Important Alerts Parent topic

The following table explains the important alerts triggered by events that require observation. TippingPoint Advanced Threat Protection for Email considers traffic surges, suspicious message detections, hardware capacity changes, certain sandbox queue activity, and component update issues as important events.

Important Alerts

Name
Criteria
(Default)
Checking Interval
(Default)
Quarantined Messages
At least 10 messages detected and quarantined
Once every 30 minutes
Long Message Delivery Queue
At least 500 messages in delivery queue
Once every 5 minutes
High CPU Usage
CPU usage is at least 90%
Once every 5 minutes
Suspicious Messages Identified
1 or more messages detected with threats
Once every 5 minutes
Watchlisted Recipients at Risk
1 or more messages detected with threats sent to watchlist recipients
Once every 5 minutes
Long Virtual Analyzer Queue
At least 20 messages in the Virtual Analyzer queue
Immediate
Long Virtual Analyzer Processing Time
Average Virtual Analyzer processing time is greater than 15 minutes
Once every hour
Low Free Disk Space
Disk space is 5GB or less
Once every 30 minutes
Component Update Unsuccessful
Update has failed
Immediate
Email Messages Timed Out Without Analysis Results
At least 1 email message timed out without analysis results
Once every 5 minutes
Low Free Quarantine Disk Space
Free quarantine disk space left is 10% or less
Once every 30 minutes