XDR Analytic alert

cancel
Showing results for 
Search instead for 
Did you mean: 

XDR Analytic alert

L0 Member

I am not able to see all cortex XDR analytic alert on Console that is mentioned in the document . why ?

1 REPLY 1

L4 Transporter

Hi @RCDT I assume you are referring to the Analytics Alerts referred here.

 

Once you have deployed Cortex XDR on your endpoints, you can enable XDR Analytics by referrring to Step 2- substep 3 here. Please take note that you need

- 2 weeks of EDR data from 30 endpoints deploying XDR Pro and enabling Enhanced Endpoint Data collection (Step 10 substep 2 here)

- Cloud Audit logs for 5 days.  

 

In addition for Identity Analytics alert, you will need to enable that after installing Cloud Identity Engine (Step 2-substep 4 here).

 

Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!