Skip to content
Release: Australia · Updated: 2026-03-12 · Official documentation · View source

Attributes in Express List Link View

The table lists the node attributes available in Link View with their icon and description.

Note: "Attribute" is a generic term that represents fields and tags found on the alerts or configuration items (CI).

Attribute nameIconDescription
Impacted service
Image omitted: tag-icon-impacted-service.png
</td><td>
Service in the Configuration Management Database \(CMDB\) impacted by an alert on a CI.
Resource
Image omitted: tag-icon-resource.png
</td><td>
Node resource that is relevant to the event. For example, Disk C, CPU-1, the name of a process, or service. Maximum length: 100 characters.
Source
Image omitted: tag-icon-source.png
</td><td>
Event monitoring software that generated the event, such as SolarWinds or SCOM. Maximum length: 100 characters.
Region
Image omitted: tag-icon-region.png
</td><td>
Predefined attribute extracted from connector payload.
Location
Image omitted: tag-icon-location.png
</td><td>
Predefined attribute extracted from connector payload.
Assignment group
Image omitted: tag-icon-assignment-group.png
</td><td>
Alert assignment group.
Environment
Image omitted: tag-icon-environment.png
</td><td>
Predefined attribute extracted from connector payload.
Metric
Image omitted: tag-icon-metric.png
</td><td>
Unique name that describes which metric data is collected.
IP address
Image omitted: tag-icon-ip-address.png
</td><td>
Predefined attribute extracted from connector payload.
CI
Image omitted: tag-icon-ci.png
</td><td>
JSON string that represents a configuration item. For example, `{"name":"SAP ORA01","type":"Oracle"}`. The CI identifier that generated the event appears in the Additional information field. Maximum length: 1000 characters.
Node
Image omitted: tag-icon-node.png
</td><td>
Node name, fully qualified domain name \(FQDN\), IP address, or MAC address that is associated with the event, such as IBM-ASSET. Maximum length: 100 characters.
Application
Image omitted: tag-icon-application.png
</td><td>
Predefined attribute extracted from connector payload.
Process
Image omitted: attribute-icon-process.jpg
</td><td>
A process or a cluster of processes running on the host that are identified by the horizontal discovery.
Component
Image omitted: attribute-icon-component.png
</td><td>
A logical part of a service instance where the alert was detected, with one component shown for each child alert.
Service
Image omitted: attribute-icon-service.png
</td><td>
Attribute extracted from the log file. The impact of this alert on the service might not be clear or defined.
Host
Image omitted: attribute-icon-host.png
</td><td>
Attribute extracted from the log file. It might not be identified in the CMBD.
User
Image omitted: attribute-icon-user.png
</td><td>
Attribute extracted from the log file.
Account
Image omitted: attribute-icon-account.png
</td><td>
Attribute extracted from the log file.
Path
Image omitted: attribute-icon-path.png
</td><td>
Path or route extracted from the log file.
Request id
Image omitted: attribute-icon-request-id.png
</td><td>
The request ID extracted from the log file.
URL
Image omitted: attribute-icon-url.png
</td><td>
Web address or URL extracted from the log file.
Detection
Image omitted: attribute-icon-detection.png
</td><td>
An identified anomaly on a metric measured by Health Log Analytics.
OtherNote: This attribute is user-defined. All the other attributes are predefined in the system.
Image omitted: tag-icon-other.png
</td><td>User-defined attribute.<strong>Note:</strong> All the other attributes are predefined in the system.</td></tr></tbody>
LinkVisual representationDescription
Solid line
Image omitted: link-view-solid-line.png
Solid line linking attributes in Link View.|Solid line linking attributes in Link View, indicating that the attributes share one or more alerts.|

|Dotted line|

Image omitted: link-view-dotted-line.png
Dotted line linking attributes in Link View.|Dotted line linking attributes in Link View, indicating that the attributes are correlated by grouping criteria.|

Parent Topic:Service Operations Workspace for ITOM reference

sndocs is an independent community mirror and is not affiliated with or endorsed by ServiceNow.

ServiceNow, the ServiceNow logo, Now, and other ServiceNow marks are trademarks and/or registered trademarks of ServiceNow, Inc., in the United States and/or other countries. Other company and product names may be trademarks of the respective companies with which they are associated.

© 2026 ServiceNow, Inc. All rights reserved.

Documentation content is redistributed under the Apache License 2.0 from the ServiceNowDocs repository.