Comments
-
Anything happening here ??
-
As I am looking at this from a Network administrators view point i actually like option one better my problem in this is that, when monitoring a network in a group you are bound to have nodes (switches or routers) with important interfaces (uplink to unmonitored nodes or other important resources) but if one of those…
-
Please add extra monitoring for Palo Alto ASAP we have a lot of them, and currently we cant even display all interface IPs
-
Hmm the ${N=Generic;M=Date;F=Date} is defined as the short date format but the entry comes in as "9. november 2018" not very short IMHO short date format should be 09.11.2018
-
I am well aware of the meaning of source ports. I only pointed out that some Flow applications can in some situations assign the application to the source port. Witch is rather stupid given that the source port nearly never defines the application. But I think I have found it out my self, and is doesn't seem like there is…
-
Should i use another format for my Custom Property than "Date/Time" I cant find a "current date" variable that works in it. Regards Jens
-
Ok but it is the node that should set the custom status, but it is something else that should trigger it !!
-
I linked to this discussion and now they have mentioned the bug thx
-
That exactly the procedure I have been using , other than the newest documentation says that the "-" has to be removed
-
Yeah would be a solution but right now i cant get the Alert to work. It does not seem that the ${N=Generic;M=Date;F=Date} Is working, right now it only seems like I can choose a date. Anybody know of another way to set a date in custom properties to the current date? Regards Jens
-
So what you are saying is that no matter what NTA will choose the destination port as the application port? The reason I am interested is that we communicate no many nonstandard ports, on some of our systems the engineer setting up the system can freely choose what port to use. That makes it hard for me to determine if the…
-
Anybody?? The way Scrutinizer chooses what application to register a flow under is by looking at the source and destination ports, of the bat it will choose the lowest of them, but it also checks its "well known port repository"(it is called monitored ports i NTA) and if the lowest port is not in the "well known port…
-
But when you take and subtract the NodeIDs that has "Node removed" event in the same timeframe the result must be the real nodes added Here is what i ended up with: SELECT A.EventTime, A.NetworkNode, A.Message, B.Name, B.IPAddress, B.Department, B.endk_devicetype, B.endk_ELnetområde, B.endk_fysiskplacering FROM ( SELECT…
-
I have found the explanation for the error and it doesn't look good Error adding "Set Custom Status" Action to an Alert - SolarWinds Worldwide, LLC. Help and Support It has to be a Node alert that uses the "set custom status" trigger!! that does not make sence to me as the node most likely already is the parent, and the…
-
Yes I have opened a case for it Case # - 00053297
-
Hi OK thanks for the information I will do just that then, thought that it was me who had misunderstood something Regards Jens
-
My problem is that I dont see any Icons in Network Atlas. The case you linked to they clearly states that they see icons in Network Atlas fine but not on the webserver. Regards Jens
-
Our solution will be the one you suggested with an APE HA couple in the enclave. We will handle the problem with ensuring the Enclave system is up to date with Quarterly procedures describing how to compare the Enclave nodes in the Corp system and the nodes in the Enclave system. As it is now we rarely logon to the Enclave…
-
That SLX DB you are talking about, does that "syncronice" 2 databases ? and if it is can it be run scheduled ?
-
Interesting! But do you have any visibility in case of an isolation, you cant have a webserver connected to the APE can you?, and what of the database where is that located?
-
Sound like and interresting idea to pull a AWS out of the Enclave, so it would be a little bit easier to manage. How is the EOC to install easy peasy, or should I calculate with some expert help.
-
But that would write the current date on all Nodes that dont have a date yet. And I am only starting to put in those dates, I imported the newly added eqipment for the last 12 Months yesterday by importing a txt file of the Node created Audit events, but the older eqipment do not have any dates. I think I will try the…
-
Hi Thank you for this indebth answer In my map I just thought I would beable to show status of the line, from the Status of the attached interface. Is it possible to atttach a label to the link that shows the admin status of the interface istead ?? And thank you for the links I will have a look at those Regards Jens
-
That was right on the spot, Compliments to you, and yes I would like to do "Node" specific reports, but IP groups could do the trick. I just have to create an IP group containing the 5 IP adresses of the Node interfaces, tedious task but doable Do you by any chance know if it is posible to "deduplicate" a list of flows. I…
-
Hi Yes I have but the problem lies in that Palo Alto doesn't have an MIB for VLAN interfaces IP's. I dont think ASA's have it either, but with the ASA SolarWinds get that info from CLI Regards Jens
-
Yes I have thought of that but would like to have then added same as the discovered ones. If later i have to pull a report with the IP addresses it would be problematic if the other IP addresses where in their own custom property.
-
The problem is that when ik look at a single flow I only see the Protocol. Cause how does Solarwinds determine what is the protocol? on a flow that has a Source ip of 10.10.20.20 and source port TCP/4523 and a destination IP of 172.16.25.53 and destination port of TCP/4224 Which of these normally not monitored ports will…
-
It does not seem to be anything that has been added since then. I am currently also looking for this solution to get an interface down event to aggregate up to the group where the node is a part of. I found this however and added a comment please anyone that are looking for this vote !!…
-
Hi thank you for that, seems that the Auditing events have a much better retention period than normal events, and I dont have to root out moves. The results seems to be fine also with APE. A retention period of 365 days is fine for me, I only need a few months of data Regards Jens
-
To be honest I was not sure so this morning i Added 2 devices (EDRC-ASA*) from our discovery result list, and moved 2 devices(KFA220-ASA*) from our primary poller(X0361p01 or 2) to our APE (X0361p03 or 4). The events look identical to me, or is there anyway to see more details in the events? Regards Jens