-
Notifications
You must be signed in to change notification settings - Fork 49
Open
Description
Request a new feteature.
I request that you add the ability to take an IDS alert and add it to a open investigating category. Then once investigated have the ability to flag it as true positive or false positive and let the analyst annotate the date time of investigation, technical notes, and recomendations. Then give the analyst the ability to close the incident.
Is that possible?
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels