Correlation rules can report patterns of events, helping you to identify suspicious activities or dangerous conditions in your environment. Each time events match a correlation rule's criteria, CA User Activity Reporting Module creates an incident.
You can perform the following correlation rule tasks if you have the Administrator role:
This section contains the following topics:
Using Pre-Defined Correlation Rules
Using Keyed Lists with Correlation Rules
Example: Creating a CSV File for Testing
How to Design and Apply Incident Notifications
Copyright © 2013 CA.
All rights reserved.
|
|