Access Triggers
Overview
Triggers define the conditions Regroup Threat Intelligence uses to send real-time threat alerts through a Regroup Mass Notification channel. A trigger connects an asset or group of assets with criteria such as proximity, alert categories, minimum risk score, and time range. When an alert meets the configured criteria, Regroup Threat Intelligence can send the alert through the selected Regroup channel.
Triggers can be created for either a specific asset or for multiple assets that share the same asset label.
Access Triggers
To access triggers:
- From the left navigation pane, click Triggers.
The Triggers page displays all configured triggers and provides options to search, filter, create, and manage them.
The Triggers list displays the following information for each trigger:
-
Name: Displays the name assigned to the trigger.
-
Asset: Displays the asset associated with the trigger. The asset label is also displayed when applicable.
-
MNS Channel: Displays the Regroup Mass Notification channel used to send alerts that match the trigger.
-
Proximity: Displays the proximity level configured for the trigger, such as High, Medium, or Low.
- Status: Indicates whether the trigger is enabled.
- Actions: Provides options to view, edit, or delete the trigger.
Search and Filter Triggers
Use the search and filter options on the Triggers page to quickly locate specific trigger configurations.
Search a Trigger
Use the Search by name field to locate a trigger by its name.
-
Click the Search by name field.
-
Enter the trigger name or a keyword that matches the trigger name.
The Triggers list updates to display matching results.
Filter Triggers
You can filter the Triggers list using the following options:
Filter By Label
Use the Label dropdown to display triggers associated with assets that have a specific label.
Filter By City
Use the City dropdown to display triggers associated with assets in a specific city.