Greetings.
Hi, I would like to create a custom PB to run a report and then notify any Outbreak Alert detection.
I started with:
1. Event trigger (basic handler name --> contains --> "Outbreak Alert")
2. Create Incident
3. Attack data to incident
4. Run report (about incidents)
There are a problem, when creating the PB, it seems that Event Trigger doesn't accept "Outbreak Alert" as "basic handler name" using CONTAINS, only specific handler names.
How can this be achieve?
Thank you!
Hello gwaihir,
Thank you for using the Community Forum. I will seek to get you an answer or help. We will reply to this thread with an update as soon as possible.
Thanks,
Please review the following articles:
https://docs.fortinet.com/document/fortianalyzer/7.2.2/administration-guide/28682/playbooks
https://docs.fortinet.com/document/fortianalyzer/7.2.2/administration-guide/691884/configuring-playb...
https://docs.fortinet.com/document/fortianalyzer/7.2.2/administration-guide/813113/analyzing-an-inci...
https://docs.fortinet.com/document/fortianalyzer/6.4.0/new-features/447371/default-playbook-template...
https://docs.fortinet.com/document/fortianalyzer/7.0.0/new-features/949810/importing-and-exporting-p...
https://docs.fortinet.com/document/fortianalyzer/7.2.2/administration-guide/763118/configuring-tasks...
https://docs.fortinet.com/document/fortianalyzer/6.4.0/new-features/893685/automation-playbooks
show us a screenshot of the trigger settings
User | Count |
---|---|
1923 | |
1144 | |
769 | |
447 | |
279 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.