ITOps v7.1-Release Description

Contents

  1. Alert Console Configurability
    1. Make ‘More’ fields section in Alert Console configurable at Project level
    2. Alert Report Download Improvements - Include newly added columns from 'More' section
  2. Support for Forescout
    1. Support ticket creations format specific to Forescout
    2. Ability to create correlation rules using MACID
  3. Improving alert processing
    1. Allow configuration to specify ticketing condition based on cluster size and duration
    2. Ticket created from ITOps must have source of the alert source prefixed in ticket title (short description in SNOW)
    3. Prevent auto Closure of Assigned Tickets
    4. E-mail parsing changes to avoid information loss by capturing full alert text from all channel types
    5. Ability to capture 'Closure Note' from Alert Console and Ticket details
    6. Introduce First Alert Time, Last Alert Time and changes to how Modified Time works in Alert Cluster
  4. Alert Details Page
    1. Ability to view Alert cluster information and associated information as different page
    2.  Show similar tickets in Alert details page
  5. Device Inventory
  6. ITOps Configuration Improvement
    1. Handle mapping of Severity Levels of Integrated Tools via UI
  7. Notifications
    1. See notifications of actions triggered from Alert console
  8. Support PWF integration to ITOps PAAS
  9. Alert Console Usability Improvements
    1. Alert Console Search: Ability to search the console by Alert Message, Source, Metric

Alert Console Configurability

Make ‘More’ fields section in Alert Console configurable at Project level

An ITOps Admin is enabled with the privilege to decide the fields that should be displayed in the 'More' section in the alert console so that Admin user can enable new fields from the source part of the console. In addition, ITOps Admin users will be enabled with the provision to provide the display name and display order.

Picture 50

Alert Report Download Improvements - Include newly added columns from 'More' section

Alert Report Download feature has been enhanced to download “Alert Report” as well as “Alert Processing Report”

Alert Processing Report can be downloaded by selecting a date range (not exceeding 7 days).

 

Picture 49

Support for Forescout

Support ticket creations format specific to Forescout

For any ticket created for a cluster with base alert from Forescout, following format will be followed:

This format will be followed for:

Ability to create correlation rules using MACID

ITOps is enabled with the capability to create correlation rules using MAC iD.

Improving alert processing

Allow configuration to specify ticketing condition based on cluster size and duration

ITOps Admin users will be able to use Alert Cluster Size and duration, so that once the threshold cluster size is reached within the time window, ticket will be automatically created. User will be able to specify cluster size and duration for each source. User will be able to add only one configuration per source.

Picture 51

Ticket created from ITOps must have source of the alert source prefixed in ticket title (short description in SNOW)

ITOps users will be able to view the source name in title (short description) to understand the source of the alert easily. Any ticket created from ITOPs will have source of the alert source prefixed in ticket title (short description in SNOW).

Format of the short description - [Source] [Alert Message]

Prevent auto Closure of Assigned Tickets

Tickets in 'Assigned' status will not be auto closed and must be retained in same status. The recovery alert information received must be added as a comment only. Tickets in “Assignment – In Progress” state also will be treated similar to “Assigned” status. A comment will be available stating that a recovery alert for the cluster has been received.

E-mail parsing changes to avoid information loss by capturing full alert text from all channel types

Email parsing enhancements enables capturing of complete alert related texts from all channel types. Following fields will be extracted and mapped to Alert Store in Elastic, from the alerts received from Fore Scout Counter ACT, 

Ability to capture 'Closure Note' from Alert Console and Ticket details

An ITOps user will be able to see the resolution comment in 'Closure note' field of Service now so that the user can easily understand the resolution reason. Whenever ITOPs auto closes a ticket the comment posted must be available in the 'Closure Note' field in service now.

Introduce First Alert Time, Last Alert Time and changes to how Modified Time works in Alert Cluster

ITOps Alert page is displayed with First Alert Time, Last Alert Time and other details.

Alert Details Page

Ability to view Alert cluster information and associated information as different page

ITOps user will be able to see the alert cluster details as separate page to get a comprehensive idea of the cluster and take corresponding action. Clicking on Alert Cluster ID opens alert details page as a separate tab within alert console.

 Show similar tickets in Alert details page

ITOps user will be able to view tickets which are similar to the ticket and their resolutions so that the user can easily resolve open tickets.

Device Inventory

ITOps is enhanced with the capability to add and view the list of related devices. ITOps UI enables to:

ITOps Configuration Improvement

Handle mapping of Severity Levels of Integrated Tools via UI

An ITOps Admin user will be able to map the incoming alert severity levels to SmartOps Severity Levels.

Notifications

See notifications of actions triggered from Alert console

An ITOps user will be able to view the notifications of actions triggered from alert console.

Support PWF integration to ITOps PAAS

ITOps PWF is enhanced to integrate Support PWF. SmartOps 7.0 had enabled Monitoring PWF along with ITOps. 

Monitoring and Support are integrated  two independent features. While creating a project for a customer within the Organization, an option will be available to confirm whether Support or Monitoring is required to be created

 

Alert Console Usability Improvements

Alert Console Search: Ability to search the console by Alert Message, Source, Metric

ITOps PWF enables to search the console using Alert Message, Source, and Metric. Search will be limited to base alerts.

 

Feedback

Copyright © 2021 UST Global. All Rights Reserved.