Sep 1, 2017 — ETP updates

  • ​SIA​ administrators can now schedule a daily or weekly report that generates with alerts or all event data for the selected time period. Reports are generated and emailed to users who an administrator configures to receive scheduled report notifications.

  • From the Communication tab on the Utilities page, ​SIA​ administrators can now easily provide email addresses for alert notifications. In future releases, the improved design of the Communication tab will allow administrators to configure notification emails for specific ​SIA​ features.

  • From the Sinkhole tab on the Utilities page, ​SIA​ administrators complete a new process to create a custom sinkhole. ​SIA​ administrators can also now modify a sinkhole policy assignment.

  • In an upcoming release, ​SIA​ administrators will be able to download an OVA file to create a virtual machine that is configured as a sinkhole in your network. The ​SIA​ sinkhole receives suspicious or malicious traffic and identifies machines that are infected with malware. To participate in the beta of the ​SIA​ sinkhole feature, contact your account representative.

  • New reporting criteria or dimensions, including additional reporting dimensions for DNS activity. On the DNS Activity page, users can now view DNS activity data based on threat category and Autonomous System (AS) Name.