Fortinet black logo

Administration Guide

Creating notification profiles

Creating notification profiles

Notification profiles are used to send alert notifications when an event is generated by an event handler. You can configure the notification profile to send the alert to an email address, SNMP community, and/or syslog server. You can also configure the notification profile to send the alert through a fabric connector.

You can create, edit, clone, and delete notification profiles in FortiSoC/Incidents & Events > Handlers > Notification Profile List.

To assign a notification profile to a basic event handler, see Creating a custom event handler.

To assign a notification profile to a correlation handler, see Creating a custom correlation handler.

To create a notification profile:
  1. Go to FortiSoC/Incidents & Events > Handlers > Notification Profile List.
  2. Click Create New.

    The Add New Notification Profile pane displays.

  3. Configure the following options, and click OK to save the notification profile.

    Option

    Description

    Name

    Enter a name for the notification profile.

    Send Alert through Fabric Connectors

    Send an alert through one or more fabric connectors selected from the dropdown. Click the plus (+) to add fabric connectors. For more information, see Fabric Connectors.

    Send Alert Email

    Send an alert to one or more email addresses. Specify the email parameters, including the mail server. For more information, see Mail Server.

    To

    Enter the email address(es) to send the alert to. Use a semicolon (;) to separate multiple email addresses.

    From

    Enter a from address for the alert email.

    Subject

    Enter a subject line for the alert email.

    Email Server

    Select the mail server for the alert email.

    Send SNMP(...) Trap

    Send an alert to an SNMP community or user selected from the dropdown. For more information, see SNMP.

    Send Alert to Syslog Server

    Send an alert to the syslog server selected from the dropdown. For more information, see Syslog Server.

    Send Each Alert Separately

    Enable to send each alert individually instead of in a group.

Creating notification profiles

Notification profiles are used to send alert notifications when an event is generated by an event handler. You can configure the notification profile to send the alert to an email address, SNMP community, and/or syslog server. You can also configure the notification profile to send the alert through a fabric connector.

You can create, edit, clone, and delete notification profiles in FortiSoC/Incidents & Events > Handlers > Notification Profile List.

To assign a notification profile to a basic event handler, see Creating a custom event handler.

To assign a notification profile to a correlation handler, see Creating a custom correlation handler.

To create a notification profile:
  1. Go to FortiSoC/Incidents & Events > Handlers > Notification Profile List.
  2. Click Create New.

    The Add New Notification Profile pane displays.

  3. Configure the following options, and click OK to save the notification profile.

    Option

    Description

    Name

    Enter a name for the notification profile.

    Send Alert through Fabric Connectors

    Send an alert through one or more fabric connectors selected from the dropdown. Click the plus (+) to add fabric connectors. For more information, see Fabric Connectors.

    Send Alert Email

    Send an alert to one or more email addresses. Specify the email parameters, including the mail server. For more information, see Mail Server.

    To

    Enter the email address(es) to send the alert to. Use a semicolon (;) to separate multiple email addresses.

    From

    Enter a from address for the alert email.

    Subject

    Enter a subject line for the alert email.

    Email Server

    Select the mail server for the alert email.

    Send SNMP(...) Trap

    Send an alert to an SNMP community or user selected from the dropdown. For more information, see SNMP.

    Send Alert to Syslog Server

    Send an alert to the syslog server selected from the dropdown. For more information, see Syslog Server.

    Send Each Alert Separately

    Enable to send each alert individually instead of in a group.