Hi Team,
Can we tag the device criticality in logpoint,
We are looking to create notification for critical and high severity devices.
Hi Team,
Can we tag the device criticality in logpoint,
We are looking to create notification for critical and high severity devices.
There are multiple ways in which you could do this:
There’s probably other ways of dealing with this but hopefully it has given some ideas.
thanks for the quick reply.Iam looking for option 2 and 3 .
For thats where should the lists /csv need to be uploaded? In the settings >>device groups
or any other place .
iam thinking to build a network or asset model in Logpoint.
If you have any documentation ,please provide .
Thanks
Satya
CSV is an enrichment source, so you find it under “Configuration”. You can either upload a CSV through the browser, or point LogPoint at a URL where a web server hosts the CSV file. There’s no specific documentation on device criticality, but enrichment sources of any kind are covered in the manual (https://docs.logpoint.com/docs/data-integration-guide/en/latest/Configuration/Enrichment%20Sources.html) together with enrichment policies (https://docs.logpoint.com/docs/data-integration-guide/en/latest/Configuration/Enrichment%20Policies.html), and also the User Training course.
Isn’t this related to availability?
If you use the Confidentiality, Intergrity & Availability option when creating devices in LogPoint, then if you set availability to major or critical, then when creating alertrules you can use that for the calculating the risk-value.
Creating an Alert Rule — Alerts and Incidents latest documentation (logpoint.com)
Regards
Hans
Already have an account? Login
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.