From 92b4bf3cf016d1f5210d1d92e6e3dd9e50144b6a Mon Sep 17 00:00:00 2001 From: Joey Caparas Date: Fri, 2 Jun 2017 10:59:21 -0700 Subject: [PATCH] fix note --- .../manage-alerts-windows-defender-advanced-threat-protection.md | 1 + 1 file changed, 1 insertion(+) diff --git a/windows/threat-protection/windows-defender-atp/manage-alerts-windows-defender-advanced-threat-protection.md b/windows/threat-protection/windows-defender-atp/manage-alerts-windows-defender-advanced-threat-protection.md index 4aafb1a1f2..38cebf0d09 100644 --- a/windows/threat-protection/windows-defender-atp/manage-alerts-windows-defender-advanced-threat-protection.md +++ b/windows/threat-protection/windows-defender-atp/manage-alerts-windows-defender-advanced-threat-protection.md @@ -85,6 +85,7 @@ The context of the rule lets you tailor the queue to ensure that only alerts you - Alert title - Indicator of compromise (IOC) - Suppression conditions + > [!NOTE] > The SHA1 of the alert cannot be modified 5. Specify the action and scope on the alert. You can automatically resolve an alert or hide it from the portal. Alerts that are automatically resolved will appear in the resolved section of the alerts queue. You can also specify to suppress the alert on the machine only or the whole organization.