Skip to content
    October 1, 2024

    Now Available: SIEM Cloud Connector Status Notifications

    The reliability and high availability of your security solution are important for the continued coverage of your environment. Operational system errors, such as the disconnection of log collection and streaming to your SIEM, can result in critical visibility gaps. Without logs, you have no insight into ongoing threats or the ability to detect and respond to them.

    "Ideally, logs should be stored for a period of one year, subject to storage space constraints. In the middle of an incident is not the time to find out that you were not logging useful data, or that you were not retaining that data for long enough to thoroughly investigate the incident.”  – Scott Gee, AHA deputy national advisor for cybersecurity and risk, IndustryIntel

    Blumira is committed to providing transparency and visibility into your streaming connection status, providing notifications whenever your Cloud Connector integration isn’t working as expected so you can take action and restore connectivity as soon as possible.

    Now you can turn on notifications to receive updates on your Cloud Connector integration status.

    What Do These New System Notifications Mean?

    Cloud Connector errors and recoveries

    • Checks every 5 to 10 minutes
    • Notifies if a change happens: whether experiencing an error state or going back to “OK”

    Cloud Connector persistent errors

    • Renotifies once per day if still in error state
    • Timing is every 24 hours after initial error state

    Cloud Connector failure to complete initialization

    • One-time notification, will not re-notify
    • Sent out 24 hours after a CC is created if it is still initializing

    You can easily configure your settings by logging into our application and navigating to Settings > Notification Settings.

    Learn more about Cloud Connector health notifications in our support article. 

    For MSPs: How to Turn on Feature

    We recommend that administrator users in your NFR account and sub-accounts enable these new notifications, which are configured per user and not at the account level. Ensure that at least one user with access to all your sub-accounts can receive these alerts. 

    If you use the Blumira Responder role for a ticketing user to receive notifications about your sub-accounts, ensure that you turn on these notifications for that ticketing user. See this support article for more information about editing user settings.

    If you received a Cloud Connector system notification, we recommend resetting your Cloud Connector integration. Follow our instructions in our support articles on how to set up your cloud integrations.

    Automation, Visibility & Excellence in Customer Experience

    Blumira's product and engineering teams continue to build more real-time automation into our platform to reduce the need for human intervention and to give you full visibility into what's connected. 

    We always want to make sure you can connect as many integrations as possible, and if anything does go wrong, our support team will reach out in our industry-leading amount of time to help you get up and running.

    Learn more about our other latest updates, including:

    Blumira’s platform detects early signs of an attack and helps you respond faster to reduce its impact to your organization, preventing a data breach. Visit blumira.com/xdr-trial

    Tag(s): Product Updates , Blog

    Thu Pham

    Thu has over 15 years of experience in the information security and technology industries. Prior to joining Blumira, she held both content and product marketing roles at Duo Security, leading go-to-market (GTM) and messaging for the portfolio solution Cisco Zero Trust. She holds a bachelor of science degree in...

    More from the blog

    View All Posts