Alert Policies with AggregationType via PowerShell

%3CLINGO-SUB%20id%3D%22lingo-sub-717179%22%20slang%3D%22en-US%22%3EAlert%20Policies%20with%20AggregationType%20via%20PowerShell%3C%2FLINGO-SUB%3E%3CLINGO-BODY%20id%3D%22lingo-body-717179%22%20slang%3D%22en-US%22%3E%3CP%3E%3CSPAN%3EHi%2C%3C%2FSPAN%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%3EI%20want%20to%20set%26nbsp%3BAggregationType%26nbsp%3Band%26nbsp%3BThreadType%26nbsp%3Battributes%20for%20alert%20policies(Protection%20Alerts)%20in%20Security%20%26amp%3B%20Compliance%20center%20via%20PowerShell.%26nbsp%3B%3C%2FSPAN%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%3CSPAN%3EWhen%20I%20try%20to%20do%20this%20I%20got%20the%20following%20error%3A%20(Although%20I%20could%20create%20alert%20Policies%20of%20single%20event%20type%3C%2FSPAN%3E%3CSPAN%3E)%3C%2FSPAN%3E%3CSPAN%3E%26nbsp%3B%3C%2FSPAN%3E%3CSPAN%3E%3CBR%20%2F%3E%3C%2FSPAN%3E%3CSTRONG%3ECreating%20advanced%20alert%20policies%20requires%20an%20Office%20365%20E5%20subscription%20or%20Office%20365%20E3%20subscription%20with%20an%20Office%20365%20Threat%20Intelligence%20or%20Office%20365%26nbsp%3BEquivioAnalytics%26nbsp%3Badd-on%3C%2FSTRONG%3E%26nbsp%3B%26nbsp%3B%3C%2FP%3E%3CP%3E%3CSTRONG%3Esubscription%20for%20your%20organization.%20With%20your%20current%20subscription%2C%20only%20single%20event%20alert%20can%20be%20created.%26nbsp%3B%3C%2FSTRONG%3E%3C%2FP%3E%3CP%3E%3CSPAN%3ETried%20with%20Office%20365%20E3%20subscription%20with%20Threat%20Intelligence%20and%20Office%20365%20E5%20subscription%20too.%20Yet%20the%20Issue%20persists%3C%2FSPAN%3E%3CSPAN%3E%3CBR%20%2F%3E%3C%2FSPAN%3E%3CSPAN%3EIs%20there%20any%20other%20way%20to%20achieve%20this%20%3F%3C%2FSPAN%3E%3CSPAN%3E%3CBR%20%2F%3E%3C%2FSPAN%3E%3C%2FP%3E%3CP%3E%26nbsp%3B%3C%2FP%3E%3CP%3E%3CSPAN%3EThanks%20in%20advance%2C%3C%2FSPAN%3E%3CSPAN%3E%26nbsp%3B%3CBR%20%2F%3E%3C%2FSPAN%3E%3CSPAN%3EMaerona%26nbsp%3BWynn%3C%2FSPAN%3E%3C%2FP%3E%3C%2FLINGO-BODY%3E%3CLINGO-LABS%20id%3D%22lingo-labs-717179%22%20slang%3D%22en-US%22%3E%3CLINGO-LABEL%3EChange%20Alerts%3C%2FLINGO-LABEL%3E%3C%2FLINGO-LABS%3E
Highlighted
New Contributor

Hi, 

I want to set AggregationType and ThreadType attributes for alert policies(Protection Alerts) in Security & Compliance center via PowerShell.  

When I try to do this I got the following error: (Although I could create alert Policies of single event type) 
Creating advanced alert policies requires an Office 365 E5 subscription or Office 365 E3 subscription with an Office 365 Threat Intelligence or Office 365 EquivioAnalytics add-on  

subscription for your organization. With your current subscription, only single event alert can be created. 

Tried with Office 365 E3 subscription with Threat Intelligence and Office 365 E5 subscription too. Yet the Issue persists
Is there any other way to achieve this ?

 

Thanks in advance, 
Maerona Wynn

0 Replies