The solution is to enrich the particular incident with the filters.
You first open the SNMP Event, select either the global enrichment or the enrichment based the particular cia that you will found under the CA hood of the node. After selecting the useful enrichments according tou, go for the filters , and select the ciaName and ciaValue, and then apply the enrichment method. You in this way, you dont go for all the 55 events or watever, once the incident enters into the pipeline, the first thing it would do is suppression or enrichments and then it persist in DB with the non-dampened cycle.
1. .184.108.40.206.4.1.135220.127.116.11 is coming as a trap with values of .18.104.22.168.4.1.13522.214.171.124.1.11.0 and .126.96.36.199.4.1.135188.8.131.52.1.1.0.
2. Now you want to enrich so as to see the Event Type in the Message Text and Severity set accordingly.
So, the solution for above is that open the SNMP Trap which is of .184.108.40.206.4.1.135220.127.116.11. Go to Enrichment Tab, create new type, set the category " fault ", family " Node ", and Severity " as per your requirement ". After that set any priority accordingly and Correaltion nature as " None ".
After completeing all these things, in the Message Text, type $.18.104.22.168.4.1.13522.214.171.124 or you can also use $.126.96.36.199.4.1.135188.8.131.52.1.11.0. After that go to payload Filters, create new, enter accordingly
ciaName = .184.108.40.206.4.1.135220.127.116.11.1.11.0 AND ciaValue = < Value you want to see > AND ciaName = .18.104.22.168.4.1.13522.214.171.124.1.1.0. AND ciaValue = < Value you want to use >
In the above filters, this OID becomes visible in the console as events when there is a match. Suppose, you have configured, one for critical, one for warning. And suppose when the Event type called IPS comes as Critical, then this creates an event. Same for all others like what you have configured in the payload filters.
It is good to have a word with the network team that which Event is important and critical. After that you create the payload filters accordingly and set the Severity Critical for this Event Enrichment.
EID contains .126.96.36.199.4.1.135188.8.131.52.1.11.0 : Event Type
So, if you just need to show the Event Type within the message without further differentiation you just have to show this EID as written by Vik.: in the Message Text, type [..] $.184.108.40.206.4.1.135220.127.116.11.1.11.0
In this case you just have to enrich the severities (creating 5 enrichments at all).