LogicMonitor seeks to disrupt AI landscape with $800M strategic investment at $2.4B valuation to revolutionize data centers.

Learn More

Traffic Alert Rule

Last updated on 02 October, 2024

You can set traffic alert rules for the NetFlow resources to receive notifications when traffic for a NetFlow resource exceeds the set limit, or if there is no traffic for a defined time, and so on. In addition, you can apply traffic alert rules on multiple NetFlow resources.

Viewing Traffic Alert Rule at Group Level

  1. Navigate to Resources > Resources > select the required Netflow resource group > Traffic tab.
  2. On the Traffic tab, select Alert Rules in the upper-left corner.
  3. From the Traffic Alert panel, select This Group Only, to view the alerts set on that NetFlow resource.

    The Traffic Alerts panel is displayed.

    Traffic rule modal
  4. From the Traffic Alert Rules panel, select one of the following:
    • This Group Only – To view the alerts set on the selected NetFlow resources added in the selected NetFlow resource group.
    • All Traffic Alert Rules – To view or edit all the traffic rules added to the resources in the selected resource group.

      Traffic all alert rules option

Viewing Traffic Alert Rule at Resource Level

  1. Navigate to Resources > Resources > select the resource > Traffic tab.
  2. On the Traffic tab, select Alert Rules in the upper-left corner.
  3. From the Traffic Alert panel, select This Resource Only, to view the alerts set on that NetFlow resource.

    Trafiic alert modal all alert option

Adding Traffic Alert Rule

  1. Navigate to Resources > NetFlow Group or NetFlow Resources > select the required NetFlow resource group or NetFlow resource.
  2. On the Traffic tab, select Alert Rules in the upper-left corner
  3. Select Add Traffic Alert Rule to add traffic rules.

    All alert rules option
  1. On the Create Traffic Alert Rule page, add the following information in the Resources section:
    • Name of Alert Rule – (Required) Enter a name for the traffic alert rule.
    • Description – Provide a description of the traffic alert rule.
    • NetFlow Resources – (Required) Enter the NetFlow resources on which you want to add the traffic alert rule.

Note: You will only see NetFlow-enabled resources in the list.



Datapoint step of Traffic alert rule wizard

  1. Select Next: Datapoint, to add Datapoint details.
  2. On the Datapoint page, you can set the following filters for the Datapoints:
    • Saved Views – You can set the filters based on saved views.
    • Add Filters – You can add filters like Direction, IP version, Protocols, and so on.
    • Clear – You can select Clear to clear the selection. 
    • Clear After – You can clear the alert after the required consecutive polls by setting the required time.



      For more information, see Filtering Alerts.
  3. Select Next: Threshold.
  4. On the Threshold page, you can select the following options:
    • Traffic Type:
      • Ingress – To monitor the incoming traffic flow.
      • Egress – To monitor the outgoing traffic flow.
    • Schedule time – You can select the time for monitoring the traffic.
      Note: Select All day, to monitor the traffic throughout the day.
    • In the When sum of traffic is option, you can set different threshold levels based on your requirements by entering the required details.

      Traffic type option
  5. Select Next: Finish.
  1. Review the details on the Finish page and select Save Rule.

Note: You can configure a maximum of 25 alerts.

Filtering Alerts

You can use the filtered NetFlow data for alert evaluation. Predefined filters are available, along with the ability to save sets of commonly used filter criteria for convenient future access.

Alert filters option

Saving and Clearing Filter Views

Saving a Filter View

You can select Saved Views to select the saved filter. Saved filter views are associated with individual user accounts and NetFlow resources. In addition, saved filters are not available globally.

Saving traffic alert option

Clearing a Filter View

You can select Clear to clear the filter section.

Note: Each poll is for 5 minutes.

Filter by option
In This Article