This topic explains how Security Analytics forwards a correlation rule to each ESA service in a correlation group. In a correlation group, each ESA service must run the same set of rules. When you add a rule to a correlation group, Security Analytics forwards the rule to each ESA in the group.
To access the deployments:
-
In the Security Analytics menu, select Alerts > Configure.
The Configure view is displayed with the Rules tab open.
-
In the options panel, under Deployments, select a deployment.
The Deployment view is displayed.
Edit a Deployment
-
In the options panel, under Deployments, select a deployment.
The Deployment view is displayed.
-
The deployment name is made available for editing.
Delete a Deployment
Previous Topic:Edit or Delete Rule in a Deployment
Next Topic:Show Updates to a Deployment
You are here
Table of Contents > Deploy Rules to Run on ESA > Additional Procedures > Edit or Delete a Deployment