SNMP credential used when sending the trap to the trap receiver. Credentials are defined in the Profiles/Credentials tab in the Authorization/Device Access window (Tools > Authorization/Device Access).
- isaac Service
- Select this checkbox if you want to send a message to the isaac service if the notification is triggered. The default notification message is sent, or you can customize the message using the Override Content window. When you create the notification, it is seen as a notification in the Notifications panel in isaac. Then, when the notification is triggered, a message is sent to isaac, and isaac forwards out the notification to alert isaac users.
- Program
- Select this checkbox to specify a custom program or script run on the Extreme Management Center Server if the notification is triggered. In the Program field, enter the name of the program or use the Select button to open a file browser window and choose a program. In the Working Directory field, enter the path to the directory from which to open the program or use the Select button to open a file browser window and choose a directory. Any path references within your program that are not absolute paths are relative to the working directory.
- Override Content
- Select this checkbox if you want to override the default content contained in the action message. The default content is defined in the NAC Manager Notification Engine options (Tools > Options). Use the Edit Content button to open the Edit Action Overrides window where you can change the defaults for this specific notification only.
Result
This section summarizes the notification type, trigger, conditions, and specified actions.
For information on related windows: