Hello,We are using osTicket in a SIEM solution, osTicket grabs the security events from a mailbox and created tickets for these.We were wondering if it is possible to create a ruleset or such to filter events before they are converted to a ticket?For example: I get a false alert in the mailbox, osTicket creates a new ticket, I flag the ticket as false positive based on some words or rules and the next time the same alert occurs => osTicket creates a ticket but flags them as false positive (meaning we should not directly take a look at it).I agree that you should filter at the source of the events but in some cases you also want to filter at the creation of the tickets.Michiel