Ask question, Find Answers, Get Help
- 861 Topics
- 3,630 Replies
I have a dashboard to show the CPU of particular resources. Each widgets of the panel have CPU details of particular resource group. I have used Virtual Datapoints with some mathematical calculations. As these are graph widgets, the option called `boundaries` are showing at the end of the widget (when we open in wide screen). For whatever time range selected in the calendar, the widget cumulates the respective metrics' data for that time range and shows as "boundaries" (one single cumulative value for the entire time range for each metric/datapoint) By default the boundary values are showing as min, max and avg. I need to download these boundary values of each widget for the time range which I select. There is a option called "download" in each widget but it gives all the values only from the graph for each time instance. So there are more values which are variable according to the time instance. Is there any way to get the boundary values which is nothing one single cum
Hi All...... Was trying to figure out if theres any way where I can get the alert scheduled for high CPU usage but only if it is high for a said period of time.. Is that possible to set a different time for different servers, because we do not bother alerts from our servers unless it's burning for an hour or so. Thank you
Hello, Nowadays, we are migrating from CA IM to Logic Monitor platform, when it comes to the event logs monitoring we've some doubts on how to replicate those. Currently at IM we pick what we want to monitor (by creating profiles that look into the Severity, Source, ID, Message, etc...). I do understand this is possible within LM but, from what I checked it would require us to create a different event source every time the source changes (& we are talking about >100 variations). With that in mind, using that method we would create a huge load on the collectors, correct (due to WMI limitations, etc...)? Not sure if this was raised in the past but, is there any other approach/method we could try in order to accomplish this? Appreciate the feedback. Thank you!
Hello, We've noticed the out of the box event source 'Liebert_Condition_Events' is triggering alarm where the actual date of the event is in the future (example below): NOTE: Blurred the device name (in order to protect our client information) I've already accessed the device in question & the system time is correct. Could this be an issue with the data source 'timestamp' handling? Or there's another thing that I might be missing? Thank you!
Hello, I am curious to know how you deal with the DHCP subnet "DHCPSubnetPercentUsed" Datapoint alerts as by default they are set to : Warning 70% - Error 80% - Critical 90% Our DHCP subnets environment is usually set to be full per subnet so meaning we are constantly alerted it is over the threshold. All IPs within a DHCP subnet are available for any desktops to be used... Also DHCP is also set to be used per group of subnets so the usage of a particular subnet inside the group could be always full when another will be 50% used only... Any recommendations? Disable the alerts? Thanks, Dom
LogicMonitor does a great job capturing Application, System and Security events from the Windows Event Log via WMI. We are trying to expand our Event Log monitoring to include events from the Applications and Services Logs. These cannot be collected by LogicMonitor via WMI but the documentation says we should be able to collect these using Event Log subscriptions and write them to the Application log. We have an event log subscription set up on one Windows server collecting events from others. They are source initiated subscriptions, specifically AppLocker error events which we have being collected and written to the Application log of the collecting server. The events are making it to Application Log but we are not receiving alerts in LogicMonitor. I have tried a custom Event Source and even used the built-in one which should be collecting all Application Event Log errors occurring on the server. We get alerts for application errors that occur on the server - just not the App
Does anyone know if it's possible to invert the devices that make it to the 'top' spot from an overview perspective? As I understand it, it's Top 10 that make it to these overview graphs -- what if I want to see the 'Bottom 10' on a given Overview Graph? I imagine there is probably some complex datapoint that I can use to invert my value, but this would add to the complexity of the datasource, and I'd like to keep it simple if possible.
I'm looking at options to provide the external IP address that a device has. Basically I would normally query a WhatIsMyIP.net like service to get the external IP address, but I'm wondering if LogicMonitor provides a simple webservice on *.logicmonitor.com that can provide the external IP so I don't have to worry about getting a 3rd party site whitelisted with our customers?
Hello, We've noticed the Cisco EIGRP PeerDown alarm(s) aren't being suppressed if the actual device goes down on LM. When lost SNMP connectivity to one of our routers, it started returning PeerDown alarms (since SNMP wasn't responding, causing the 'NoData' condition at the 'upTime' datapoint). This becomes an issue because the actual datapoint that checks the Peer status, bases itself on the data retrieved by the 'upTime' datapoint (which at this point, is as 'NoData). Basically, if the 'upTime' doesn't return data (which happens if the actual device goes down) it'll trigger an alarm for the PeerDown instances (since it'll always return False). LogicMonitor only sees the actual device as 'down' after 5 minutes (when not retrieving data). This DS will alarm first (since the PeerDown will return an alarm on 2 consecutive tools - which means 3 minutes). As per the documentation, all the alarm(s) emanating from the host will be suppressed. My question here (just to ma
Hi Team, I was getting the "No Data" on a lot of the datasources. I went through the WMI troubleshooting and made the needed changes, I did this after I ran the "Poll Now" and got a permissions error. Now I can run "Poll Now" without the error but I am getting NaN and "No data collected from sbproxy" I'm not sure what else I need to do for the data to be collected. A collector did exist on this server but was moved to another server. Before the collector was moved we did not experience this issue. Any help would be appreciated.
Hello, Now that a new suite of data sources is available for the UCS stuff, we're having some doubts on the monitoring related with the Cisco UCS Manager & their respective components (Fabric Interconnects, etc...) I'm sure the new suite removes the need of the SNMP legacy datasources (that's great btw!!!), however, we're now kinda lost on what should we add into LM (in terms of components). I'm pretty sure in the past we had to add the UCS Manager + the Fabric Interconnect devices (to fetch some hardware related info that wasn't fetched via UCS Manager), but currently, I see the same datasources applied to the UCS & both Fabrics. I'm assuming that we only require to monitor the actual UCS Manager from now on (everything else will be monitored under it). Specially the hardware portion of both Fabric Interconnects (at least from what I'm seeing). Is my assumption correct? Or, is there anything else we need to have in mind in terms of the Fabrics. Appreciate th
Hi Throwing something out there for advice. There are a number of datasources that are subject to duplication of instance because you cannot safely turn on the automatically delete as legitimate instances may go down for longer than 30 days. This appears to be due to them being very dependent on the instance name, so if this is something the customer has the ability to change then it creates another instance during Active Discovery. My question is if anyone has an ideas on a complex datapoint (or some other means) that can detect that this instance has matching property to another instance. This could be say auto.device.mac_address or even the Instance Value as these always match between the duplicate instances. This is really bugging me now so I really need to find a proactive way to address them. The real downside is that you lose the historical data when it is actually the same device. What the ideal would be is if you could merge instance or at least delete th
Hi, First post and I'm new to LM, though an old hand at monitoring and alerting so be gentle ? I've searched these forums and found a couple 'feature requests' to be able to alert only if message X appears greater than Y times within Z minutes in the Windows Event Log rather than alerting for every occurrence of message X. None of the posts appear to have a solution... Is this still the case? Either an official solution or a work around? Many Thanks Mat
This weekend I had a problem with one of my Palo Alto Firewalls. Luckily I wasn't concerned because I had LM backing up my config all the time. Unfortunately although the data is there, I could not get it into a format that I could load back into the firewall. Has anybody successfully done this? Any hints? Thanks What I've tried: 1. Download the file in *.conf format. Imports in but won't load. 2. Download *.conf and then change the extension to .xml. Imports but won't load. XML file is viewable in a browser fine. 3. The exports from a PA firewall have no file extension so I downloaded the .conf and removed it. imports but won't load. 4. Copied and pasted all the lines from the LM console into Notepad++ and then remove the line numbers from all the lines. I tried saving as xml and dropping the file extenstion. It imports but won't load.
Hello, I'm migrating from RPC API to REST and need to retrieve alerts with their full description (for processing in our own system). Unfortunately, when I tried API v2, I could not get fieldset "detailMessage", even though it's mentioned on API v2 Swagger page. Also there I can't find any parameter like "needMessage" used in RPC API and REST API v1. Is there any way to retrieve alert description (=subject in RPC, detailMessage.subject in REST v1) in alerts REST API v2? And do you plan to support such parameters/fields later?
Is it possible to apply multiple filters to an API query? If so, would anyone have an example of what it would look like? Here are my current attempts: Working: https://agio.logicmonitor.com/santaba/rest/device/devices?filter=deviceType:0 Not working: https://agio.logicmonitor.com/santaba/rest/device/devices?filter=deviceType:0,name-QA* Thanks!
Hello, I want to create alert which poll every 1 min and if it fails to match threshold criteria then it should create new alert for every polling. But i see only single alert on alert-dashboard instead of multiple alerts.' How can we set/modify to shoot new alert in every polling? Thank you, Suyash Gaikwad
Hello, We were wondering if it would be possible to map the actual IP against the discovered interface(s)? - I'm referring specifically to the 'snmp64_If-' & 'snmpIf-' datasources Our goal is to be able to add deviceA (that contains 5 interfaces for example) & quickly determine which IP is assigned to each interface (I know we can always check the configuration but, it's not that productive). I also noticed that the device itself contains the 'system.ips' property but, we don't know which IP belongs to each interface. Appreciate the feedback. Regards,
Monitoring SSL Certificate expiry days can be done in LogicMonitor by making use of datasource SSLCerts- (SSL Certificate Expiration). On the side note, SSL Certificate is used for certifying a web server that does the secured socket layer data encryption between a web server and a client (web browser). SSL Certificate is issued by several organizations/companies so called Certificate Authority (CA) for the purpose of providing the legitimacy of the web servers that encrypt the data for communication. The certificates issued will be digitally-signed by those CA and can be trusted by the client based on Root Certificates installed in the common browsers. It is, however, possible to create a self-signed certificate, which in this case is used for a testing purpose. Data will still be encrypted but the certificate will not be trusted by the client browsers. When a device with SSL Cert installed has been added to LogicMonitor, rightfully that datasource will be auto-applied, as with
Would it be possible in the future to export users into a PDF or Excel spreadsheet. Also, when we sort the user table it doesn't seem to actually sort by any of the columns correctly. If we try to sort by 'Roles' it sorts by 'Usernames' first then 'Roles'. We would like the ability to be able to sort by the specific column we choose. If we look at the properties of a group, you can't see who is attached to the groups either. We would like to be able to go into a group and see what users are in that group.
Hello to everyone, For the past couple of weeks we've been noticing that from time to time 'customProperties' get created within our 'root' group at LM. We've asked our team if anyone created those, everyone stated that they weren't manually created. Tried to check it within Audit logs, but I can't find any event that relates to that action. I'm not sure what is causing this (couldn't be LM fault)... Examples of properties that get created: - snmp.community - esx.user/pass We've a bunch of folks working on this at the same time & we're not discarding the possibility of this being done by mistake (however, the weird thing is we can't see this in the Audit logs). Anyone faced this sort of scenario in the past? Thank you!
Hello all, I am trying to get a report to show all alerts that happened within a time frame on certain resources. Like a device goes down sends an alert, comes back up but would go back down again and I am wanting to have a report that reflects that. Is there anyway to have the reports be generated in some way or is it not possible to do so. Thank you in advance for any help that can be provided.
Already have an account? Login
LogicMonitor Employee? Click here:LogicMonitor Employee Login
Login to the community
No account yet? Create an account
LogicMonitor Employee? Click here:LogicMonitor Employee Login
Enter your username or e-mail address. We'll send you an e-mail with instructions to reset your password.