Configure priority for aggregation policies in ITSI
Add a priority level to a notable event aggregation policy (NEAP) in ITSI to process your incoming alerts from highest to lowest priority.
-
Assign priority levels ranging from 0 to 999 to these policies, with 0 being the highest priority and 999 the lowest.
-
Once an incoming alert matches an aggregation policy, the alert is grouped into an episode for the highest ranking policy only, and prevents duplicate episodes. If multiple notable event aggregation policies share the same priority value, the alert is grouped under all applicable policies.
-
All new, imported, and existing notable event aggregation policies have a default priority of 0.
After setting your priorities, you can sort the policies on the Notable Event Aggregation Policy page by priority to quickly filter your list from high to low priority policies.
For more information on filtering criteria and action rules, see Overview of aggregation policies in ITSI.
Set up priority for an aggregation policy
-
Navigate to .
-
Select an existing policy to edit, or select Create New to define a new policy.
-
Edit the priority in the Priority field when updating an individual notable event aggregation policy.
-
Enter a numeric value between P0 and P999. 0 is the highest priority.Note: If no value is specified, the policy defaults to a priority of zero.
-
Save your changes.
Once configured, the system will automatically route notable events to the policy with the highest priority match. You can verify the routing behavior and event volume processed by your policies using the Event Analytics dashboard.
Bulk edit priority for multiple aggregation policies
- From the ITSI menu, select Configuration then Event Management then Notable Event Aggregation Policies.
- Select the checkboxes next to the notable event aggregation policies you want to modify.
-
From the bulk actions menu, select Edit Priority.
-
Enter the new priority value for the selected policies.
-
Save your changes.
Create or import a prioritized notable event aggregation policy
When you create a new policy or import an existing one, the default priority is automatically set to 0.