Summary Alerts
Summary Alerts are available only for some applications, and some configuration options that depend on the application.
-
Individual Alerts are generated over non-aggregated or minimally aggregated information and are likely to have a time range of one minute. Note that this does not necessarily mean the alerts are actually generated and sent at a minute interval; the individual alerts can also be generated at the App Frequency interval.
-
Summary Alerts are generated for all agents based on the alert rule that is configured, either for an hourly or a daily basis. For example, sensor and enforcement alerts are summarized for agents, and compliance alerts are summarized on all flows for the alert rule that is configured.
App |
App Frequency1 |
Individual Alerts |
Hourly Alerts |
Daily Alerts |
---|---|---|---|---|
Compliance |
Minute |
At App frequency |
Summary of Individual Alerts |
Summary of Individual Alerts |
Enforcement |
Minute |
At App frequency |
Summary of Individual Alerts |
Summary of Individual Alerts |
Sensors |
Minute |
At App frequency |
Summary of Individual Alerts |
Summary of Individual Alerts |
Traffic |
Minute |
At App frequency |
Summary of Individual Alerts |
Summary of Individual Alerts |
|
The Event Time of Summary Alerts represents the first occurrence of the same alert type over the past hour or a specified interval. |