Managing notifications
BMC Helix Cloud Security offers features for creation of three types of notifications, namely, Reports, Incidents and Change.
Reports are created when the user wants to be notified when violations are detected and give periodic updates about violations at user-specified frequencies. Incidents give users control over the course of action that should be followed when violations are observed. Incidents are created when Cloud Security identifies violations and can be taken up or dismissed by the user depending on its threat level. Change give users further control when the violations is to be remediated. Change ticket is created in ITSM when user tries to create remediation action. The remediation will be completed only when it is approved by Remedy Administrator.
You can configure report notifications/incidents/change under Configuration icon () > Notifications, which supports the following features:
Creating a Notification (Report / Incident/Change)
Steps | Example Screens | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
1. | Log on to BMC Helix Cloud Security and click Configure icon > Notifications. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
2. | Click on Create Notification from the Manage Notifications page. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
3. | On the popup screen that appears, select the type of notification desired from between New Violation Notification and Compliance Summary, Create Incident and Create Change (New Violation Notification has been chosen as an example for the purpose of this procedure). | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
4. | On the Create a Notification screen, specify the required fields depending on the type of notification chosen: On the Create a Notification screen, specify the required fields:
On the Create a Notification screen, specify the required fields:
On the Create a Notification screen, specify the required fields:
On the Create a Notification screen, specify the required fields:
| |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
5. | Click Save. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
6. | You will be apprised when the report/incident has been successfully created. | |||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
7. | Once the report/incident has been added to the Manage Notifications page, click on Run Now corresponding to the notification that needs to be generated. This ensures that the notification is generated on a subsequent schedule run and sent to the email address/addresses configured in the notification. |
Viewing / Updating a Report.
Steps | Example Screens | |
---|---|---|
1. | Log on to BMC Helix Cloud Security and click Configure icon > Notifications. | |
2. | On the Manage Notifications page, click on the link for the required notification under the Name column to view additional details for the selected notification. | |
3. | The Update a Notification page shows the name of the notification, description, frequency and time at which notification was generated, resources required for notification generation and email IDs to which the generated notification needs to be sent. Edit the required fields and click on Save to update details of the notification. |
Deleting a Report
Steps | Example Screens | |
---|---|---|
1. | Log on to BMC Helix Cloud Security and click Configure icon > Notifications. | |
2. | On the Manage Notifications page, select the notification to be deleted and click on the Delete button. | |
3. | Click OK on the Delete Confirmation pop-up that appears. | |
4. | You will be apprised when the notification has been successfully deleted. |
Sample Notification Content
Below is a sample email for New Violation Notification sent to the email ID configured in the notification. You can also hover over the link in the mail to connect to Cloud Security UI.
Below is a sample email for Compliance Summary sent to the email ID configured in the notification. You can also hover over the link in the mail to connect to Cloud Security UI.
Incident IDs can be viewed under Violation Details page.
Change Ticket IDs can be viewed under Violation Details page as well as Remediation History Page.