Configure Rules for Notifications

In WatchGuard Cloud, you can configure notification rules that enable WatchGuard Cloud to generate alerts and send email notifications. Notification rules determine which events generate alerts. When WatchGuard Cloud generates an alert, the alert appears on the Alerts page as an active alert until you acknowledge it.

On the Rules page, you can see all rules created for your account. By default, several predefined rules exist. You can edit the default rules to change the name, description, and delivery method. There are some default rules you cannot delete.

You can configure additional notification rules to generate alerts for specific events, device alarms, and incidents for multiple notification sources.

Notification Sources

You can configure notification rules for events from these sources:

When you select the notification source in a rule, the available notification types for that source appear in the rule settings.

Delivery Methods

For each rule, you can select one of these delivery methods:

  • None — The rule generates an alert that appears on the Alerts page.
  • Email — The rule generates an alert that appears on the Alerts page and also sends a notification email to the specified recipients.

Add a Notification Rule

To add a new rule:

  1. Select Administration > Notifications.
  2. Select the Rules tab.
  3. Click Add Rule.
  4. Screen shot of WatchGuard Cloud Notifications page, Add Rule

  5. On the Add Rule page, in the Name text box, type a name for your rule to help you identify it.
  6. From the Notification Source drop-down list, select the service or platform that generates the alert.
    This is where the alert comes from.
  7. From the Notification Type drop-down list, select the action or event that causes this rule to generate an alert.
    The options available in this drop-down list change based on your selection from the Notification Source drop-down list.
  8. Screen shot of WatchGuard Cloud, Add Rules page

  9. (Optional) Type a description for your rule.
  10. If you want the rule to send an email message when it generates an alert:
    1. From the Delivery Method drop-down list, select Email
    2. From the Frequency drop-down list, configure how many emails the rule can send per day:
      • To send an email for each alert the rule generates, select Send All Alerts.
      • To restrict how many email messages the rule sends each day, select Send At Most. In the Alerts Per Day text box, type the maximum number of email messages this rule can send each day. You can set specify a value of up to 20,000 alerts per day.
    3. In the Subject text box, type the subject line for the email message this rule sends when it generates an alert. You can type a maximum of 78 characters.
    4. In the Recipients text box, type the email address for each person you want to receive an email message when this rule generates an alert. You can type multiple email addresses. Press Enter after each email address or separate the email addresses with a space, comma, or semicolon.

    Screen shot of WatchGuard Cloud, Add Rule page, Recipients section

  11. Click Add Rule.

Related Topics

Manage WatchGuard Cloud Alerts

Configure WatchGuard Cloud Platform Notification Rules

Configure AuthPoint Notification Rules

Configure Firebox Notification Rules

Configure Access Point Notification Rules

Configure ThreatSync Notification Rules

Configure ThreatSync+ NDR Alerts and Notification Rules