NGFW Incidents Reference
Learn about the NGFW incidents.
| Where Can I Use This? | What Do I Need? |
|
|
- One of the following licenses:
|
An incident is an indication of a fault in the system or a noncompliance with asset
rules, whether predefined policies or user-defined policies, and security control
policies. Incidents are triggered when the system detects issues, such as reaching
system-defined or customer-defined thresholds, or when a fault occurs.
The Unified Incident Framework consolidates all incidents from various security products
into a single interface, offering comprehensive visibility into your entire security
infrastructure. This framework means that product-specific alerts and incidents are now
located under the "Incidents" section.
Leveraging the Unified Incident Framework provides several benefits:
Consistent Incident Management: Ensures a uniform approach to handling
incidents across diverse products .
Faster Troubleshooting: Centralized visibility and detailed information
facilitate quicker identification and resolution of issues .
Informed Decision-Making: Comprehensive context enables a better
understanding of the impact and root cause of incidents .
Improved Operational Efficiency: Streamlined processes and reduced
incident fatigue enhance overall operational effectiveness