On the final stages of rebuilding solarwinds, but I am a little annoyed. I will explain what we have currently and what I did...Though I don't fully understand why we are receiving random phantom alerts when I have not set them up. (I turned on three alerts - one for CPU, one for RAM and one for HDD. Really simple stuff. I set out a small template that would be for CPU, RAM and HDD. But it came back every 30 ish minutes with a random email that I KNOW I did not setup.) I have to also say, this is the one thing that I actually hate more than anything else: is our alerting. And for the last few weeks it's driven me insane to no end.
So, the current setup is based as thus...
Lots of compartmental alerts (one for OOH, one for ESXL, one for x, y, z.) It equates to about 100 + alerts.
I wanted to change this and have a few really large alerts that would cover all of this.
So I set out the following:
- One for high CPU (95%) and then I drilled down and did conditional statements for SQL, ESXL, ect, ect. It's a lot larger, but I don't want that many alerts as I think it's stupid and I like things cut down.
So, usually we receive about 50 ish with the current setup. When I turned my alerting on, I got about 200 +. Which I kinda understand (I think it does the conditional statements a linear fashion maybe. That's my only theory on it) but IDK. In my brain I think that somewhere I can make it so much better, but no matter what I try I still cannot reduce the amount of alerts and make it more efficient. It's driving me insane actually.