KBI 311810 New Feature: Auto Correction In SYSLOG Rules

Version

Argent Advanced Technology 5.1A-2004-A and above

Date

Thursday, 16 April 2020

Summary

SYSLOG Rules search keywords to fire Events

This new feature allows specifying another set of keywords to correct a previously fired Event

For example, to monitor a Check Point firewall, the message “no response from peer” can indicate a bad VPN connection, while the message “connected” can indicate that the connection has been restored

The feature has been implemented in Argent AT 5.1A-2004-A

Technical Background

N/A

Resolution

Upgrade to Argent Advanced Technology 5.1A-2004-A or above