Edher_Espinosa1
Aug 26, 2015Nimbostratus
iRule with custom SNMP TRAP evertytime it matches, NOT every minute
The idea here is to log a malicious IP, i've created an SNMP TRAP for everytime this IPs get connected, I've created an iRules as well with a DataGroup "dg_mx" and works fine!
Heres the iRule:
when HTTP_REQUEST { if { [class match [IP::client_addr] equals dg_mx] } { log local0.warning "[IP::client_addr] WARNING MX IP abuse" } }
I've definied a custom SNMP TRAP but works only every minute
/config/user_alert.conf alert IP_ABUSE_MX "WARNING MX IP abuse" { snmptrap OID=".1.3.6.1.4.1.3375.2.4.0.301" }
There are many events in this minute and i need to get all of this traps everytime it happens, not every minute.
what do I need to modify, to get this traps at every time that the IP's been detected and not every minute?