Edit Alert Chain elements
Alert Chain elements are composed of rows ordered from top to bottom. Each row specifies a notification method and a recipient.
- You want to use the same notification method for more than one recipient.
- You want to use more than one notification method for the same recipient.
The Final Action row determines what happens when all Alert Channels in the Alert Chain have been tried, but none of the Administrators have acknowledged the alert.
For more details about the product and how to configure features, click Help or press F1.
Steps
Alert Chain Editing view
Use this view to define Alert Chains that are used in Alert Policies. Alert Chains define which notification channels are used to send alert notifications to administrators.
Option | Definition |
---|---|
Resources | Use this pane to create and add elements to an Alert Chain. |
Search | Opens a search filed for the selected element list. |
Up (Backspace) | Returns to the previous folder. |
New | Opens the associated dialog box to create an element. |
Tools |
|
Option | Definition |
---|---|
Policy Toolbar | |
Save | Saves the changes. |
Undo operation | Undoes the last change made. |
Redo operation | Redoes the last change that was undone. |
Tools | |
Validate | Validates the rules in alert chain. Opens the Validate Policy dialog box in which you can select which issues are checked in the rules. |
Expand Rule Sections | If you have added Rule Sections, they are all expanded. |
Collapse Rule Sections | If you have added Rule Sections, and they are expanded, they are all collapsed. |
Target selector | Selects the target Domain for the Validate action. |
ID |
(Not editable) Automatically assigned ID number that indicates the order of the rules in the policy. The rules are matched against traffic in the order of the ID numbers. For example, the rule 14.3 is the third rule added in this policy to the insert point that is the fourteenth rule in the upper-level template. Right-clicking this type of cell opens these menu items:
|
Channel | Specifies the Alert Channel.
|
Destination | Specifies the destination of the alert notification. The destination information varies according to the selected Alert Channel.
|
Threshold to Block | Double-click the cell to specify the limit for how many alerts the designated recipient is sent. The
Threshold to Block dialog box opens.
Note: Leaving the
Threshold to Block cell empty is the same as setting the cell to
No Moderation. There is no maximum number of alerts sent to the recipient.
|
Delay | Specifies a pause (in minutes) before the next row of the alert change is processed.
The purpose of the delay is to give the recipient of the notification enough time to acknowledge the alert before the next notification is sent. If sending the notification through the selected channel fails, the delay entered here is ignored. If you want to add delays that are always valid, add a row with Delay as the alert channel and set the delay on that row. |
Comment | An optional comment for your own reference. |
Rule Name |
Contains a rule tag and optionally a rule name.
Right-clicking this type of cell opens these menu items:
|
Final Action | Specifies the
Final Action that the
SMC takes if the last row of the Alert Chain is reached.
|
to | When Redirect is selected as the Final Action, specifies the Alert Chain in which the alert escalation continues. |
Option | Definition |
---|---|
General tab | |
Name | The name of the rule. |
Rule Tag | The rule's tag. |
Comment | Comment in the rule. |
Rule Info tab | The rule cells and their values.
Right-clicking the
ID cell opens the following menu items:
|
Option | Definition |
---|---|
History tab | |
Creator | Shows the administrator who created the rule. |
Created | Shows the time when the rule was created. |
Modifier | Shows the administrator who modified the rule. |
Modified | Shows the time when the rule was modified. |
Audit History | Opens the Logs view and displays the audit log data for traffic that matches the rule. |
Threshold to Block dialog box
Use this dialog box to configure the maximum number of alerts the recipient receives.
Option | Definition |
---|---|
Pass on max | Enter the maximum number of alerts that the recipient receives. After this threshold is reached, any alert chain rules with this recipient are ignored. |
During | Enter the time period in hours (h) and minutes (min) for counting the number of alerts to the recipient. |
Notify First Blocking | Select this option to notify the alert recipient when alert blocking starts. |
No Moderation | Select this option if you do not want to set a threshold for blocking. Setting a threshold is recommended to maintain a more manageable level of alerts received. |