From the list of alerts grouped by attack rule name (the Alerts view of the Alerts tab), you can acknowledge all alerts in the entire list, or you can acknowledge alerts on a specific page of the list.
This procedure describes how to use the Alerts view in the Web UI Alerts tab to acknowledge all alerts in the entire list.
Requirements
You are logged in to the Web UI as Admin or Analyst.
Procedure
A filtered list of Alert Types that are not acknowledged displays.
Select Alerts > Alerts.
Under Filter, select Hide Acknowledged from the Alert pull-down and click the APPLY button.
Select the check box located below the control bar and to the left of the Type column.
Note
Reconnaissance events and brute-force events (detected if IPS is licensed and activated on the Network Security) appear in the IPS tab. You cannot acknowledge these events.
To acknowledge all alerts on all pages, click the SELECT ALL ALERTS button.
Click Acknowledge. The Acknowledge Alert dialog appears.
In the text box, enter a note about the acknowledgment action. Comment text is required.
Click the Acknowledge button.
To view all acknowledged alerts grouped by attack rule name, select Alerts > Alerts > Show Acknowledged.
To view alert acknowledgment details, see Viewing alert acknowledgment history using the Web UI.