cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
738
Views
0
Helpful
1
Replies

Monitoring AnalysisEngine via SNMP

vaclav.cadek
Level 1
Level 1

Hello everybody,

I would like to ask if it is possible to monitor the analysisengine in IDSM-2 by SNMP. Time to time the engine stops working:

idsm# iplog-status

Error: getIpLogList : ct-sensorApp.651 not responding, please check system processes - The connect to the specified Io::ClientPipe failed.

I i would like to make the module send a SNMP if that happens.

I'm looking at his documet but I fail to see how to achieve above mentioned goal.

Thanks in advanco for any advice,

Best regards,

V.

1 Reply 1

rhermes
Level 7
Level 7

We've been plauged by this problem for years. We set up a custom sig that fires every 5 min and if our external monitoring system doesn;t see a signature fire in 10 min, we alert the Ops folks.

- Bob

Review Cisco Networking for a $25 gift card