Why is this a High severity Alert with Suspicious Activity as classification?

%3CLINGO-SUB%20id%3D%22lingo-sub-2894799%22%20slang%3D%22en-US%22%3EWhy%20is%20this%20a%20High%20severity%20Alert%20with%20Suspicious%20Activity%20as%20classification%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2894799%22%20slang%3D%22en-US%22%3E%3CH1%20class%3D%22AdPageHeader-title%20AdPageHeader--hasParent%22%20title%3D%22System%20alert%3A%20Network%20Requirements%20Update%20for%20API%20Connectors%22%20id%3D%22toc-hId-1476830581%22%20id%3D%22toc-hId-1476885296%22%20id%3D%22toc-hId-1476885296%22%20id%3D%22toc-hId-1476885296%22%20id%3D%22toc-hId-1476885296%22%20id%3D%22toc-hId-1476885296%22%3ESystem%20alert%3A%20Network%20Requirements%20Update%20for%20API%20Connectors%3C%2FH1%3E%0A%3CP%3E%26nbsp%3B%3C%2FP%3E%0A%3CP%3EThere%20must%20be%20better%20ways%20of%20allowing%20customers%20to%20deal%20with%20Connector-updates%3F%3C%2FP%3E%0A%3CP%3EI%20also%20couldn't%20find%20a%20Policy%20or%20Template%20in%20which%20I%20could%20tune%2Fmanipulate%20severity%2C%20threshold%20or%20turning%20it%20off%3F%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-2894799%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EApp%20Connectors%3C%2FLINGO-LABEL%3E%3CLINGO-LABEL%3ECloud%20App%20Security%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E%3CLINGO-SUB%20id%3D%22lingo-sub-2911683%22%20slang%3D%22en-US%22%3ERe%3A%20Why%20is%20this%20a%20High%20severity%20Alert%20with%20Suspicious%20Activity%20as%20classification%3F%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-2911683%22%20slang%3D%22en-US%22%3E%3CP%3E%3CA%20href%3D%22https%3A%2F%2Ftechcommunity.microsoft.com%2Ft5%2Fuser%2Fviewprofilepage%2Fuser-id%2F217817%22%20target%3D%22_blank%22%3E%40Ingemar%20Josefsson%3C%2FA%3E%26nbsp%3B%3CBR%20%2F%3E%3CBR%20%2F%3EI%20have%20now%20had%203%20of%20these%20annoying%20alerts!%3CBR%20%2F%3E%3CBR%20%2F%3E14-10-2021%26nbsp%3B10%3A05PM%3C%2FP%3E%3CP%3E20-10-2021%26nbsp%3B11%3A52PM%3C%2FP%3E%3CP%3E28-10-2021%205.59PM%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3EWe%20have%20alerts%20setup%20for%20%22Severity%3A%20HIGH%22%2C%20which%20generate%20tickets%20etc%2C%20and%20Wake%20people%20up%20who%20are%20On-Call!!!%3CBR%20%2F%3ECan%20these%20not%20be%20sent%20via%20email%20as%20normal%20notifications%2C%20instead%20of%20%22High%20severity%22%20Alert%20with%20%22Suspicious%20Activity%22%3CBR%20%2F%3E%3CBR%20%2F%3EIf%20these%20continue%2C%20I%20will%20be%20forced%20to%20turn%20off%20the%20alerts..%20which%20really%20defeats%20the%20purpose%3F%3F!!%3C%2FP%3E%3C%2FLINGO-BODY%3E
Microsoft

System alert: Network Requirements Update for API Connectors

 

There must be better ways of allowing customers to deal with Connector-updates?

I also couldn't find a Policy or Template in which I could tune/manipulate severity, threshold or turning it off?

1 Reply

@Ingemar Josefsson 

I have now had 3 of these annoying alerts!

14-10-2021 10:05PM

20-10-2021 11:52PM

28-10-2021 5.59PM

 

We have alerts setup for "Severity: HIGH", which generate tickets etc, and Wake people up who are On-Call!!!
Can these not be sent via email as normal notifications, instead of "High severity" Alert with "Suspicious Activity"

If these continue, I will be forced to turn off the alerts.. which really defeats the purpose??!!