Notification Configuration

To configure notifications on anti-virus network events

1.Select the Administration item in the main menu of the Control Center. In the opened window, select Notifications configuration in the control menu.

2.Notifications are configured separately for each Control Center administrator. The name of the administrator whom notifications are displayed is given in the Administrator who receives notifications field. To configure notifications for another administrator, click icon-new-edit and select the administrator in the opened window.

3.At initial setup, one default notifications blocks (profiles) is added for the main admin administrator. If the administrator notification list is empty, click Add notification in the Notification list section.

4.To enable notifications sending, set the switch on the left of the notifications block header to the corresponding position:

icon-notification-enabled—notifications sending for this block is enabled.

icon-notification-desabled—notifications of this block are not sent.

5.In this section, you can create several notifications blocks (profiles), e.g., for the different sending methods. To add one more block, click icon-item-add on the right of the notifications block settings. At the bottom of the page, one more notifications block will be added. Configuration of different notifications blocks as their templates texts is performed independently.

6.In the Title field, specify the name of added notifications block. This name is used, e.g. in configuration of the Create statistic report in the Server schedule. Further, to edit the header, click it and type necessary name. If you have more than one notification blocks, when you click the header text, the drop-down list with headers of existing notifications blocks will be prompted.

7.To configure notifications sending, select necessary type for notifications sending from the Notifications send method drop-down list:

Dr.Web Agent—send notifications via the Agent protocol.

Email—send notifications on email.

Push-notifications—send push notifications to Dr.Web Mobile Control Center. This option is available in the Notifications send method drop-down list only after Dr.Web Mobile Control Center has been connected to this Dr.Web Server.

SNMP—send notifications via the SNMP protocol.

Web console—send notifications for viewing in the Web console.

Settings description for each type of notifications sending is given in this section below.

8.In the notifications list, set the flags next to those notifications that will be sent according to the send method of current notifications block.

9.For the Server notifications sending, the predefined set of text messages is provided.

info

Description of predefined notifications and their parameters is given in the Appendices document, in p. Appendix D1. Predefined Notifications Description.

To configure concrete notification, do the following:

a)To switch into editing mode of the notifications settings, click icon-merge-settings on the section header.

b)To change notifications settings, click a notification you want to edit. Notification template will be opened. If necessary, edit the text of notification to send. In the notification text you can use template variables (in braces). To add variables, use drop-down lists on the message header. When a message is being generated, the system replaces template variables with a certain text, which depends upon its current parameters. The list of available variables is given in the Appendices document, in p. Appendix D3. The Parameters of the Notification System Templates.

c)For email notifications, you are provided to add arbitrary user-defined fields in the Headers additional section, in the template editor for each notification (see step b)). Headers must be formed according to the RFC 822, RFC 2822 standards and must not match with fields defined in the email standards. Particularly, the RFC 822 standard guarantees that specification does not contain headers started with X-, thus it is recommended to set the names in the following format: Х-<header-name>. For example: X-Template-Language: English.

d)For notifications from the Station subsection, you can set the list of stations on the events on which notifications will be send. In the template editing window, in the Groups of monitored stations tree, select groups of stations to monitor events and send corresponding notifications. To select several groups, use ctrl or shift.

e)To exit the notification editing mode, click icon-merge-settings on the section header.

info

For the SNMP send method, notification template texts are set at the side of SNMP receiver (management station in RFC 1067 term). Via the Control Center in the Station subsection, you can specify only the list of stations on the events on which notifications will be sent.

10.After editing, click Save to apply all specified changes.

Notifications via the Agent Protocol

info

Notifications via the Agent protocol can be sent to Dr.Web Agents for Windows only.

For notifications via the Agent protocol, specify the following parameters:

In the Resend by Dr.Web Server section, specify the settings for notifications resends performed by Dr.Web Server when failed to send a message:

Number—the number of retries performed by Dr.Web Server when failed to send a message. Default is 10.

Time-out—period in seconds after which Dr.Web Server repeats the attempt to send a message. Default is 300 seconds.

Station—identifier of a station to which notifications must be send. You can view station identifier in the stations properties.

Send test message—send the test message according to the specified settings of notification system.

Notifications on Email

For notifications on email, specify the following parameters:

In the Resend by Dr.Web Server section, specify the settings for notifications resends performed by Dr.Web Server when failed to send a message:

Number—the number of retries performed by Dr.Web Server when failed to send a message. Default is 10.

Time-out—period in seconds after which Dr.Web Server repeats the attempt to send a message. Default is 300 seconds.

Recipient email addresses—email addresses of notifications receivers. Only one email address of a receiver per each field. To add one more receiver field, click icon-item-add. To remove the field, click icon-item-remove.

info

Parameters of email sending are configured in the Administration menu, in the Dr.Web Server Configuration section, on the Network tab, on the Email internal tab.

Send test message—send the test message according to the specified settings of notification system.

Push Notifications

For Push notifications which are sent to Mobile Control Center, specify the following parameters:

In the Resend by Dr.Web Server section, specify the settings for notifications resends performed by Dr.Web Server when failed to send a message:

Number—the number of retries performed by Dr.Web Server when failed to send a message. Default is 10.

Time-out—period in seconds after which Dr.Web Server repeats the attempt to send a message. Default is 300 seconds.

Send test message—send the test message according to the specified settings of notification system.

Notifications via the SNMP Protocol

For notifications via the SNMP protocol, specify the following parameters:

In the Resend by Dr.Web Server section, specify the settings for notifications resends performed by Dr.Web Server when failed to send a message:

Number—the number of retries performed by Dr.Web Server when failed to send a message. Default is 10.

Time-out—period in seconds after which Dr.Web Server repeats the attempt to send a message. Default is 300 seconds.

In the Resend by SNMP subsystem section, specify the settings for notifications resends performed by SNMP subsystem when failed to send a message:

Number—the number of retries performed by SNMP subsystem when failed to send a message. Default is 5.

Time-out—period in seconds after which SNMP subsystem repeats the attempt to send a message. Default is 5 seconds.

Receiver—entity that receives SNMP request. For example, IP address or DNS name. Only one receiver per each field. To add one more receiver field, click icon-item-add. To remove the field, click icon-item-remove.

Sender—entity that sends SNMP request. For example, IP address or DNS name (must be able to be solved by DNS server).

If the sender is not set, defaults are: “localhost” for Windows and “” for UNIX.

Community—SNMP community or context. Default is public.

Send test message—send the test message according to the specified settings of notification system.

info

To get description of OID during the SNMP trap parsing, you can use the MIB provided with the Server. The DRWEB-ESUITE-NOTIFICATIONS-MIB.txt and DRWEB-MIB.txt files are located in the etc subdirectory of the Server installation directory.

Notifications Displayed in the Web Console

For notifications displayed in the Web console, specify the following parameters:

In the Resend by Dr.Web Server section, specify the settings for notifications resends performed by Dr.Web Server when failed to send a message:

Number—the number of retries performed by Dr.Web Server when failed to send a message. Default is 10.

Time-out—period in seconds after which Dr.Web Server repeats the attempt to send a message. Default is 300 seconds.

Notification storing time—time period for storing a notification starting from its receiving. 1 day is by default. After specified period, notification is marked as outdated and deleted according to the Purge outdated messages task in the Server schedule settings.

For notifications that received by this sending method, you can specify unlimited storing time in the Web Console Notifications section.

Send test message—send the test message according to the specified settings of notification system.