Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Raj_Khatri
Advisor

SmartEvent Alerting

I am trying to setup email alerts for threats as they are detected (Anti-virus, Anti-bot, etc.) and configured Automatic Reactions within SmartEvent R80.10.  While I am able to get email alerting working, the email content provides no value as there the Attack Details is empty and having UserID information would be useful.  Also, I don't see a way to create alerts according to various severity levels.

If anyone has any insight as to how best to configure/customize these alerts, it would be helpful.

0 Kudos
3 Replies
PhoneBoy
Admin
Admin

Have you applied this fix for the blank UserID?: In E-mail alerts sent by SmartEvent, the user name field contains '*** Confidential ***' i... 

Can you provide some examples of what kinds of alerts you would like to see based on what kind of severity?

0 Kudos
Raj_Khatri
Advisor

Thanks for providing the SK to address the blank UserID.  With respect to an example, a simple alert such as any threat prevention blade (IPS, AV, AB) with Critical Severity should trigger an automatic reaction and include attack details.

0 Kudos
PhoneBoy
Admin
Admin

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82

    Tue 23 Apr 2024 @ 11:00 AM (EDT)

    East US: What's New in R82

    Thu 25 Apr 2024 @ 11:00 AM (SGT)

    APAC: CPX 2024 Recap

    Tue 30 Apr 2024 @ 03:00 PM (CDT)

    EMEA: CPX 2024 Recap

    Thu 02 May 2024 @ 11:00 AM (SGT)

    APAC: What's new in R82
    CheckMates Events