KBI 311810 New Feature: Auto Correction In SYSLOG Rules
Version
Argent Advanced Technology 5.1A-2004-A and above
Date
Thursday, 16 April 2020
Summary
SYSLOG Rules search keywords to fire Events
This new feature allows specifying another set of keywords to correct a previously fired Event
For example, to monitor a Check Point firewall, the message “no response from peer” can indicate a bad VPN connection, while the message “connected” can indicate that the connection has been restored
The feature has been implemented in Argent AT 5.1A-2004-A
Technical Background
N/A
Resolution
Upgrade to Argent Advanced Technology 5.1A-2004-A or above