Little bit confused while making an alerts

Hi Team,

Greetings!

I'm trying to make an alert based on the criteria below on those 11 nodes, we monitor with SW agents.

1. RAM Utilization =>96 Warning

2. RAM Utilization =>98 Critical

3. CPU Utilization => 80 Warning

4. CPU Utilization => 90 Critical

5. Disk Utilization => 75 Warning

6. Disk Utilization => 85 Critical

7. Any nodes down alert

I tried to make a few alerts to achieve the above requirements, but as per my knowledge, we can't achieve them in one alert. But when I create an alert for disk utilization, it gives me the wrong alert, maybe I used the wrong field.

I have not tested the alert for RAM and CPU and node down alert yet. Can you please tell me the best possible way to achieve above mentioned requirements? We have NTA & NPM in our SW environment.

Parents
  • I have to genuinely question the intent to ensure what you want.

    Are these intended for if they occur at the same time or is this a general criteria? do you want to alert on the node in question being in warning/critical?

    If the latter you could do this with a single alert (or 2 at most, one for warnings and one for critical using an alert action as a template for both) for everything except node down by having any of these criteria trigger the alert . Just have the fields output in the body and caption/cpu/memory in the subject line.

    I am a strong supporter of less created alerts not more, for reasons of organization and growth. I also recommend creating a custom property for alerts with the team name for who owns the alert, otherwise you end up in alert management messes quickly.

    as    notes, this isn't a single solution situation.

Reply
  • I have to genuinely question the intent to ensure what you want.

    Are these intended for if they occur at the same time or is this a general criteria? do you want to alert on the node in question being in warning/critical?

    If the latter you could do this with a single alert (or 2 at most, one for warnings and one for critical using an alert action as a template for both) for everything except node down by having any of these criteria trigger the alert . Just have the fields output in the body and caption/cpu/memory in the subject line.

    I am a strong supporter of less created alerts not more, for reasons of organization and growth. I also recommend creating a custom property for alerts with the team name for who owns the alert, otherwise you end up in alert management messes quickly.

    as    notes, this isn't a single solution situation.

Children
No Data