Schedule to generate a search report in the background
Use the Report feature to run one-time or scheduled event log searches in the background and generate reports for analysis and compliance purposes.
You can modify or cancel the scheduled report at any time. You can also modify a one-time search query to be a recurring search.
-
You can schedule to generate reports only for historical events.
-
You can opt to get alerts on reports that have started, completed, or have failed.
Before you begin
Follow these steps to schedule a search and generate report:
Procedure
Step 1 | From the Security Cloud Control Home page, click Firewall. |
Step 2 | In the navigation bar, choose . |
Step 3 | Click the Historical tab to view historical events. |
Step 4 | Type the search query in the search bar. |
Step 5 | Click the Search drop-down and choose Schedule Report. |
Step 6 | (Optional) Enter a name for the report to identify it. |
Step 7 | The Generate report now check box is checked by default. When checked, the report generation starts upon saving. |
Step 8 | Check the Setup recurring schedule check box and configure these settings:
|
Step 9 | Confirm the scheduled search criteria at the bottom of the window. Click Schedule and Generate Now. If you did not opt for the search to start immediately, click Schedule Report. Scheduled search reports are available to view for up to seven days before Security Cloud Control automatically deletes them. |
The scheduled search is created and will generate reports according to the specified frequency. If you opted to generate the report immediately, the initial report generation begins upon saving.