Aug 04 2023 12:04 AM
Hi everyone,
we are using the mail alerts for opening tickets in our ticket system.
Every mail = one ticket
We have selected "Send only one notification per incident" for this.
But we are getting a mail for every alert in the incident.
This is one incident.
We can merge the tickets - but this has do be done manually and takes 5 seconds for each merge.
Is there any other place we might have set this?
At the moment i am looking at:Settings -> Microsoft 365 Defender -> Email notifications
BR
Stephan
Aug 04 2023 01:45 AM
SolutionAug 04 2023 02:41 AM - edited Aug 04 2023 02:46 AM
I think this is it! We have it for alerts AND incidents :)
I disabled the alert rule for our shared mailbox - maybe this was it.
Thanks
In this case it was an endpoint alert.
We did select all of them.
Aug 07 2023 03:19 AM