Software Secure Workload
Activity Configure

Summary Alerts

Summary Alerts are available only for some applications, and some configuration options that depend on the application.

  • Individual Alerts are generated over non-aggregated or minimally aggregated information and are likely to have a time range of one minute. Note that this does not necessarily mean the alerts are actually generated and sent at a minute interval; the individual alerts can also be generated at the App Frequency interval.

  • Summary Alerts are generated for all agents based on the alert rule that is configured, either for an hourly or a daily basis. For example, sensor and enforcement alerts are summarized for agents, and compliance alerts are summarized on all flows for the alert rule that is configured.

App

App Frequency1

Individual Alerts

Hourly Alerts

Daily Alerts

Compliance

Minute

At App frequency

Summary of Individual Alerts

Summary of Individual Alerts

Enforcement

Minute

At App frequency

Summary of Individual Alerts

Summary of Individual Alerts

Sensors

Minute

At App frequency

Summary of Individual Alerts

Summary of Individual Alerts

Traffic

Minute

At App frequency

Summary of Individual Alerts

Summary of Individual Alerts


 

The Event Time of Summary Alerts represents the first occurrence of the same alert type over the past hour or a specified interval.