Correlation rules can report patterns of events, helping you to identify suspicious activities or dangerous conditions in your environment. Each time events match a correlation rule's criteria, CA Enterprise Log Manager creates an incident.
You can perform the following correlation rule tasks if you have the Administrator role:
This section contains the following topics:
Using Pre-Defined Correlation Rules
Using Keyed Lists with Correlation Rules
Example: Creating a CSV File for Testing
How to Design and Apply Incident Notifications
Copyright © 2011 CA. All rights reserved. | Email CA Technologies about this topic |