Jump to content

Threat notifications and ERA

Recommended Posts

We've been using ERA forever and have some basic notifications setup.  It wasn't until a virus hit a machine yesterday and we didn't get any alerts that I realized we had no working notification for threats.


So I setup a new notification and it appeared what looked best to me was a "Received Log Event" against the threats log for critical warnings.  The system in question with the virus has a myriad of critical warnings (And still does as we're cleaning it up.)  But I'm not getting any notifications.


Is there a better way to do this? 


Link to comment
Share on other sites

This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
  • Create New...