Edit Notification Action Window


The Edit Notification Action window lets you edit an existing notification or create a new one. In the window you can enable or disable the notification, specify the notification type and trigger, define the required conditions, and configure the actions that occur when the notification is activated. At the bottom of the window you can read a summary description of the notification's properties.

To create a new notification, click the Add button in the Manage Notifications window. To edit a notification, select a notification in the Manage Notifications window table and click the Edit button.

Click areas in the window for more information.

Enable Notification Name Notes Type Trigger Conditions Appliances NAC Profile End-System Group Time Selector Location Selector Actions Email Syslog Server Trap Server Custom Override Content Result Edit Notification Window

Enable Notification
Select the checkbox to enable the notification. When a notification is enabled, then the defined action takes place when the trigger occurs and the conditions are met.
Name
Enter a name for the notification.
Notes
Enter notes for the notification that describe the notification action or other notification details. This information is displayed in the Manage Notifications window.
Type
The notification type defines the source of the event that activates the notification. Use the drop-down menu to select one of the following notification types:
  • End-System Group
  • End-System
  • User Group
  • Health Result
  • Registration
Trigger
Triggers allow you to determine when a notification action occurs based on filtering for a specific event. Use the drop-down menu to select the event for which you want to filter. The list of triggers changes according to the notification type you have selected. Selecting "Any" or "Any Change" means that no filtering occurs.
  • End-System Group - the actions are performed when entries in the group are added or removed. "Any Change" would include added, removed, and modified.
  • End-System - the actions are performed based on:
    • an end-system being added, deleted, or moved
    • an end-system state or a state change
    • an authentication type or device type change
    • a custom field change
    • whether the end-system is registered
    • an end-system IP address change. An event is generated when an end-system is added with a static IP, the end-system IP changes after IP resolution, or the end-system IP changes due to DHCP rediscover.
    • when an end-system is added to a MAC-based end-system group. Note that a notification is not generated if the end-system is already a member of three end-system groups and is added to an additional group, unless the option "Remove from Current Group Assignments" is enabled when the end-system is added to the group.
    • certain errors occurring
  • User Group - the actions occur when entries in the group are added or removed. "Any Change" would include added, removed, and modified.
  • Health Result - the actions occur based on the risk level of a health result.
  • Registration - the actions occur when a registered user or device is added, removed, or updated.

Conditions

This section lets you define additional conditions that, in addition to the trigger, determines when actions occur. Conditions can be used to limit the scope of events that trigger a notification action. The list of conditions changes according to the notification type you have selected.

Appliances
Filter end-system notifications based on the engines you select here. Only end-systems being managed by the selected engines trigger the notification actions.
User Group
Select a user group to use as a filter for the User Group notification type. When the end-system is a member of this user group, then the notification actions are performed. If you don't select this checkbox and specify a group, then the notification is sent if any user group is matched.
NAC Profile
End-System events are filtered based on the NAC profile assigned to the end-system. Use the drop-down menu to select the desired profile.
End-System Group
Select an end-system group to use as a filter for the End-System Group notification type. When the end-system is a member of this end-system group, then the notification actions are performed. If you don't select this checkbox and specify a group, then the notification is sent if any end-system group is matched.
Time Group
Specify a time group to use as a filter for the End-System, Health Result, and Registration notification types. When the day and time that the end-system (the source of the event) connects to the network matches the time group, then the notification actions are performed.
Location Group
Specify a location group to use as a filter for the End-System, Health Result, and Registration notification types. When the location where the end-system (the source of the event) connects to the network matches the location group, then the notification actions are performed.
Device Type Group
Specify a device type group to use as a filter for the End-System, Health Result, and Registration notification types. When the end-system's device type matches the device type group, then the notification actions are performed.

Actions

Use the checkboxes to specify the actions you want to take place when a notification is triggered and the conditions are met. You can test a notification by clicking the Test Action button . (A notification must be saved before it can be tested.)

Email
Select this checkbox if you want an email sent if the notification is triggered. Use the drop-down menu to select one of your pre-defined email lists. If no lists have been defined, the menu is empty and you can click the Edit Email Lists button to define a list.
Syslog Server(s)
Select this checkbox if you want to create a syslog message if the notification is triggered. Enter the IP address or hostname for each syslog server where the message is sent. Multiple syslog servers can be listed, separated by either a comma or a space.
Trap Server
Select this checkbox if you want to send an SNMP trap if the notification is triggered. Enter the IP address for a trap receiver where the trap is sent. Valid trap receivers are systems running an SNMP Trap Service. From the Credential drop-down menu, select the appropriate SNMP credential used when sending the trap to the trap receiver. Credentials are defined in the Profiles/Credentials tab in the Authorization/Device Access window (Tools > Authorization/Device Access).
isaac Service
Select this checkbox if you want to send a message to the isaac service if the notification is triggered. The default notification message is sent, or you can customize the message using the Override Content window. When you create the notification, it is seen as a notification in the Notifications panel in isaac. Then, when the notification is triggered, a message is sent to isaac, and isaac forwards out the notification to alert isaac users.
Program
Select this checkbox to specify a custom program or script run on the Extreme Management Center Server if the notification is triggered. In the Program field, enter the name of the program or use the Select button to open a file browser window and choose a program. In the Working Directory field, enter the path to the directory from which to open the program or use the Select button to open a file browser window and choose a directory. Any path references within your program that are not absolute paths are relative to the working directory.
Override Content
Select this checkbox if you want to override the default content contained in the action message. The default content is defined in the NAC Manager Notification Engine options (Tools > Options). Use the Edit Content button to open the Edit Action Overrides window where you can change the defaults for this specific notification only.

Result

This section summarizes the notification type, trigger, conditions, and specified actions.


For information on related windows:

Top