I do not think there are any configuration change traps on the IPS OS. You can check for yyourself"
The following private MIBs are supported on the sensor:
•
CISCO-CIDS-MIB
•
CISCO-PROCESS-MIB
•
CISCO-ENHANCED-MEMPOOL-MIB
•
CISCO-ENTITY-ALARM-MIB
Note
MIB II is available on the sensor, but we do not support it. We know that some elements are not correct (for example, the packet counts from the IF MIB on the sensing interfaces). While you can use elements from MIB II, we do not guarantee that they all provide correct information. We fully support the other listed MIBs and their output is correct.
You can obtain these private Cisco MIBs under the heading SNMP v2 MIBs at this URL:
http://www.cisco.com/public/sw-center/netmgmt/cmtk/mibs.shtml
I think the most notification you could recieve would be to have the sensor externally authenticate all logins via RADIUS and have people only use the account with admin access when making changes.
- Bob