📄️ Examples of alert rule creation - advanced way
The advanced method of creating a Rule is to design it from scratch. In our example, we will create a rule named Virus Outbreak to detect malware spreading. Detection of such a case can be realized by detecting the communication of one workstation with many others in a short period of time. So let's proceed to create such a rule from scratch.
📄️ Examples of rule creation - simple way
A simple method of a rule creation existing templates to design custom rules. In our example, we will configure a Rule based on the DoS attack template.