Syslog Format for Flatline alerts (match if a statistical value is less/more/equals to threshold X)
Time | DPOD server hostname | Alerts Syslog Message ID | Level | Alert Name | Alert Description | On (Alert Device/ Object) | Alert Details |
---|---|---|---|---|---|---|---|
10/23/2018 15:40:43.714 | dpod | 0x00a0001a | info May be set via System Parameters ("Syslog Severity Field Value") | Devices CPU Metric | Alert on Devices CPU over 80% | idg77 | Value:(85.0) Threshold:(75.0) Filters:[device(),domain(),service()] Interval:[timestampStart(10/23/2018 15:35:43.714),timestampStartLong(1540298143714),timestampEnd(10/23/2018 15:40:43.714),timestampEndLong(1540298443714)] |
Syslog Format for Frequency alerts (match if the number of fetched documents is more than threshold X)
Time | DPOD server hostname | Alerts Syslog Message ID | Level | Alert Name | Alert Description | On (Alert Device/ Object) | Alert Details |
---|---|---|---|---|---|---|---|
10/23/2018 17:44:23.088 | dpod | 0x00a0001a (always the same) | info May be set via System Parameters ("Syslog Severity Field Value") | Transaction Errors Alert | Alert when 5 or more Transactions with errors in the last 30 minutes | mpgw - webapi | Value:(22.0) Threshold:(5.0) Filters:[device(idg77),domain(),service()] Interval:[timestampStart(10/22/2018 17:44:23.088),timestampStartLong(1540219463088),timestampEnd(10/23/2018 17:44:23.088),timestampEndLong(1540305863088)] |
Syslog Format for Any alerts (match if any record was fetched)
info
Threshold is not applicable for alert types "any" and "list"
Time | DPOD server hostname | Alerts Syslog Message ID | Level | Alert Name | Alert Description | On (Alert Object Down) | Alert Details |
---|---|---|---|---|---|---|---|
10/24/2018 08:30:23.531 | dpod | 0x00a0001a (always the same) | info May be set via System Parameters ("Syslog Severity Field Value") | Objects Down Alert | Alert on any DP object that is enabled but down | [Domain is down, LogTarget, idg77, HospitalA_Domain] | Value:(null) Threshold:(null) Filters:[device(),domain(),service()] Interval:[timestampStart(10/24/2018 08:25:23.531),timestampStartLong(1540358723531),timestampEnd(10/24/2018 08:30:23.531),timestampEndLong(1540359023531)] |
Syslog Format for List alerts (match if a certain field of the fetched records matches a blacklist/whitelist)
info
Threshold is not applicable for alert types "any" and "list"
Time | DPOD server hostname | Alerts Syslog Message ID | Level | Alert Name | Alert Description | On (Syslog Errors) | Alert Details |
---|---|---|---|---|---|---|---|
10/24/2018 08:30:23.531 | dpod | 0x00a0001a (always the same) | info May be set via System Parameters ("Syslog Severity Field Value") | Syslog Errors MessageCode Alert | Alert on any syslog errors with specific message codes | [An error occurred on socket (260). Error details (113: No route to host). Local(172.17.100.200:58056) - Remote(n/a), 11, 31562, 297, 1540359962073, 1, 526, idg77, 3, 02, 2018, 176f0f31-d750-11e8-b42e-000c299db48d, 073827, 7, 1540359962073827, error, wdp-syslog-sys-error_active-node_N001, 2018-10-24T08:46:02.073827+03:00, 172.17.100.156, APIMgmt_B72F7777F4, 10, false, 08:46:02, MonTier-SyslogAgent-1, 08, 46, <11>2018-10-24T08:46:02.073827+03:00 MonTierLocalId-3 [0x80e006ba][network][error] trans(54159): An error occurred on socket (260). Error details (113: No route to host). Local(172.17.100.200:58056) - Remote(n/a), 24, 1540359963013, 54159, 1540359963013, 7.5.2.4+, 0x80e006ba, +03:00, network, 60000] | Value:(null) Threshold:(null) Filters:[device(),domain(),service()] Interval:[timestampStart(10/24/2018 08:42:23.538),timestampStartLong(1540359743538),timestampEnd(10/24/2018 08:47:23.538),timestampEndLong(1540360043538) |