Custom SNMP Trap Processors

Custom SNMP Trap Processors

Is it possible to create custom Trap Processors that look for a text signature in the trap message?

The problem I am having is that the different SNMP events coming from my Checkpoint firewall, all have the same Enterprise OID & Varbinds. When i create a custom (v1) Processor they begin to show up as alerts (as expected) but I can't differentiate their severity or escalation path.
Is there a way to differentiate these events?

eg:

Event1:
No Trap Parser defined for received trap: Enterprise: .1.3.6.1.4.1.2620.1.1 Generic Type: 6 Specific Type: 0 Variable Bindings: .1.3.6.1.4.1.2620.1.1.11.0: 3Oct2005 17:02:36 10.80.0.59 > snmptrap product: SmartDefense; cpmad: CPMAD; attack: Port Scanning; dst: 10.80.0.59; src: 10.90.0.136;

Event2:
No Trap Parser defined for received trap: Enterprise: .1.3.6.1.4.1.2620.1.1 Generic Type: 6 Specific Type: 0 Variable Bindings: .1.3.6.1.4.1.2620.1.1.11.0: 3Oct2005 16:54:57 10.80.0.59 < snmptrap product: System Monitor; System Alert message: A FireWall-1 Policy has been successfully installed on dcfwfp3; Object: 10.80.0.59; Event: Change; Parameter: FireWall-1 Policy install time; Condition: changes ; Current value: Mon Oct 03 16:54:48 2005;










                  New to ADSelfService Plus?