Submit a ticketCall us

AnnouncementsAre You “Flying Blind?”

When it comes to your complex IT infrastructure, you want to ensure you have a good grasp of what’s going on to avoid any fire drills that result from guesswork. Read our white paper to learn how proactively monitoring your IT environment can help your organization while giving you peace of mind.

Get your free white paper.

Home > Success Center > User Device Tracker (UDT) > User Device Tracker (UDT) Documentation > Getting Started with UDT > UDT alerts > Configure a UDT alert

Configure a UDT alert

Table of contents
No headers

Updated: July 10, 2018

The preconfigured UDT alerts cover all rogue IP addresses, all rogue MAC address, and all rogue hostnames. To create alerts for specific ranges of rogue addresses that trigger different actions, you can customize these or you can create new alerts.

This example shows you how to duplicate a preconfigured alert, and configure it to be triggered if the IP address of the rogue device is in a specific range.

  1. Go to Alerts & Activity > Alerts and click Manage Alerts in the upper-right corner.
  2. On the Manage Alerts page:


    callout1.png Select Object Type from the Group By drop-down.
    callout2.png Select Rogue IP Address.
    callout3.png Check the Alert me when a rogue IP address appears on network alert.
    callout4.png Click Duplicate and Edit.
  3. On the Properties tab, edit the alert name and description, and click Next.

    The trigger condition tab is displayed.


    This shows the condition that triggers the alert. In this case, it is triggered whenever the Rogue field is equal to Yes. To change this so that it is only triggered if the IP address is in a specified range, we need to add the lower and upper limits of that range.

  4. On the Trigger Condition tab:


    callout1.png Click the plus icon and select Add Single Value Comparison.
    callout2.png Select IP Address from the second drop-down.
    callout3.png Select Is greater or equal to than from the third drop-down.
    callout4.png Select the first IP address in the required range.
  5. Repeat these actions, but select Is less than or equal to and the last IP address in the required range.
  6. On the Trigger Action tab, click Add Action.
  7. Select Send an Email/Page, and click Configure Action.


  8. Enter a name for the action, and enter the recipients for this email alert.
  9. Complete the other configuration sections, and click Next.

    For more information on setting up email alerts, see Send an email or page in the Orion Platform Administrator Guide.

  10. On the Summary tab, review the settings for this alert.
  11. Review the message above the Submit button.


    The message shows how many objects trigger this alert. In this case three devices have been detected using IP addresses in the specified range. When you click Submit, the specified recipient receives an email for each address.

Last modified


This page has no custom tags.


(not set)