Views:

Send notifications about email gateway traffic alerts by configuring email, webhook, and mobile app notification channels.

You can configure alerts for email business continuity cases through the TrendAI Vision One™ Notifications app. These alerts monitor message counts for Cloud Email Gateway Protection (CEGP) and notify administrators when thresholds are reached, helping ensure timely awareness of potential email delivery issues.
The following alert types are available when message counts reach the configured threshold:
  • Incoming delivering messages — Available for all CEGP customers
  • Outgoing delivering messages — Available for specific customers
Notifications can be delivered through email, webhook, or mobile channels.
Note
Note
Alert history, alert escalation, alert acknowledgment, SMS notifications, and phone call notifications are not supported.
This feature follows the same role-based access control (RBAC) definition as the TrendAI Vision One™ app. No management scope check is required.

Procedure

  1. In TrendAI Vision One™, go to the SettingsNotificationsEmail gateway traffic alert.
  2. Create a new notification rule and select from the following alert types:
    • Incoming delivering messages
    • Outgoing delivering messages
  3. Configure the threshold settings:
    • The threshold for the number of messages — Specify the message count that triggers the alert.
    • The number of consecutive times reaching the threshold — Specify the number of consecutive data points that must reach the message count threshold before an alert is triggered. The default value is 3. Each data point interval is 10 minutes.
      For example, if you set the number of consecutive data points threshold to 3, the alert triggers only after the message count reaches the threshold for 3 consecutive data points (30 minutes).
  4. Select the notification channels:
    • Email
    • Webhook
    • Mobile
  5. Save the notification rule.
When the configured threshold is triggered, a notification is sent with the following information:

Notification fields

Field
Description
Subject
{Incoming/Outgoing} {delivering} messages count reaches threshold alert.
Business ID
The business identifier associated with the alert.
Timestamp
The event trigger timestamp (in seconds).
Direction
Incoming or Outgoing.
Condition
{Delivering} message count reaches threshold in the specified number of data points.
Top 10 domains
Lists the top 10 domains and their associated message counts.
The configured threshold is displayed as a line on the Message delivery history and Message in-process history dashboard widgets, regardless of the domain selection. However, the threshold applies to the total email volume across all domains in the organization