Hello,

I´ve configured a SNMP Trap-Receiver Sensor and get Trap Messages from the Agent Device.

Here´s the content of the column "bindings" in the message-tab:

SNMPv2-SMI::enterprises.6101.710 = Scan: STORAGE SCANNER Virus: Eicar_test_file File: \\192.168.x.x\ontap_admin$\test_CIFS_volume\Neues Textdokument (2).txt Computer: SRVNETAPPSCAN01 User: 192.168.x.xInfection source: svmtest Action: Clean failed - Quarantine success

I tried several filters to get an error of the sensor without success.

I tried for example

bindings[Virus]

but the Sensor stays green.

Can anybody help?

Thanks + Kind regards


Article Comments

Hi there,

Please let me know whether you already received traps?
If so, you can filter in the "Message" tab and then go the the "Advanced Filter" to see the filter query.


Jan, 2023 - Permalink

Hello Moritz,

I just created a Device in PRTG and added a SNMP-Trap-Receiver Sensor.

The Sensor receives SNMP-Trap messages.

I can send messages from the source device who is sending SNMP-Trap-Messages and the PRTG-Sensor receives the messages. The messages are displayed in the Message-Tab in the PRTG-Sensor.

In the PRTG-Sensor I´ve configured a filter-setting as described above. I used the instructions explained here: https://www.paessler.com/manuals/prtg/snmp_trap_receiver_sensor

My Error-Filter in this sensor looks like this: bindings[Virus]

The sensor stays green even if there comes a SNMP-Trap Message with the Content "Virus" in the message.

Therefore please assist how we can achieve to get an error-status of the PRTG-Sensor when the sensor receives a message with "Virus" in the message...


Jan, 2023 - Permalink

Hello again,

I now could see when I extend the time for querying the sensor that the sensor switches to Alarm and gets red.

On the next time the sensor will be queried, the sensor comes back to green.

I followed the instructions on

https://helpdesk.paessler.com/en/support/solutions/articles/76000063255-how-can-i-configure-sensors-using-speed-limits-to-keep-the-status-for-more-than-one-interval

and set up a "Green IT" Sensor and the notification template with the URL but the sensor does not persist to be red....


Jan, 2023 - Permalink

Hi there,

I can see you already found the best practice here. The API call should set the Green IT Sensor in the Error state. Did you tested the call if this does not happen?


Jan, 2023 - Permalink

Hello,

I finally got it right now. I tested the API call on a web browser and it worked.

I tested it on PRTG again and it did not work.

I changed the PRTG Webserver-Certificate to a trusted internal Certificate and now it´s working.

Furthermore it was (obviously) necessary to select the correct notification template in the notification trigger to got it working.

Cheers


Jan, 2023 - Permalink