---
sourceDocument: Australia IT Operations Management
sourceDocumentLink: https://servicenow-prod.fluidtopics.net/r/de-DE/it-operations-management

 Release :

    - australia

ft:locale :

    - de-DE

ft:publication_title :

    - Australia IT Operations Management

ft:clusterId :

    - itom

bundleId :

    - itom

workflow :

    - Technology


---

# Viewing links between alerts in alert groups in Express List

# Viewing links between alerts in alert groups in Express List {#ariaid-title1}

* Freigeben Version: Australia
* 
* Aktualisiert 12. März 2026
* 
* ![](https://www.servicenow.com/docs/portal-asset/ico-clock) 2 Minuten Lesedauer

Gain a better understanding of the relationships between alerts in alert groups in the Express List by using Link View. Link View offers a visual representation of the relationships between the alerts in a group.
When Event Management generates an alert group, Link View shows how the attributes of the alerts in the group are linked. The colored tags represent
configuration
items (CIs) and other environment items in relation to the
alerts.

The information shown in Link View is available without the need for a populated Configuration Management Database (CMDB). However, when the CMDB is populated, Link View offers additional value by providing the probable cause of the alerts and the service that the alert group impacts.  
Abbildung : 1. Sample alert group in Link View

You can focus on your areas of interest by dragging the nodes in Link View to different positions. When you refresh an alert group, rearranged nodes appear in their original position again. Therefore, Link View is not refreshed
automatically, but waits for you to do so manually.

If an alert on a CI impacts a service in the Configuration Management Database (CMDB), Link View shows the impacted service, enabling you to view it at a glance for quick triage.

A stacked node indicates that multiple nodes were mapped for the same tag. When the same key-value pair appears in more than one alert, the corresponding node is shown with a badge. For example, when the same key-value pair appears
in two alerts, the badge on the node shows the number 2, as seen on the Payment tracker node in the sample alert group figure. When a node has no badge, the key-value pair
appears in only one alert. An active change request, a
probable cause of the alert, is marked by a Change badge.  
Abbildung : 2. Node with a change badge

The Link View legend lists the meaning of the symbols and colors used and
enables you to toggle between hiding and showing types
of tags to reduce noise. In addition, the legend describes the meaning of the various lines linking the alert attributes. Attributes linked by a solid line share one or more alerts, whereas attributes linked by a dotted line are
correlated by grouping criteria. For a description of each tag, see [Attributes in Express List Link View](https://servicenow-prod.fluidtopics.net/pD2_32M3foxKRobAWo2N6A "The table lists the node attributes available in Link View with their icon and description."). Hovering over a node displays a tooltip that includes the name of the tag, its class, its severity, the number of alerts in which it appeared, and whether the alert is primary or
secondary or the probable cause of the alert, if applicable.  
Abbildung : 3. Node tooltip  
Currently, Link View is supported for several alert groups. For more information, see the following topics:

* [Viewing links between alerts in tag-based alert groups](https://servicenow-prod.fluidtopics.net/QVklpzR34iHlV31qD5uPEQ "View the connections between alerts in a tag-based alert group in Express List by using Link View. Link View shows how the attributes of the alerts in the group are linked with each other.")
* [Viewing links between alerts in rules-based alert groups](https://servicenow-prod.fluidtopics.net/dgV3AexnGGkOLvFVlTvvYw "View the connections between alerts in a rules-based alert group in Express List by using Link View. Link View shows how the attributes of the alerts in the group are linked with each other.")
* [Viewing links between alerts in CMDB-based alert groups](https://servicenow-prod.fluidtopics.net/STmsHT0Mx_WyWAugH1Fevw "View the connections between alerts in alert groups in Express List that were created based on the proximity of Configuration Items (CIs) in the Configuration Management Database (CMDB). Link View shows how the attributes of the alerts in the group are linked with each other.")
* [Viewing links between alerts in network traffic-based alert groups](https://servicenow-prod.fluidtopics.net/U9p2FwEdjgj~aLn75phO8Q "View the connections between alerts in network traffic-based alert groups in Express List by using Link View. Network traffic-based alert groups are created by analyzing network traffic connections between processes across hosts.")
* [Viewing links between alerts in log analytics-based alert groups](https://servicenow-prod.fluidtopics.net/ZLGoWIswegmfnzKdjTTnRA "Use Link View in Express List to see why alerts in a log analytics-based alert group are correlated together through the visualization of shared attributes.")
* [Viewing links between alerts in mixed alert groups](https://servicenow-prod.fluidtopics.net/GcHO1cPWeiut_dVVckeCkQ "View the connections between alerts in mixed alert groups in Express List by using Link View. Link View shows how the attributes of the alerts in the group are linked with each other.")
{#el-link-view__ul_nl4_qph_mbc}
**Zugehörige Tasks**   

* [View links between alerts in a group in Express List](https://servicenow-prod.fluidtopics.net/ojvGTlwr3oFWXFrgid6nxA "When an alert group is generated, understand better how the alerts in the group are linked by viewing a visual representation of their relationships in Link View.")

