Follow these steps to add a rule to match a condition for a particular severity type using the Central Management System appliance Web UI.
You can configure a rule to match traffic from a particular severity type. You can add the relevant tag to this rule for all incoming alerts that contain the specified severity type.
Note
You can add or delete rules to match a condition for a particular severity type only using the Web UI.
In the Web UI, choose Settings > CM Settings > Alert Management > Rules.
Click Create Rule. The Create Rule window opens.

In the Rule Name field, enter the name of the rule.
In the Matching Criteria area:
Choose Severity.
Choose equal to, not equal to, greater than, less than, less than or equal to, or greater than or equal to as the operation to match the particular severity type.
Depending on the operation for the severity criteria, choose critical, major, or minor as the severity type.
Click Add Condition. The severity condition is added to the match criteria table.
In the Associated Actions area:
Choose Alert Tag Add to add a tag to an alert that includes the rule that contains the matched condition. Or choose Alert Tag Delete to delete a tag from an alert that includes the rule that contains the matched condition.
Enter any value you want to associate with the tag. Select an existing tag or tag/value pair, or enter a new tag or tag/value pair.
Click Add Action. The rule action configuration is added to the associated tag table.
Click Apply.
The following message appears:
