Correlation rules can report patterns of events, helping you to identify suspicious activities or dangerous conditions in your environment. Each time events match a correlation rule's criteria, CA User Activity Reporting Module creates an incident.
You can perform the following correlation rule tasks if you have the Administrator role:
This section contains the following topics:
Using Pre-Defined Correlation Rules
Using Keyed Lists with Correlation Rules
Example: Creating a CSV File for Testing
How to Design and Apply Incident Notifications
| Copyright © 2011 CA. All rights reserved. | Tell Technical Publications how we can improve this information |