Objective
It is essential to set a notification for critical activities performed within the SIEM application and have a track for the same. This article focuses on step-by-step instructions for configuring Alert notifications for activities performed by technicians.
Prerequisites
Need access to EventLog Analyzer console as administrator role
Steps to follow
Login to EventLog Analyzer console
Navigate to Settings >> Admin settings >> Technician and role.
Select User audit in top right corner.
4. Select Notification option and proceed with selection for the following.
Technician Role - Select the role for which the notification has to be configured.
Select Action - Choose the list of actions for which the notification has to be sent.
Email ID - Enter the email address to which notification has to be sent. You can use comma to separate multiple mail IDs.
Subject - Craft a subject based on Macros available to understand the notification using the subject line.
5. Save the options selected to take effect.
Tips
Monitor required actions to ensure visibility of changes made based on Role.
Monitor critical activities like agent management, alert modification by Technicians by configuring notification for the selective.