This page displays detailed information for the selected incident. Some information is for display only, other information can be modified.
Note
The option definition table displays only those items that can be changed by the user.
Section or tab | Option | Definition |
|---|---|---|
General Details | Severity | Specifies the severity. Select a value from the drop-down list to change. |
Status | Specifies the status. Select a value from the drop-down list to change. | |
Resolution | Specifies the resolution. Select a value from the drop-down list to change. | |
Reviewer | Displays the assigned reviewer. Click the Edit button ( | |
Endpoint Details | User Principal Name | Click the link to view more detail. |
Source Application | Click the link to view more detail. | |
Additional Information | Access Control List | Click the link to view which Active Directory users and groups have access to files. |
Tabs | Evidence | Click the link to view the evidence file in an appropriate program |
Rules | ||
Classifications | ||
Stakeholders | ||
Audit Log | ||
Comments | ||
Cases | ||
Actions | Add Comment | Opens a text window to add a comment. Maximum comment length is 500 characters. |
Email Event | Opens a window to send an email containing the incident. | |
Manage Labels | Opens a window to add or remove labels to the incident. | |
Release Redaction | Opens a Release Redaction window. Enter a user name and password of a user with sufficient permissions to display the event in clear text. | |
Stakeholders | Adds a stakeholder to selected incidents. You can add yourself, or specify another stakeholder. Stakeholders receive an email notification every time an incident is modified. | |
Case Management | Adds the incident to a new or existing case. | |
OK | Closes the window. | |
Save | Saves your changes. |
.gif)