foxsec-pipeline
foxsec-pipeline copied to clipboard
Filter out amo_cloud_submissions alerts from PostProcessing's alert summary analysis
trafficstars
Add support for filtering out certain alerts within the alert summary analysis in post processing. Then, filter out amo_cloud_submission alerts specifically.
@ajvb I'm wondering if we should rephrase this issue and instead of whitelisting certain users, just add the ability to filter certain alerts in post processing analysis?
In this case these alerts aren't really indicative of an issue and are more informational, so I'm not sure if it makes sense to take them into account in the anomaly detection.
@ameihm0912 That sounds good to me. Changing.