<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How to correlate events in ITSI ? in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/How-to-correlate-events-in-ITSI/m-p/426364#M122129</link>
    <description>&lt;P&gt;How to correlate events in ITSI ?  New to Splunk ITSI &lt;/P&gt;

&lt;P&gt;Example CPU and DB alerts collection based on CI match .&lt;/P&gt;

&lt;P&gt;Currently using the sandbox - trail . &lt;/P&gt;</description>
    <pubDate>Wed, 04 Jul 2018 11:02:05 GMT</pubDate>
    <dc:creator>anurag0011</dc:creator>
    <dc:date>2018-07-04T11:02:05Z</dc:date>
    <item>
      <title>How to correlate events in ITSI ?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/How-to-correlate-events-in-ITSI/m-p/426364#M122129</link>
      <description>&lt;P&gt;How to correlate events in ITSI ?  New to Splunk ITSI &lt;/P&gt;

&lt;P&gt;Example CPU and DB alerts collection based on CI match .&lt;/P&gt;

&lt;P&gt;Currently using the sandbox - trail . &lt;/P&gt;</description>
      <pubDate>Wed, 04 Jul 2018 11:02:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/How-to-correlate-events-in-ITSI/m-p/426364#M122129</guid>
      <dc:creator>anurag0011</dc:creator>
      <dc:date>2018-07-04T11:02:05Z</dc:date>
    </item>
    <item>
      <title>Re: How to correlate events in ITSI ?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/How-to-correlate-events-in-ITSI/m-p/426365#M122130</link>
      <description>&lt;P&gt;Take a look at Correlation searches: &lt;A href="http://docs.splunk.com/Documentation/ITSI/3.1.2/User/Createcorrelationsearch"&gt;http://docs.splunk.com/Documentation/ITSI/3.1.2/User/Createcorrelationsearch&lt;/A&gt;&lt;/P&gt;

&lt;P&gt;Or Multi-KPI alerts: &lt;A href="http://docs.splunk.com/Documentation/ITSI/3.1.2/User/Createmulti-KPIalerts"&gt;http://docs.splunk.com/Documentation/ITSI/3.1.2/User/Createmulti-KPIalerts&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 05 Jul 2018 14:26:38 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/How-to-correlate-events-in-ITSI/m-p/426365#M122130</guid>
      <dc:creator>kmorris_splunk</dc:creator>
      <dc:date>2018-07-05T14:26:38Z</dc:date>
    </item>
    <item>
      <title>Re: How to correlate events in ITSI ?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/How-to-correlate-events-in-ITSI/m-p/426366#M122131</link>
      <description>&lt;P&gt;Thank you &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 06 Jul 2018 04:39:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/How-to-correlate-events-in-ITSI/m-p/426366#M122131</guid>
      <dc:creator>anurag0011</dc:creator>
      <dc:date>2018-07-06T04:39:05Z</dc:date>
    </item>
  </channel>
</rss>

