Hi Simon,
I am also using alerts generated based on syslog and also from snmp traps.Alerts can be configured from syslog and trap viewer and matching the desired argument of either syslog or trap. It pretty straight and it also possed option for matching the syslog/traps from certain devices.you can also configure the alerts based on IP address/message type etc.
Danish