Monitor known process thresholds
Monitoring a tag for known limits is the most straightforward monitoring workflow. We simply want to be notified when a tag exceeds a certain limit. Note that this can be applied directly not only to process values, but also to one of the many tags we can create ourselves. For example, we could receive alerts when a calculated performance KPI drops below a certain value.
Perform a value based search for the tag that exceeds a threshold. The duration in the search can be increased to find only events where the process limit is exceeded for a longer period of time. If instead it is crucial that events shorter than the minimal allowed search duration are detected, and such events are likely to occur, you might look into the workaround for searching for short events.
Save the search so it can be turned into a monitor.
Turn the search into a monitor
Turn this search into a monitor and configure it to send out e-mail alerts. You will now receive an e-mail every time the process threshold is exceeded.
When a single tag has both a lower and an upper limit, we typically want to create two searches and monitors so we can easily differentiate between low and high value events. If that is not important to you, you can combine both conditions in the same value based search with the 'OR' logic.