Fortinet white logo
Fortinet white logo

User Guide

Email notifications

Email notifications

Receive an email notification when a detector triggers a detection. Notifications are configured and applied on a per-user basis using the email address tied to a user's account. If you are logging in for the first time or have never updated your notifications, you will see the Default Notification created for every user.

To create a notification:
  1. In the toolbar, click the gear icon menu and click Email Notifications. The Notifications page opens.
  2. Click the Create Notification button at the top right-side of the page. The Create a New Notification dialog opens.

  3. Configure the notification:

    Subscription NameEnter a name for the subscription.
    Severities

    Select one of the following:

    SeverityDescriptionExamples
    HighSignificant to fair impact with the potential to spread or escalateMalicious code execution, C2 communications, lateral movement, data exfiltration
    ModerateFair impact with minimal potential to spread or escalateActivity that could indicate malicious intent, untargeted attacks with unknown success, data leakage, subversion of security or monitoring tools
    LowLittle to no impact expectedPotentially unauthorized software, devices, or resource use, untargeted adware or spyware, compromise of a personal device or device on an untrusted network, insecure configurations
    Confidences

    Select one of the following:

    ConfidenceMinimum True-Positive Rate
    High90%
    Moderate75%
    Low50%
    Categories

    Select a category from the list. For information, see Detections > Detector Categories.

    AccountSelect the account the detector belongs to.
    Email Type
    • Notification: Sends an email for each individual detector that becomes active.

    • Digest: Sends you a single email each day at the specified time (default 08:00 Eastern) summarizing detectors that became active and/or were resolved during the previous day.

  4. Click Create.
To delete a notification:
  1. In the toolbar, click the gear icon menu and click Email Notifications. The Notifications page opens.
  2. Click the Actions menu at the left side of the detector and select Edit Notification.

  3. Click Delete Notification. A confirmation dialog opens.
  4. Click Confirm.
To disable a Notification:
  1. In the toolbar, click the gear icon menu and click Email Notifications. The Notifications page opens.
  2. Click Disable Notification. A confirmation dialog opens.
  3. Click Confirm.

Email notifications

Email notifications

Receive an email notification when a detector triggers a detection. Notifications are configured and applied on a per-user basis using the email address tied to a user's account. If you are logging in for the first time or have never updated your notifications, you will see the Default Notification created for every user.

To create a notification:
  1. In the toolbar, click the gear icon menu and click Email Notifications. The Notifications page opens.
  2. Click the Create Notification button at the top right-side of the page. The Create a New Notification dialog opens.

  3. Configure the notification:

    Subscription NameEnter a name for the subscription.
    Severities

    Select one of the following:

    SeverityDescriptionExamples
    HighSignificant to fair impact with the potential to spread or escalateMalicious code execution, C2 communications, lateral movement, data exfiltration
    ModerateFair impact with minimal potential to spread or escalateActivity that could indicate malicious intent, untargeted attacks with unknown success, data leakage, subversion of security or monitoring tools
    LowLittle to no impact expectedPotentially unauthorized software, devices, or resource use, untargeted adware or spyware, compromise of a personal device or device on an untrusted network, insecure configurations
    Confidences

    Select one of the following:

    ConfidenceMinimum True-Positive Rate
    High90%
    Moderate75%
    Low50%
    Categories

    Select a category from the list. For information, see Detections > Detector Categories.

    AccountSelect the account the detector belongs to.
    Email Type
    • Notification: Sends an email for each individual detector that becomes active.

    • Digest: Sends you a single email each day at the specified time (default 08:00 Eastern) summarizing detectors that became active and/or were resolved during the previous day.

  4. Click Create.
To delete a notification:
  1. In the toolbar, click the gear icon menu and click Email Notifications. The Notifications page opens.
  2. Click the Actions menu at the left side of the detector and select Edit Notification.

  3. Click Delete Notification. A confirmation dialog opens.
  4. Click Confirm.
To disable a Notification:
  1. In the toolbar, click the gear icon menu and click Email Notifications. The Notifications page opens.
  2. Click Disable Notification. A confirmation dialog opens.
  3. Click Confirm.