Configure a total alert threshold to protect your Endpoint Security (HX) appliance. This setting prevents the appliance from processing excessive alerts during a hit storm.
Balance your threshold settings carefully. Low thresholds cause the system to drop alerts. High thresholds degrade appliance performance during active storms.
This setting is configured using the CLI. It cannot be configured using the Endpoint Security (HX) Web UI.
Endpoint Detection and Response with Forensics (EDRF) > Manage your workspaces > Configure Forensics workspace > Configure alert thresholds > Configure the total alert threshold