Alerting: Services Tab

Document created by RSA Information Design and Development on Nov 23, 2016Last modified by RSA Information Design and Development on Apr 26, 2017
Version 3Show Document
  • View in full screen mode
  

This topic provides an overview of the Alerts > Configure > Services tab The Services tab provides details of the ESA services added to Security Analytics. 

The following figure shows the Services tab:
SvcsTb_1Esper.png

The Services tab has the following sections:

  • ESA Services panel 
  • General Stats panel 
  • Deployed Rule Stats panel 

Features

ESA Services Panel

The ESA Services panel lists the name of each ESA service added to Security Analytics.

General Stats Panel

The General Stats panel provides information on the Esper engine, rules and alerts.

The General Stats panel contains the following sections:

  • Engine Stats 
  • Rule Stats
  • Alert Stats

The following figure shows the General Stats panel.
GenStats_1ESA.png

 

The table lists and describes the parameters in each section.

                                                                 
SectionsParameterDescription
Engine StatsEsper VersionEsper version running on the ESA service
TimeTime when the last event was sent to Esper Engine
Events OfferedNumber of events analyzed by the ESA service since the last service start
Offered RateCurrent events offered rate on the ESA service
Rule StatsRules EnabledNumber of rules enabled.
Rules DisabledNumber of the rules disabled
Events MatchedTotal number of events matched to all rules on the ESA service
Alert StatsEmailNumber of email notifications sent by the ESA service
SNMPNumber of SNMP notifications sent by the ESA service
SyslogNumber of Syslog notifications sent by the ESA service
ScriptNumber of Script notifications sent by the ESA service
StorageTotal number of alerts stored in database
Message BusTotal number of alerts sent to the message bus


Deployed Rule Stats Panel

The Deployed Rule Stats panel provides details on the rules that are deployed on the ESA service.

The following figure shows the Deployed Rule Stats panel.DplyStats1ESA.png

 

The table lists the various parameters in the view and their description.

                                         
ParametersDescription
Enable_button.png Indicates the rule is enabled. Enables a rule that was disabled.
disable.png Indicates the rule is disabled. Disables a rule that was enabled.
Health & WellnessDisplays a snapshot of memory usage when trial rules get disabled
EnableIndicates whether the rule is enabled or disabled.
Green icon indicates rule is enabled.
White icon indicates rule is disabled.
NameName of the ESA rule.
Trial RuleIndicates if the rule is running in trial rule mode.
Last DetectedThe last time alert was triggered for the rule.
Events MatchedThe total number of events that matched the rule.
Next Topic:Settings Tab
You are here
Table of Contents > References > Services Tab

Attachments

    Outcomes