---
sourceDocument: Australia IT Operations Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/it-operations-management

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia IT Operations Management

ft:clusterId :

    - itom

bundleId :

    - itom

workflow :

    - Technology


---

# Create an alert correlation rule

# Create an alert correlation rule {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 1 Minute Lesedauer

Create an alert correlation rule to designate primary and secondary alerts. The primary alert is identified as the root cause of the alert group and the secondary alerts are grouped under the primary alert.

## Vorbereitungen

Role required: evt_mgmt_admin

## Prozedur

1. Navigate to AllEvent ManagementRulesAlert Correlation Rules.
2. Click New.
3. On the form, fill in the fields.  
   For information on the fields, see [Alert correlation rule form](https://servicenow-prod.fluidtopics.net/ORc2gZ6ZOlH~je7e3fTiag "Manage the fields that define how alerts are correlated and grouped.").
4. Select Submit.

## Ergebnisse

A rule-based alert group is created when a new alert is generated or when the status of an existing alert changes from Closed or Flapping to Open or Reopened, provided the filter criteria are matched.

