Advanced security events alert

What is the name of the domain?

none domain related

What is the error number?

not particular error

What is the issue you’re encountering

When receiving the notification alerts for Spike of events based on custom firewall rule, the only valuable information is the zone name and the time interval. We want to automate the things and confirm only those IPs in the spike zone which match certain FW action.

What steps have you taken to resolve the issue?

webhook to inspect the data - nothing useful

What are the steps to reproduce the issue?

configure any Advanced security events alert for custom firewall rule in an enterprise zone and inspect the email notification

This topic was automatically closed after 15 days. New replies are no longer allowed.