<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Filtering only high alerts in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/filtering-only-high-alerts/m-p/939593#M79757</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sure, here you go:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5729/ps5713/ps4077/prod_white_paper0900aecd80191021.html" target="_blank"&gt;http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5729/ps5713/ps4077/prod_white_paper0900aecd80191021.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 12 Jun 2008 00:52:40 GMT</pubDate>
    <dc:creator>Farrukh Haroon</dc:creator>
    <dc:date>2008-06-12T00:52:40Z</dc:date>
    <item>
      <title>Filtering only high alerts</title>
      <link>https://community.cisco.com/t5/network-security/filtering-only-high-alerts/m-p/939590#M79754</link>
      <description>&lt;P&gt;I have a range of IP's that I never want to see any high priority alerts, but need to see any other alerts. How would I do that?&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 11:08:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/filtering-only-high-alerts/m-p/939590#M79754</guid>
      <dc:creator>5creedus</dc:creator>
      <dc:date>2019-03-10T11:08:58Z</dc:date>
    </item>
    <item>
      <title>Re: Filtering only high alerts</title>
      <link>https://community.cisco.com/t5/network-security/filtering-only-high-alerts/m-p/939591#M79755</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The best way to control this would be to filter those hosts based on the Risk Rating, using 'Event Action Filters' you can subtract actions from alerts. So for these hosts you could subtract the 'Product Alert' action based on a specific Risk Rating value.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have a look at:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/docs/security/ips/6.0/configuration/guide/idm/dmEvtRul.html#wp1034361" target="_blank"&gt;http://www.cisco.com/en/US/docs/security/ips/6.0/configuration/guide/idm/dmEvtRul.html#wp1034361&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 11 Jun 2008 20:16:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/filtering-only-high-alerts/m-p/939591#M79755</guid>
      <dc:creator>Farrukh Haroon</dc:creator>
      <dc:date>2008-06-11T20:16:28Z</dc:date>
    </item>
    <item>
      <title>Re: Filtering only high alerts</title>
      <link>https://community.cisco.com/t5/network-security/filtering-only-high-alerts/m-p/939592#M79756</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thanks, more detailed information on the risk ratings?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 11 Jun 2008 22:41:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/filtering-only-high-alerts/m-p/939592#M79756</guid>
      <dc:creator>5creedus</dc:creator>
      <dc:date>2008-06-11T22:41:07Z</dc:date>
    </item>
    <item>
      <title>Re: Filtering only high alerts</title>
      <link>https://community.cisco.com/t5/network-security/filtering-only-high-alerts/m-p/939593#M79757</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Sure, here you go:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5729/ps5713/ps4077/prod_white_paper0900aecd80191021.html" target="_blank"&gt;http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5729/ps5713/ps4077/prod_white_paper0900aecd80191021.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Jun 2008 00:52:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/filtering-only-high-alerts/m-p/939593#M79757</guid>
      <dc:creator>Farrukh Haroon</dc:creator>
      <dc:date>2008-06-12T00:52:40Z</dc:date>
    </item>
    <item>
      <title>Re: Filtering only high alerts</title>
      <link>https://community.cisco.com/t5/network-security/filtering-only-high-alerts/m-p/939594#M79759</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Farrukh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Jun 2008 22:34:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/filtering-only-high-alerts/m-p/939594#M79759</guid>
      <dc:creator>5creedus</dc:creator>
      <dc:date>2008-06-12T22:34:59Z</dc:date>
    </item>
  </channel>
</rss>

