Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...

You can configure Insight notifications to be viewed in the Cloud Services Infoblox Portal (in-application), and/or have notifications sent to an email recipient address of your choice in the Cloud Services the Infoblox Portal, Insight notifications can be viewed on the notifications page in the Cloud Services the Infoblox Portal.

Infoblox Threat Defense - Insight Alert Update

One or more domains have been added to this Insight Outlier.

  • Detection Class: Suspicious,

  • Detection Family: EmergentDomain.

FieldsAvailability
Threat Type: <Major Attack>IN-APPLICATION, EMAIL
Threat Class(s): <TI-MAJTHREAT>IN-APPLICATION, EMAIL
Most recent event: <2023-06-27 08:38:10 +0000 UTC>IN-APPLICATION, EMAIL
Threat Level: <high>IN-APPLICATION, EMAIL
Ckick the link to go to the SOC Insights dashboardIN-APPLICATION only


Sample App/

...

Infoblox Portal Notification

The following is a sample app/Cloud Services Portal Infoblox Portal notification. Notifications for new assets and indicators are generated, as well. 

...

Alerting settings can be changed by highlighting your logged-in Name & User Profile > Notifications in the Cloud Services the Infoblox Portal. 

Go to the Insight Reporting Dashboard for details.

A sample In-App Insight notification.Image RemovedA sample In-App Insight notification.Image Added

Image: A sample In-App Insight notification.

...

Domain Notifications
FieldsDescription
Detection ClassThe detection class of the domain triggering the detection 
Detection FamilyThe detection family of the domain triggering the detection 
Threat IndicatorThe lookalike domain which triggered the detection
TargetThe original domain



A sample In-App Domain notification.Image RemovedA sample In-App Domain notification.Image Added

Image: A sample In-App Domain notification.

Sample email notification (Domain)
A sample, system-generated email notification.Image RemovedImage Added

Image: A sample, system-generated email notification.