<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic System Alert mails only for severity high/critical in General Topics</title>
    <link>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/202806#M33750</link>
    <description>&lt;P&gt;Hello Checkmates,&lt;/P&gt;&lt;P&gt;At the moment I get a ton of alert mails due to a&amp;nbsp; rad event for a specific domain name.&lt;/P&gt;&lt;P&gt;I have two questions:&lt;/P&gt;&lt;P&gt;1) Does anyone know how to handle the rad error " Failed to decrypt CP site response"&lt;/P&gt;&lt;P&gt;2) Is there a way to only get alert mails for events with severity higher then 3 ( high/critical) ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Gateways are on version R81.10 ( HFA Take 110)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;P&gt;Stephan&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 11 Jan 2024 09:01:25 GMT</pubDate>
    <dc:creator>Stephan_Lache</dc:creator>
    <dc:date>2024-01-11T09:01:25Z</dc:date>
    <item>
      <title>System Alert mails only for severity high/critical</title>
      <link>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/202806#M33750</link>
      <description>&lt;P&gt;Hello Checkmates,&lt;/P&gt;&lt;P&gt;At the moment I get a ton of alert mails due to a&amp;nbsp; rad event for a specific domain name.&lt;/P&gt;&lt;P&gt;I have two questions:&lt;/P&gt;&lt;P&gt;1) Does anyone know how to handle the rad error " Failed to decrypt CP site response"&lt;/P&gt;&lt;P&gt;2) Is there a way to only get alert mails for events with severity higher then 3 ( high/critical) ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Gateways are on version R81.10 ( HFA Take 110)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;P&gt;Stephan&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 11 Jan 2024 09:01:25 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/202806#M33750</guid>
      <dc:creator>Stephan_Lache</dc:creator>
      <dc:date>2024-01-11T09:01:25Z</dc:date>
    </item>
    <item>
      <title>Re: System Alert mails only for severity high/critical</title>
      <link>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/202886#M33761</link>
      <description>&lt;P&gt;For the first issue, I would contact the TAC: &lt;A href="https://help.checkpoint.com" target="_blank"&gt;https://help.checkpoint.com&lt;/A&gt;.&lt;BR /&gt;For the second issue, you'll probably have to write a script to run when "Alerts" occur to send email at the appropriate time.&lt;BR /&gt;The script will be sent the log entry as stdin, which you will have to parse.&lt;/P&gt;</description>
      <pubDate>Fri, 12 Jan 2024 00:49:05 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/202886#M33761</guid>
      <dc:creator>PhoneBoy</dc:creator>
      <dc:date>2024-01-12T00:49:05Z</dc:date>
    </item>
    <item>
      <title>Re: System Alert mails only for severity high/critical</title>
      <link>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/202889#M33763</link>
      <description>&lt;P&gt;I would follow what Phoneboy said for 2nd issue, and for the 1st problem, yes, you should contact TAC, but also, based on some posts I had seen on this, seems to me you may need global exception under threat prevention policy.&lt;/P&gt;
&lt;P&gt;Best,&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Fri, 12 Jan 2024 01:57:12 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/202889#M33763</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-01-12T01:57:12Z</dc:date>
    </item>
    <item>
      <title>Re: System Alert mails only for severity high/critical</title>
      <link>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/203062#M33789</link>
      <description>&lt;P&gt;Thank you PhoneBoy !&lt;/P&gt;</description>
      <pubDate>Mon, 15 Jan 2024 08:11:16 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/203062#M33789</guid>
      <dc:creator>Stephan_Lache</dc:creator>
      <dc:date>2024-01-15T08:11:16Z</dc:date>
    </item>
    <item>
      <title>Re: System Alert mails only for severity high/critical</title>
      <link>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/203063#M33790</link>
      <description>&lt;P&gt;Hi Andy,&lt;/P&gt;&lt;P&gt;thanks for the idea with the exception.&lt;/P&gt;&lt;P&gt;Stephan&lt;/P&gt;</description>
      <pubDate>Mon, 15 Jan 2024 08:11:58 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/203063#M33790</guid>
      <dc:creator>Stephan_Lache</dc:creator>
      <dc:date>2024-01-15T08:11:58Z</dc:date>
    </item>
    <item>
      <title>Re: System Alert mails only for severity high/critical</title>
      <link>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/203093#M33795</link>
      <description>&lt;P&gt;No worries, let us know if it works.&lt;/P&gt;
&lt;P&gt;Andy&lt;/P&gt;</description>
      <pubDate>Mon, 15 Jan 2024 13:08:23 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/General-Topics/System-Alert-mails-only-for-severity-high-critical/m-p/203093#M33795</guid>
      <dc:creator>the_rock</dc:creator>
      <dc:date>2024-01-15T13:08:23Z</dc:date>
    </item>
  </channel>
</rss>

