What is an Automatic Response in ePO?
A feature that allows you to set a criteria for specific events, and when those events occur, make ePO automatically engage in a certain action as a response
What are some of the response actions that ePO can be configured to take?
How does ePO determine the types of events that you can create an automatic response rule for?
By the products that are managed by ePO
T/F: The available response actions upon installation are the only options possible?
False, checking in new extensions can provide new actions
What are some examples of typical conditions that might trigger an automatic response?
What is the purpose of setting an event threshold?
Lets your tailor the frequency of automatic responses to fit the needs and realities of your environment
What is aggregation?
Allows you to set the number of events that occur before triggering an automatic response.
Ex:
-In one hour, the server receives 1,000 or more virus detection events from different systems
-In one hour, the server receives 100 or more virus detection events from one system
What is the purpose of throttling?
Allows you to limit the number of notification messages your receive based on one rule.
Ex:
You can specify in a response rule that you don’t want to receive more than one notification message in an hour
What is grouping?
A way to combine multiple aggregated events.
For example, events with the same severity can be combined into one group.
Grouping provides a way to respond to all events with the same or higher severity at once, as well as prioritize events that are generated
What are some notable default automatic responses?
What are the three event types found under the Event Group “ePO notification” events
What are the sections in the Automatic Response builder?