Incident Reports

You can create incident reports to obtain information about incidents.

The following types of incident reports are available:

  • The Incident Summary Report: This is a historical report that summarizes information about all alerts and incidents for a specified category, such as alarm state, alarm owner, asset type, date range, severity levels, and affected asset groups.

  • The Incident Detail Report: This contains detailed information about one or more incidents. In addition to a summary, the report includes an audit trail consisting of state-change annotations, alert annotations, suggested-fix annotations, comment annotations, operation annotations.

    Each incident has four pages, after the summary page. They are:

    • Details of the incident

    • Suggested actions, if any

    • Alerts History

    • Any annotations that are associated with the incident

When you create a report, you can save the report as a template, or you can generate the report. After a report is created, you can view the report, re-run the report to get updated information, or save it as a template.

Creating Incident Reports

Procedure to create an Incident Summary Report.

  1. Select Reports in the Navigation pane.

  2. Select Incident Reports, and then click Incident Summary Report.

  3. Select Create Incident Summary Report from the Actions pane.

  4. Define the report parameters:

    • Report Name: The name of the report.

    • Description: A description of the report.

    • Schedule: Select Create Schedule to schedule the report.

    • Output Format: Select the output format of the report result. CSV and PDF formats are available.

    • Select Assets: Select either all assets or specific assets.

  5. Click Next to specify the Incident Parameters.

  6. Define the incident parameters by providing the following information:

    • To create a historical report of all incidents and the date that each incident was detected, select All Creation Dates.

    • To create a summary report for incidents detected during a specific date range, select Range of Creation Dates, then enter the beginning date in the From field and the ending date in the To field.

    • To filter by severity level, owner, or state, highlight the fields to include in the report. Use Ctrl+Enter to select multiple options.

    • To filter by one or more criteria, add the criterion in the Description Contains field. Use a comma-delimited list for multiple criteria. For example, FileSystemUsage or FileSystemUsage, SwapUsage.

  7. Click Next to display the Schedule.

  8. Select a desired schedule to run and generate the report.

  9. Click Next to display the Summary.

  10. Review the summary and select one of the options as required:

    • Save Template and Close: Saves the report as a template and closes the wizard. You can use the report template to generate the report later.

    • Run and Close: Runs the report and closes the wizard window.

    The report results are displayed under the Report Results in the center pane.

To create an Incident Detail Report, perform the following steps:

  1. Select Reports in the Navigation pane.
  2. Select Incident Reports, and then click Incident Detail Report.
  3. Select Create Incident Detail Report from the Actions pane.
  4. Define the report parameters:
    • Report Name: The name of the report.

    • Description: A description of the report.

    • Output Format: Select the output format of the report result. CSV and PDF formats are available.

  5. Click Next to display the Summary.
  6. Review the summary and select Save Template and Close. This saves the report as a template and closes the wizard. You can use the report template to generate the report later.

    The report results are displayed under the Report Results in the center pane.

Note:

The Incident Compliance Report refers to the Microsoft Windows operating system incidents, while Incident Summary Report and Incident Detail Report refers to alerts and alarms that are raised by Oracle Enterprise Manager Ops Center incidents.