Module Update Differences Report
I mentioned on the webinar today that I’d post an example output from my diff script. I’m not going to attach it here, so I’ll link to it instead. It’s an HTML page and it’s an older version of the script output, but opening it in your browser (use incognito if you’re worried) will show the list of modules whether they’re UpdatedNotInUse, UpdatedInUse, or New. Clicking on the blocks under a module (red=there’s a difference, green=there’s no difference) will show the existing vs. new versions. To generate this report, all I need is a RO set of credentials with view access to modules (I think). I use this as my checklist of updates to address. I have the history and existing definition on there (Old JSON) because I like to know if my version is out of date because LM changed an LM setting or if they changed something I had customized. And the old JSON is on there in case I need to revert (which I haven’t had to yet).76Views4likes3CommentsNeed help on PaloAlto_FW_RunningConfigXML API configsource
Currently, the sole option is to collect/view the configuration xml when a change occurs. So,IsthereawayinLMtogenerateareportusingthePaloAlto_FW_RunningConfigXMLAPIconfigsource? or Is it possible to collect the configuration backup at any specific time interval? Thanks in advance :)67Views16likes2CommentsLive Training - Tuning Datapoints and Alerts - 15th JUNE 2022 - APAC
Hi all , Thanks for attending ourLive Training - Tuning Datapoints and Alerts - 15th JUNE 2022 - APAC region . Please view the video recording : Please do complete the feedback form here ;https://docs.google.com/forms/d/e/1FAIpQLScPWW5DzNxe2W5ieh6PjamLYWcP5AhDbUl1E3U7ZKryEgwEoA/viewform21Views0likes0Comments2020-10-21 - LogicMonitor Basics Office Hours
Have questions about how to best use LogicMonitor? LogicMonitor experts are live to explain best practices and answer your questions. There are no planned topics as this webinar is a true office hours. Bring your coffee and questions! Register here.17Views0likes4Comments- 16Views0likes7Comments
15 April 2020 Office Hours - Alerts & Routing - Recording and Q&A
Thanks to all the attendees at last week’s Office Hours session. You can find the recording here: https://logicmonitor.wistia.com/medias/l1tusqhxg4 and the Q&A transcript below. If you would like to give feedback, go here: https://docs.google.com/forms/d/e/1FAIpQLScPWW5DzNxe2W5ieh6PjamLYWcP5AhDbUl1E3U7ZKryEgwEoA/viewform?usp=pp_url&entry.2118543627=2020-04-15. Our next session is planned for April 29th. You can register here: https://logicmonitor.zoom.us/webinar/register/1615849840118/WN_kBPpRBuZR3W3as2PcvYjcA?_ga=2.177082021.1444769543.1587337597-865086799.1576104046 Q&A Transcript Q: Is there a way you can download or view alert history? A: Hi Gary, you can configure an alert report to pull a historical view. https://www.logicmonitor.com/support/reports/report-types/alerts-report Q: Can we extract a report to see what instances or datasources or groups have alerting off manually or have modified alert thresholds? A: Yes, there is an alert thresholds report available in the report suite. https://www.logicmonitor.com/support/reports/report-types/alert-threshold-report Q: Hi LM! We rely on alert thresholds to provide insights on capacity management for our Cloud Based Phone System. One of our challenges is leveraging time-based thresholds to tell us if our traffic is greatly above, or greatly below our our typical usage. With that said, do you have any advice on handling time-based alert thresholds for Saturday/Sundays, where our usage is vastly different weekdays? A: Time-based thresholds are a good way to deal with situations like this. I may not understand your question, but the principles are the same as normal alert tuning, but with the difference that you take the time to think also about the different thresholds that are appropriate at different times. You would follow the same workflow, but just categorize the times differently. I would recommend that you use the wizard to make time-based thresholds. Q: RE: Time-based alerts cont. Hi Mike, My challenge is - LM alert-threshold for say, 9am may work for Weekdays, but not be what I need for 9am Saturday or Sunday. A: Ah, that’s correct. I was thinking of escalation chains, which do allow for day of week. I do not believe that time based thresholds allow for this. Sorry about my confusion. Q: Is there a way to still alert on something, but not route that alert anywhere if you're still utilizing a "catch-all" Alert Rule like "Error" or "Critical"? Basically.. we'd want to see them in the Alerts Dashboard, but not get emails/texts/calls about it. It would be useful to have a button to not route the alert, perhaps under the "Alert Routing" screen. I understand we can create high-level Alert Rules to not escalate those alerts, but I'm curious if there's a more granular option at the datasource/datapoint level. (Sorry for the book, just trying to be clear!) A: You can get as granular as you like with alert routing. The key is to remember that the alerts will be evaluated against the alert rules in order of alert rule priority, ascending. You can use this property to handle this kind of filtering. If you want alerts to not be routed, even with a catch-all, simply make sure that the empty escalation chain is matched with a rule that comes before the routed catch-all. Does this make sense? Q: If I put a device in SDT, and that device is also a collector, I need to configure SDT again in the collectors section. Is there a way that when I schedule a device or group down that the collector is also scheduled down? A: Not at this time. Collector alerts are handled differently than resource alerts. Q: How to trigger an alert whenever device configuration changes? A: On the page https://www.logicmonitor.com/support/logicmodules/articles/creating-a-configsource it describes how to create a ConfigSource. The section that begins with “Check Type: Any Change (diff check)“ Shows how to set this up. Q: When you have a device already managed in Logic Monitor that gets a hardware upgrade and the management IP of that host stays the same, the properties in LM remain tied to the old hardware I've seen. For example if we have a 2960X switch that gets replaced with a 9300, obviously two different model devices with different software version. Will LM automatically re-poll the PropertySource once the new host comes online (even though the monitored IP doesn't change), or do we have to go to Settings -> LogicModules->PropertySources, find the associated PS to the host and manually run it? A: Generally, if you're not replacing hardware with something that is "apples to apples" I would suggest adjusting the old hostname or removing the sunsetted device first. That said our discovery will attempt to apply or remove any logicmodules that meet the appropriate discovery criteria. Reason being is some modules may leave instances that no longer necessarily apply depending on their configuration. Q: With dynamic thresholds how far back does LM look back to determine what is normal? Does it take into account regular, periodic oscillations of the metric value? A: Hi, dynamic thresholds are determined by three days of prior data. For more information you can check out the following. https://www.logicmonitor.com/support/alerts/tuning-alerts/enabling-dynamic-thresholds-for-datapoints Q: Is there way to configure LM to do speed test checking? A: While I don't believe we have anything out of the box, you could likely script something for this. We have an example on our communities page. a href="https://communities.logicmonitor.com/topic/2282-ookla-speedtest/" rel="">https://communities.logicmonitor.com/topic/2282-ookla-speedtest/ Q: Can we insert list of top processes consuming CPU utilization in Linux for CPU load alert mail A: It's probably doable. You'd have to create a Groovy based complex datapoint that watches the cpu utilization datapoint. When that goes over threshold, the complex datapoint would run a Groovy script that could reach out to the device and gather the list of top processes. The script would then need to store that data as a property on the device. You'd then need to modify the alert message template so that the top-processes property were included in the alert message. This is very advanced stuff and I would recommend reaching out to your CSM for help engaging our Professional Services team. Q: Hi LM, First Thank you for this Webinar, I'm recently started to work with LM! I'm still learning about your platform and I have a problem with the dashboard. I'm getting information by SNMP on a network device and I have "NaN" when I want to exploit data, my data is a "String value" and visible by a brut data. Do you have any ideas how can I exploit a String value? Regards. A: If it’s a string, but contains numeric data, you can use a regex match to extract the numbers. If it’s strictly text, you can use a regex to match it (returning 1 if found and 0 if not found). The help page that describes these options is here: https://www.logicmonitor.com/support/logicmodules/datasources/datapoints/normal-datapoints/ Q: Are there plans to post this talk? I missed portions of it in the middle and would like to review at my convenience. A: Hi Dennis, these are recorded, we'll be sure to get a link your way once it's ready. Q: Will there be a recordings of these sessions? A: Hi Mike, we definitly record these! I'll make sure we get a link your way when this is ready. Q: AutoLogout when Displaying a Dashboard on a Wall Mounted TV requiring multiple Re-Logins throughout the day A: Turn on a slideshow. It should keep things refreshed. Q: Integration with FreshService using Cluster Alerts is failing to provide the ##HOST## or #SYSTEM.STATICGROUPS## details (leaving it blank in the subject line) at this time for our integration. Is there a known issue where cluster alerts will no longer provide the affected host in an alert subject line if they are part of cluster alerts? A: This question was answered live. See https://www.logicmonitor.com/support/logicmodules/about-logicmodules/tokens-available-in-datasource-alert-messages#cluster-alerts for tokens that can be used in Cluster Alert notifications. Q: Is there a way to audit how frequently dynamic thresholds decide to not send a notification? A high frequency of suppressions could indicate I should edit the static threshold A: That's a great idea. Be sure to submit feedback through the community or through your CSM to make sure that feature request gets added into the system. Q: Hello, will this session be recorded for us to reference later with our teams? A: Hi David, this will be recorded. We'll be sure to get you a link once it's ready. Q: Hi, is there a way to get the historical data, such as once per minute readings of available free space and capacity? A: Yes, simply expand the graph and you'll have the option to view and download the raw data.16Views0likes0Comments2021-12-15 US Office Hours
Thanks to Dave Femino with our Product Management team for stopping by with a demonstration of our new LM Logs search capabilities! Please fill out our survey to let us know how much you like our webinars. Here's a list of the questions asked and the times when they were asked. Q: [17:01] Very cool. Will those Aggregates be available as widgets to put on a dashboard?with the login issues that plagued many services providers today. is there a secondary portal we can access like tenantname2.lm... Q: [21:58] Unrelated to logs: Wondering if there is a way to do reporting on configs? Like an aggregate of a specific config for many resources OR all resources that have a specific string in a config, etc. I guess the other use case was having a way to aggregate a small config from many devices into a report. I didn't see that within reports but was hoping there might be some roundabout way to do it Q: [26:54] (This is long so if you want me to verbalize it I can.) We have some DataSources where the Collect script fails to run successfully, and in the Raw Data we get No Data for some DataSources and _no rows at all_ under Raw Data for other DataSources. In each case there are Datapoints which are set to raise an Alert for No Data, but that's not happening - apparently because the script is abending instead of completing. I've developed a work-around for custom DataSources, but we don't want to have to customize ones with this issue that are coming from the Core Repo. Any suggestions? ("Please contact Support" is an OK answer!!!) Q: [33:09] with the login issues that plagued many service providers today. is there a secondary portal we can access like tenantname2.lm...? Q: [34:20] Is this discussion a logging only or can we address alert levels and escalation chains? Q: [34:35] any plans on updating the mail lib Q: [35:15] I may need to verbalize my situation. I have multiple levels od support and need to direct alerts to 1st level for 30 minutes, ect Q: [44:08] Any plans to incorporate iperf or any other bandwidth testing tools into the collector? Anything that you can run on a Collector you should be able to wrap in a script, and then call that script from a DataSource. We're doing that with great success - although not the tools you mention. Do you have a link or example that explains this process more? Q: [46:35] can an event source output an info level alert. so far only warning (yellow) show up in my event source widget. Q: [47:40] I think I fully understand how Custom HTTP Integrations work, in that they originate from the LM infrastructure and not from Collectors. We would like to be able to have an Integration (or the functional equivalent of one) send the outbound HTTP/HTTPS call from an internal Collector instead. Any thoughts on something like a custom DataSource which could trigger a webhook, originating from a Collector? (I think such a DS would have to poll the Alerts API which might not scale well.) Q: [49:36] Is there any DataSource available for tracking Santa? Seriously though, is there a master go-to list of any / all public & private LogicModule collections that are not in Exchange? Post webinar note: Stay tuned here. I found some stuff and want to play around building what i can build. There may even be a blog post coming.13Views0likes2Comments29 April 2020 Office Hours - Dashboards - Recording and Q&A
Thanks to all the attendees at this week’s Office Hours session. You can find the recording here: The Q&A transcript is at the bottom of this post. We'd love your feedback, so please take a moment to respond to our survey. Our next session is planned for May 13th. You can register here You can view and download the WFH dashboards that you saw in the webinar (as well as lots of other prebuilt dashboard templates). Q&A Transcript: Q: Stuart, how long did it take you to grow that beard? A: Haha. It’s about 4 months since i last trimmed. My profile pic is about 3 years old and was the last time it was that short. Q: Do you have a dashboard built out for a Citrix Netscaler VPN appliance? A: The Citrix_Netscaler_AAA datasource might be what you’re looking for as far as data collection. Jake might know if there’s one pre-built. Take a look at the dashboard page to see if there’s one. It’s a pretty comprehensive list of what’s available. There might be more in the works. We can ask Jake. Q: Can the Citrix / Xendesk dashboarb be used for Windows Remote Desktop? A: The dashboard itself focuses on data from Xendesk widgets, but there is a DS called Terminal Services that should provide similar data. Q: Is there a canned legend of that the Alert icons mean? Would be very useful to display on a Alarms dashboard--especially on a wallboard A: I do not believe there is, but it wouldn’t be too difficult to make one using the text widget (which supports images) https://www.logicmonitor.com/support/dashboards-and-widgets/widgets/text-widget/ This might also be helpful https://www.logicmonitor.com/support/getting-started/i-just-signed-up-for-logicmonitor-now-what/6-understanding-logicmonitor-alerts as we already have an icon legend that can be grabbed here. Q: Cisco Webex Dashboard available? A: I don't believe we have anything pre-built at this time. However, if you have datasources monitoring webex metrics our support team can help provide some guidance on how to configure graphs or add those to a dashboard. Q: when you are looking at a Router-Interfaces (64 bit)-GigabitEthernet0/0/1-Throughput. is data showing the inbound and outbound aggregated to total bandwidth available i.e. I have a 1Gig internet interface and my ISP is supplying 1Gig of Bandwidth, inbound showing 200M and outbound is 500M is my total bandwidth usage is 800M or becuse 1G ethernet is full duplex its only showing 200M of 1Gig inbound and 500M of 1Gig of outbound? A: Can you provide some more detail? I'm trying to identify the exact datasource you're looking at here so we can help provide an answer. Q: Cisco router 1Gig interface , Montioring our Thorughput usage A: Unless I misunderstand what you are asking, it sounds like a question better aimed at your ISP. (How do they calculate bandwidth used?) Is that correct? Q: "InOctets All > Prod Internet Router > Interfaces (64 bit)- (snmp64_If-) > GigabitEthernet0/0/1 > InOctets Do not display; Agg: SUM OutOctets All > Prod Internet Router > Interfaces (64 bit)- (snmp64_If-) > GigabitEthernet0/0/1 > OutOctets Do not display; Agg: SUM inbound_bps InOctets*8 Custom outbound_bps OutOctets*8 Custom A: Thanks Walter, I think this would better be answered over a support chat so we can have an engineer dig in and walk though this with you directly. Difficult to properly address this fully over Zoom's Q/A. Q: testing a couple of the templates from https://www.logicmonitor.com/sales/dashboards/. Getting an error when I import the json causing some of the widgets to not create. Warning Some widgets could not be created due to configuration errors One I'm looking at right now is the SQL Server Dashboard and maybe half the widgets didn't generate. Could this be a problem with our setup or is it possibly a typo or error in the json? A: Hi Mike, Perhaps you may be missing some of the required datasources, hard to say without actually looking at the portal. Can you open up a support chat when you have a moment and one of our engineers can check this out with you as you import to confirm the root cause. I just loaded the SQL server dashboard into our training portal without errors. However, because we don’t have applicable instances, there are a lot of blank widgets, which is expected. Q: Good to know. I can work with support. Thanks A: They should be very helpful in this case Q: Is there a link to download the Executive Overview dashboard (like there are for all the rest), or is this provided more of an example of what LM Dashboards are capable? A: It's just an example of what strategies could be employed to create a good summary to an executive.7Views0likes2Comments22 July 2020 - Dynamic Thresholds
Back at it again, we're having another Live Training Webinar to introduce some new functionality in your LogicMonitor portal. We would like to invite you to join us at11am PST (1pm CST), Wednesday July 22nd, for another "What's new at LogicMonitor" webinar. This release is all about our Early Warning System with phase two of the Dynamic Thresholds feature. Specifically, you'll learn how you can reduce the administrative overhead of tuning alert thresholds while still getting alerts for the right metrics at the right time, in many cases with issues being caught sooner and more accurately. Register here.6Views0likes11Comments