Correlation Search, you throttling them based on fields for a Window duration. Where does Splunk store the fields ans the values it has throttled and can it be searched from the web app?
Thanks