Operating System KBs
This page was last modified 06:00, 21 July 2006.From Documentation
Revision as of 08:27, 11 July 2006 Moff (Talk | contribs) (Operating System KB's moved to Operating System KBs) ← Previous diff |
Current revision Mike (Talk | contribs) (→Services Sentry) |
||
Line 9: | Line 9: | ||
{| border="1" cellpadding="6" cellspacing="0" | {| border="1" cellpadding="6" cellspacing="0" | ||
- | !width="125" | Sentry | + | !width="125" bgcolor="#cccccc" | Sentry |
- | !width="65" | AIX | + | !width="65" bgcolor="#cccccc" | AIX |
- | !width="65" | HPUX | + | !width="65" bgcolor="#cccccc" | HPUX |
- | !width="65" | Linux | + | !width="65" bgcolor="#cccccc" | Linux |
- | !width="65" | SCO | + | !width="65" bgcolor="#cccccc" | Solaris |
- | !width="65" | Solaris | + | !width="65" bgcolor="#cccccc" | Tru64 |
- | !width="65" | Tru64 | + | !width="65" bgcolor="#cccccc" | Unixware |
- | !width="65" | Windows³ | + | !width="65" bgcolor="#cccccc" | Windows |
|- | |- | ||
|Connectivity¹ | |Connectivity¹ | ||
Line 57: | Line 57: | ||
¹ Connectivity and Event_Manager sentries are only started on the Event Host.<br> | ¹ Connectivity and Event_Manager sentries are only started on the Event Host.<br> | ||
² Scheduler sentry is not started by default. Please read the online documentation for details on how to use the Scheduler sentry.<br> | ² Scheduler sentry is not started by default. Please read the online documentation for details on how to use the Scheduler sentry.<br> | ||
- | ³ Agent only. Full Event Manager and Host Monitory available May 2003. | ||
<br> | <br> | ||
+ | |||
=== OS Knowledge Base Versions === | === OS Knowledge Base Versions === | ||
{| border="1" cellpadding="6" cellspacing="0" | {| border="1" cellpadding="6" cellspacing="0" | ||
- | !OS | + | !bgcolor="#cccccc" |OS |
- | !Version | + | !bgcolor="#cccccc" |Version |
- | !Availability Date | + | !bgcolor="#cccccc" |Availability Date |
- | !Min Sentinel Version | + | !bgcolor="#cccccc" |Min Sentinel<br>Version |
|- | |- | ||
- | |AIX risc | + | |AIX risc ||align="center" |2.1 ||17th Mar, 2004 ||align="center" |4.4 |
- | |2.1 | + | |
- | |17th Mar, 2004 | + | |
- | |4.4 | + | |
|- | |- | ||
- | |HPUX parisc | + | |HPUX parisc ||align="center" |2.1 ||11th May, 2004 ||align="center" |4.4 |
- | |2.1 | + | |
- | |11th May, 2004 | + | |
- | |4.4 | + | |
|- | |- | ||
- | |HPUX intel | + | |HPUX intel ||align="center" |2.2 || 6th Jul, 2006 ||align="center" |4.4.3 |
- | |2.2 | + | |
- | |6th Jul, 2006 | + | |
- | |4.4 | + | |
|- | |- | ||
- | |Linux intel | + | |Linux intel ||align="center" |2.1 ||20th Apr, 2004 ||align="center" |4.4.3 |
- | |2.1 | + | |
- | |12th Mar, 2004 | + | |
- | |4.4 | + | |
|- | |- | ||
- | |SCO Open Server | + | |Solaris intel ||align="center" |2.1 ||14th Jan, 2003 ||align="center" |4.4 |
- | |1.1 | + | |
- | |25th Oct, 2002 | + | |
- | |4.2 | + | |
|- | |- | ||
- | |Solaris intel | + | |Solaris sparc ||align="center" |2.2 ||10th Apr, 2006 ||align="center" |4.4.3 |
- | |2.1 | + | |
- | |14th Jan, 2003 | + | |
- | |4.4 | + | |
|- | |- | ||
- | |Solaris sparc | + | |Tru64 alpha ||align="center" |2.1 || 2nd Jun, 2004 ||align="center" |4.4 |
- | |2.2 | + | |
- | |14th Feb, 2006 | + | |
- | |4.4 | + | |
|- | |- | ||
- | |Tru64 | + | |Unixware intel ||align="center" |1.0 ||10th Mar, 2004 ||align="center" |4.2 |
- | |1.2 | + | |
- | |13th Aug, 2002 | + | |
- | |4.4 | + | |
|- | |- | ||
- | |Windows NT/2000/XP | + | |Windows intel ||align="center" |2.2 ||28th Apr, 2006 ||align="center" |4.4.3 |
- | |1.0 | + | |
- | |22nd Jan, 2003 | + | |
- | |4.4 | + | |
|} | |} | ||
<br> | <br> | ||
+ | |||
== OS Knowledge Bases == | == OS Knowledge Bases == | ||
- | === CPU Class === | + | ==== CPU Class ==== |
{| border="1" cellpadding="6" cellspacing="0" | {| border="1" cellpadding="6" cellspacing="0" | ||
Line 137: | Line 111: | ||
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
- | |- | ||
- | |Processors | ||
- | |align="center" | √ | ||
- | |align="center" | √ | ||
- | |align="center" | √ | ||
- | | | ||
- | |align="center" | √ | ||
- | | | ||
- | | | ||
|- | |- | ||
|Context_Switches | |Context_Switches | ||
Line 152: | Line 117: | ||
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
- | | | + | | |
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
Line 160: | Line 125: | ||
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
- | | | + | | |
- | | | + | | |
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
Line 173: | Line 138: | ||
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
+ | |- | ||
+ | |Processors | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | | | ||
+ | |align="center" | √ | ||
+ | | | ||
+ | | | ||
|- | |- | ||
|System_Calls | |System_Calls | ||
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
- | | | + | | |
|align="center" | √ | |align="center" | √ | ||
- | | | + | | |
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
Line 202: | Line 176: | ||
|- | |- | ||
|HPUX | |HPUX | ||
- | | | + | | |
- | | | + | | |
|} | |} | ||
<br> | <br> | ||
- | === Disk Class === | + | |
+ | ==== Disk Class ==== | ||
{| border="1" cellpadding="6" cellspacing="0" | {| border="1" cellpadding="6" cellspacing="0" | ||
Line 222: | Line 197: | ||
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
- | | | + | |align="center" | √ |
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
Line 230: | Line 205: | ||
<br> | <br> | ||
- | === Error Log Class === | + | |
+ | ==== Error Log Class ==== | ||
{| border="1" cellpadding="6" cellspacing="0" | {| border="1" cellpadding="6" cellspacing="0" | ||
Line 244: | Line 220: | ||
|Error_Log | |Error_Log | ||
|align="center" | √ | |align="center" | √ | ||
- | | | + | | |
- | | | + | | |
- | | | + | | |
- | | | + | | |
- | | | + | | |
- | | | + | | |
|} | |} | ||
<br> | <br> | ||
- | === Filesystem Class === | + | |
+ | ==== Event Log Class ==== | ||
{| border="1" cellpadding="6" cellspacing="0" | {| border="1" cellpadding="6" cellspacing="0" | ||
Line 265: | Line 242: | ||
!width="65" | Windows | !width="65" | Windows | ||
|- | |- | ||
- | |Free_Space | + | |EventLog |
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | |align="center" | √ | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Files Class ==== | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" | Sentry | ||
+ | !width="65" | AIX | ||
+ | !width="65" | HPUX | ||
+ | !width="65" | Linux | ||
+ | !width="65" | SCO | ||
+ | !width="65" | Solaris | ||
+ | !width="65" | Tru64 | ||
+ | !width="65" | Windows | ||
+ | |- | ||
+ | |File_Info | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | |align="center" | √ | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Filesystem Class ==== | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" | Sentry | ||
+ | !width="65" | AIX | ||
+ | !width="65" | HPUX | ||
+ | !width="65" | Linux | ||
+ | !width="65" | SCO | ||
+ | !width="65" | Solaris | ||
+ | !width="65" | Tru64 | ||
+ | !width="65" | Windows | ||
+ | |- | ||
+ | |Filesystem | ||
|align="center" | √¹ | |align="center" | √¹ | ||
|align="center" | √ | |align="center" | √ | ||
Line 278: | Line 303: | ||
<br> | <br> | ||
- | === Memory Class === | + | |
+ | ==== Memory Class ==== | ||
{| border="1" cellpadding="6" cellspacing="0" | {| border="1" cellpadding="6" cellspacing="0" | ||
Line 289: | Line 315: | ||
!width="65" | Tru64 | !width="65" | Tru64 | ||
!width="65" | Windows | !width="65" | Windows | ||
+ | |- | ||
+ | |Paging_File_Space | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | |align="center" | √ | ||
|- | |- | ||
|Paging_Rate | |Paging_Rate | ||
Line 297: | Line 332: | ||
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
- | | | + | | |
|- | |- | ||
|Physical_Memory | |Physical_Memory | ||
- | | | + | | |
- | | | + | |
|align="center" | √ | |align="center" | √ | ||
- | | | ||
|align="center" | √ | |align="center" | √ | ||
- | | | + | | |
+ | |align="center" | √ | ||
+ | | | ||
|align="center" | √ | |align="center" | √ | ||
|- | |- | ||
|Swap_Rate | |Swap_Rate | ||
- | | | + | | |
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
- | | | + | | |
|align="center" | √ | |align="center" | √ | ||
- | | | + | | |
- | | | + | | |
|- | |- | ||
|Swap_Space | |Swap_Space | ||
Line 324: | Line 359: | ||
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
+ | | | ||
+ | |- | ||
+ | |Virtual_Memory | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
|align="center" | √ | |align="center" | √ | ||
|} | |} | ||
Line 330: | Line 374: | ||
<br> | <br> | ||
- | === Network Class === | + | |
+ | ==== Printers Class ==== | ||
{| border="1" cellpadding="6" cellspacing="0" | {| border="1" cellpadding="6" cellspacing="0" | ||
Line 342: | Line 387: | ||
!width="65" | Windows | !width="65" | Windows | ||
|- | |- | ||
- | |Collisions | + | |Printers |
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
+ | | | ||
|align="center" | √ | |align="center" | √ | ||
- | | | + | |} |
- | |align="center" | √ | + | |
- | |align="center" | √ | + | <br> |
- | |align="center" | √ | + | |
- | |align="center" | √ | + | ==== Network Class ==== |
- | | | + | |
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" | Sentry | ||
+ | !width="65" | AIX | ||
+ | !width="65" | HPUX | ||
+ | !width="65" | Linux | ||
+ | !width="65" | SCO | ||
+ | !width="65" | Solaris | ||
+ | !width="65" | Tru64 | ||
+ | !width="65" | Windows | ||
|- | |- | ||
- | |Drops | + | |Network |
|align="center" | √ | |align="center" | √ | ||
- | | | ||
|align="center" | √ | |align="center" | √ | ||
- | | | ||
- | | | ||
- | | | ||
|align="center" | √ | |align="center" | √ | ||
- | |- | ||
- | |Errors | ||
|align="center" | √ | |align="center" | √ | ||
- | | | ||
- | | | ||
|align="center" | √ | |align="center" | √ | ||
- | |align="center" | √ | ||
- | |align="center" | √ | ||
- | |align="center" | √ | ||
- | |- | ||
- | |Packets_Received | ||
- | |align="center" | √ | ||
- | |align="center" | √ | ||
- | |align="center" | √¹ | ||
- | |align="center" | √ | ||
- | |align="center" | √¹ | ||
- | |align="center" | √ | ||
- | |align="center" | √ | ||
- | |- | ||
- | |Packets_Sent | ||
- | |align="center" | √¹ | ||
- | |align="center" | √ | ||
- | |align="center" | √ | ||
- | |align="center" | √ | ||
- | |align="center" | √¹ | ||
|align="center" | √ | |align="center" | √ | ||
|align="center" | √ | |align="center" | √ | ||
|} | |} | ||
- | |||
- | ¹ Packets sent and received are known only as sent and received on Solaris and Linux. | ||
<br> | <br> | ||
- | === Printers Class === | + | ==== Processes Class ==== |
{| border="1" cellpadding="6" cellspacing="0" | {| border="1" cellpadding="6" cellspacing="0" | ||
Line 403: | Line 434: | ||
!width="65" | Windows | !width="65" | Windows | ||
|- | |- | ||
- | |Printers 1 | + | |Process |
+ | |align="center" | ¹ | ||
+ | |align="center" | ¹ | ||
+ | |align="center" | ¹ | ||
+ | |align="center" | ¹ | ||
+ | |align="center" | ¹ | ||
+ | |align="center" | ¹ | ||
+ | |align="center" | √ | ||
|} | |} | ||
- | + | ¹ Use the Process Knowledge Base instead. | |
- | ¹ The Solaris Printer class is "off" by default. This is due to an intermittent issue with the printer agent. The symptoms are excessive cpu usage by the Eventmanager. This only occurs on a very small number of systems. | + | |
- | + | ||
<br> | <br> | ||
- | === Processes Class === | + | |
+ | ==== Services Class ==== | ||
{| border="1" cellpadding="6" cellspacing="0" | {| border="1" cellpadding="6" cellspacing="0" | ||
Line 421: | Line 458: | ||
!width="65" | Windows | !width="65" | Windows | ||
|- | |- | ||
- | |CPU_Usage | + | |Services |
- | |MEM_Usage | + | |align="center" | √¹ |
- | |Processes;¹ | + | |align="center" | √ |
- | | | + | |align="center" | √² |
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
|} | |} | ||
- | ;NOTE:All OS Knowledge Bases support the Process Management Console, provided as an action against Processes sentry class. | + | ¹ AIX provides a complete service management interface using lssrc, startsrc and stopsrc. This interface has been implemented via actions on the Services sentry on AIX. |
- | ¹ On certain OSes the Processes sentry is turned off by default. Certain instances are provided as examples (nmdb, smdb) only, but should be changed to reflect the system on which the KB is installed. Note also that system services (daemons) are normally monitored via the Services sentry, so check in the Services folder before adding processes to be monitored. | + | ² Linux provides a complete service management interface using chkconfig and the startup/shutdown scripts in /etc/init.d (/etc/rc.d/init.d on older systems). This interface has been implemented via actions on the Services sentry on Linux. |
- | === Security Class === | + | ==== System Class ==== |
{| border="1" cellpadding="6" cellspacing="0" | {| border="1" cellpadding="6" cellspacing="0" | ||
Line 444: | Line 485: | ||
!width="65" | Windows | !width="65" | Windows | ||
|- | |- | ||
- | |Bad_SU | + | |CPU_Information |
- | | | + | |align="center" | √ |
+ | |align="center" | √ | ||
|align="center" | √¹ | |align="center" | √¹ | ||
- | | | + | |align="center" | √ |
- | | | + | |align="center" | √ |
- | | | + | |align="center" | √ |
- | | | + | |align="center" | √ |
- | | | + | |- |
+ | |Memory_Information | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |- | ||
+ | |Operating_System | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |- | ||
+ | |System_Uptime | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
+ | |align="center" | √ | ||
|} | |} | ||
- | ¹ On Linux, the Bad_SU sentry is not started by default, as it needs specific configuration to work correctly. Please read the sentry notes for more information on how to configure this sentry. | + | ¹ The Linux OS on the i386 platform provides additional CPU information including the approximate speed and vendor of the processors. |
+ | |||
+ | <br> | ||
+ | |||
+ | == Sentry Details == | ||
+ | |||
+ | === Overview === | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Sentry | ||
+ | !width="65" bgcolor="#cccccc" | Class | ||
+ | !width="65" bgcolor="#cccccc" | Agent | ||
+ | !width="65" bgcolor="#cccccc" | Poll Time | ||
+ | !width="75" bgcolor="#cccccc" | States | ||
+ | !width="65" bgcolor="#cccccc" | Logging | ||
+ | |- | ||
+ | |CPU_States ||CPU ||Performance ||60s ||AIX only ||align="center" | √ | ||
+ | |- | ||
+ | |Context_Switches ||CPU ||Performance ||60s || ||align="center" | √ | ||
+ | |- | ||
+ | |Interrupts ||CPU ||Performance ||60s || ||align="center" | √ | ||
+ | |- | ||
+ | |Run_Queue ||CPU ||Performance ||60s ||align="center" | √ ||align="center" | √ | ||
+ | |- | ||
+ | |Processors ||CPU/Processors ||MultiProcessor ||60s || || | ||
+ | |- | ||
+ | |System_Calls ||CPU ||Performance ||60s || ||align="center" | √ | ||
+ | |- | ||
+ | |Disk ||Disk ||Disk ||120s ||align="center" | √ ||align="center" | √ | ||
+ | |- | ||
+ | |Error_Log ||Error_Log ||ErrorLog ||120s ||align="center" | √ || | ||
+ | |- | ||
+ | |EventLog ||EventLog ||EventLog ||90s ||align="center" | √ || | ||
+ | |- | ||
+ | |File_Info ||Files ||FileInfo ||60s ||align="center" | √ || | ||
+ | |- | ||
+ | |Filesystem ||Filesystem ||Filesystem ||300s ||align="center" | √ ||align="center" | √ | ||
+ | |- | ||
+ | |Paging_File_Space ||Memory ||PageSpace ||180s ||align="center" | √ ||align="center" | √ | ||
+ | |- | ||
+ | |Paging_Rate ||Memory ||Performance ||60s ||AIX only ||align="center" | √ | ||
+ | |- | ||
+ | |Physical_Memory ||Memory ||Performance ||60s ||Solaris only ||align="center" | √ | ||
+ | |- | ||
+ | |Swap_Rate ||Memory ||Performance ||60s || ||align="center" | √ | ||
+ | |- | ||
+ | |Swap_Space (Linux)||Memory ||Performance ||60s ||align="center" | √ ||align="center" | √ | ||
+ | |- | ||
+ | |Swap_Space (Unix) ||Memory ||Swap ||180s ||align="center" | √ ||align="center" | √ | ||
+ | |- | ||
+ | |Virtual_Memory ||Memory ||MemoryInfo ||60s || ||align="center" | √ | ||
+ | |- | ||
+ | |Network ||Network ||Network ||120s ||align="center" | √ ||align="center" | √ | ||
+ | |- | ||
+ | |Printers ||Printers ||Printers ||180s ||align="center" | √ || | ||
+ | |- | ||
+ | |Process ||Processes ||ProcessInfo ||75s ||align="center" | √ ||align="center" | √ | ||
+ | |- | ||
+ | |Services ||Services ||Service ||120s ||align="center" | √ || | ||
+ | |- | ||
+ | |CPU_Information ||System ||Information ||n/a³ || || | ||
+ | |- | ||
+ | |Memory_Information||System ||Information ||n/a³ || || | ||
+ | |- | ||
+ | |Operating_System ||System ||Information ||n/a³ || || | ||
+ | |- | ||
+ | |System_Uptime ||System ||Uptime ||100s || || | ||
+ | |} | ||
+ | |||
+ | ¹ Packets sent and received are known only as sent and received on Solaris and Linux.<br> | ||
+ | ² The BadSU agent is a LogFile agent, and so does not have a poll time. Any new data is interpreted whenever the logfile being monitored changes.<br> | ||
+ | ³ The Information agent (Hardware agent on Linux) is essentially run only once. | ||
+ | |||
+ | <br> | ||
+ | |||
+ | === Sentry State Details === | ||
+ | |||
+ | ==== CPU States Sentry ==== | ||
+ | |||
+ | ;Availability: AIX¹, HPUX, Linux, SCO, Solaris, Tru64, Windows | ||
+ | |||
+ | '''Constants (AIX only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |CPU_BUSY | ||
+ | |User + System percentage indicating the CPU is busy | ||
+ | |90 | ||
+ | |- | ||
+ | |bgcolor="#efefef" | CPU_OVERLOADED | ||
+ | |bgcolor="#efefef" | User + System percentage indicating the CPU is overloaded | ||
+ | |bgcolor="#efefef" | 95 | ||
+ | |} | ||
+ | |||
+ | '''States (AIX only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |OVERLOAD_CPU | ||
+ | |warning | ||
+ | |$cpu_user + $cpu_system > $CPU_OVERLOADED | ||
+ | |severe after 120s | ||
+ | |- | ||
+ | |bgcolor="#efefef" | BUSY_CPU | ||
+ | |bgcolor="#efefef" | normal | ||
+ | |bgcolor="#efefef" | $cpu_user + $cpu_system > $CPU_BUSY | ||
+ | |bgcolor="#efefef" | warning after 120s | ||
+ | |- | ||
+ | |NOT_BUSY | ||
+ | |normal | ||
+ | | | ||
+ | | | ||
+ | |} | ||
+ | |||
+ | ¹ The CPU States sentry only has constants and states defined for AIX. | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Run Queue Sentry ==== | ||
+ | |||
+ | ;Availability: AIX, HPUX, Linux, SCO, Solaris, Tru64, Windows | ||
+ | |||
+ | '''Constants''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |RUNQ_WARN ||Run queue is getting long ||3 | ||
+ | |- | ||
+ | |RUNQ_PROB ||Run queue is too long ||6 | ||
+ | |} | ||
+ | |||
+ | '''States (HPUX, Linux, SCO, Solaris, Tru64, Windows)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Very_Busy ||warning ||$run_queue > $RUNQ_PROB ||alarm after 210s | ||
+ | |- | ||
+ | |Busy ||normal ||$run_queue > $RUNQ_WARN ||warning after 210s | ||
+ | |- | ||
+ | |OK ||normal || || | ||
+ | |} | ||
+ | |||
+ | '''States (AIX only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |OVERLOAD | ||
+ | |warning | ||
+ | |$run_queue > $RUNQ_PROB | ||
+ | |severe after 120s | ||
+ | |- | ||
+ | |BUSY | ||
+ | |normal | ||
+ | |$run_queue > $RUNQ_WARN | ||
+ | |warning after 120s | ||
+ | |- | ||
+ | |NORMAL | ||
+ | |normal | ||
+ | | | ||
+ | | | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== System Calls Sentry ==== | ||
+ | |||
+ | ;Availability: AIX, SCO, Tru64 | ||
+ | |||
+ | '''Constants (AIX, SCO, Tru64)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |CPU_SYSCALLS ||Too many system calls per second ||10000 | ||
+ | |} | ||
+ | |||
+ | '''States (AIX, SCO, Tru64)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |BUSY ||normal ||$sys_per_sec > $CPU_SYSCALLS ||alarm after 120s | ||
+ | |- | ||
+ | |NORMAL ||normal || || | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Disk Sentry ==== | ||
+ | |||
+ | ;Availability: AIX¹, HPUX, Linux, SCO, Solaris, Tru64, Windows | ||
+ | |||
+ | '''Constants (HPUX, Linux, Solaris, Tru64)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |DSK_BUSY_WARN | ||
+ | |% busy indicating disk is busy | ||
+ | |5 | ||
+ | |- | ||
+ | |DSK_BUSY_PROB | ||
+ | |% busy indicating disk is very busy | ||
+ | |20 | ||
+ | |- | ||
+ | |DSK_SVCT_WARN | ||
+ | |Indicates a long service time (ms) | ||
+ | |30 | ||
+ | |- | ||
+ | |DSK_SVCT_PROB | ||
+ | |Indicates a very long service time (ms) | ||
+ | |50 | ||
+ | |} | ||
+ | |||
+ | '''Constants (AIX, Windows)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |DSK_BUSY_WARN | ||
+ | |% busy indicating disk is busy | ||
+ | |40 | ||
+ | |- | ||
+ | |DSK_BUSY_PROB | ||
+ | |% busy indicating disk is very busy | ||
+ | |60 | ||
+ | |} | ||
+ | |||
+ | '''States (HPUX, Linux, Solaris, Tru64)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Very_Busy ||warning ||$percent_busy >= $DSK_BUSY_PROB && $service_time >= $DSK_SVCT_PROB ||alarm after 390s | ||
+ | |- | ||
+ | |Busy ||normal ||$percent_busy >= $DSK_BUSY_WARN && $service_time >= $DSK_SVCT_WARN ||warning after 390s | ||
+ | |- | ||
+ | |OK ||normal || || | ||
+ | |- | ||
+ | |Delete ||built-in ||No data state || | ||
+ | |} | ||
+ | |||
+ | '''States (AIX only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |DSK_VERYBUSY | ||
+ | |warning | ||
+ | |$percent_busy > $DSK_BUSY_PROB | ||
+ | |severe after 120s | ||
+ | |- | ||
+ | |DSK_BUSY | ||
+ | |normal | ||
+ | |$percent_busy > $DSK_BUSY_WARN | ||
+ | |warning after 120s | ||
+ | |- | ||
+ | |DSK_NORMAL | ||
+ | |normal | ||
+ | | | ||
+ | | | ||
+ | |} | ||
+ | |||
+ | ¹ Unfortunately the service time statistic is not available on AIX. The service time is a better indicator of disk IO performance. Even if a disk is 100% busy, there is no real problem unless the service time for the disk is also getting high. | ||
+ | |||
+ | '''States (Windows only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Very_Busy ||warning ||$percent_busy >= $DSK_BUSY_PROB ||alarm after 390s | ||
+ | |- | ||
+ | |Busy ||normal ||$percent_busy >= $DSK_BUSY_WARN ||warning after 390s | ||
+ | |- | ||
+ | |OK ||normal || || | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Error Log Sentry ==== | ||
+ | |||
+ | ;Availability: AIX only | ||
+ | |||
+ | ;NOTE:Certain error log entries are ignored by Sentinel 3G. The list of error codes can be found in a file called exclude_errors under the distrib.db folder under the Sentinel installation (/usr/lpp/cosmos/sentinel_4.2/distrib.db by default on AIX) | ||
+ | |||
+ | '''States (AIX only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |UNKNOWN | ||
+ | |severe | ||
+ | |$Type == “unknown” | ||
+ | |acknowledgement | ||
+ | |- | ||
+ | |PERMANENT | ||
+ | |alarm | ||
+ | |$Type == “permanent” | ||
+ | |acknowledgement | ||
+ | |- | ||
+ | |TEMPORARY | ||
+ | |warning | ||
+ | |$Type == “temporary” | ||
+ | |acknowledgement | ||
+ | |- | ||
+ | |INFORMATION | ||
+ | |info | ||
+ | |$Type == “informational” | ||
+ | |acknowledgement | ||
+ | |- | ||
+ | |PENDING | ||
+ | |info | ||
+ | |$Type == “pending” | ||
+ | |acknowledgement | ||
+ | |- | ||
+ | |PERFORMANCE | ||
+ | |info | ||
+ | |$Type == “performance” | ||
+ | |acknowledgement | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | ==== EventLog Sentry ==== | ||
+ | |||
+ | ;Availability: Windows only | ||
+ | |||
+ | '''States (Windows only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Error ||severe ||$type == “error” || $type == “audit failure” ||delete after acknowledgement | ||
+ | |- | ||
+ | |Warning ||warning ||$type == “temporary” ||delete after acknowledgement | ||
+ | |- | ||
+ | |Information ||info ||$type == “information” || $type == “audit success” ||delete after acknowledgement | ||
+ | |- | ||
+ | |Unknown ||alarm || ||delete after acknowledgement | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== FileInfo Sentry ==== | ||
+ | |||
+ | ;Availability: Windows only | ||
+ | |||
+ | '''States (Windows only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Nonexistent ||alarm ||$exists == 0 || | ||
+ | |- | ||
+ | |No_Access ||warning ||$owner == “CAN'T ACCESS FILE” || | ||
+ | |- | ||
+ | |Dir_Exists ||normal ||$type == “directory” || | ||
+ | |- | ||
+ | |File_Exists ||normal || || | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Filesystem Sentry ==== | ||
+ | |||
+ | ;Availability: AIX, HPUX, Linux, SCO, Solaris, Tru64, Windows | ||
+ | |||
+ | '''Constants''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |LOW ||Indicating low free space ||10 | ||
+ | |- | ||
+ | |VERY_LOW ||Indicating very low free space ||5 | ||
+ | |- | ||
+ | |NEARLY_FULL ||Indicating the filesystem is nearly full ||2 | ||
+ | |- | ||
+ | |FULL ||Indicating the filesystem is full ||0 | ||
+ | |} | ||
+ | |||
+ | '''States (HPUX, Linux, Solaris, Tru64, Windows)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Full ||critical ||$pct_free == $FS_FULL || | ||
+ | |- | ||
+ | |Nearly_Full ||alarm ||$pct_free < $FS_NEARLY_FULL ||severe after 930s | ||
+ | |- | ||
+ | |Very_Low ||warning ||$pct_free < $FS_VERY_LOW ||alarm after 930s | ||
+ | |- | ||
+ | |Low ||normal ||$pct_free < $FS_LOW ||warning after 930s | ||
+ | |- | ||
+ | |OK ||normal || || | ||
+ | |- | ||
+ | |Delete ||built-in ||No data state || | ||
+ | |} | ||
+ | |||
+ | '''States (AIX only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |FULL | ||
+ | |critical | ||
+ | |$pct_free == $FS_FULL | ||
+ | | | ||
+ | |- | ||
+ | |NO_INODES | ||
+ | |critical | ||
+ | |$pct_free_inodes == $FS_FULL | ||
+ | | | ||
+ | |- | ||
+ | |NEARLY_FULL | ||
+ | |severe | ||
+ | |$pct_free < $FS_NEARLY_FULL | ||
+ | | | ||
+ | |- | ||
+ | |FEW_INODES | ||
+ | |severe | ||
+ | |$pct_free_inodes < $FS_NEARLY_FULL | ||
+ | | | ||
+ | |- | ||
+ | |VERY_LOW | ||
+ | |alarm | ||
+ | |$pct_free < $FS_VERY_LOW | ||
+ | | | ||
+ | |- | ||
+ | |VLOW_INODES | ||
+ | |alarm | ||
+ | |$pct_free_inodes < $FS_VERY_LOW | ||
+ | | | ||
+ | |- | ||
+ | |LOW | ||
+ | |warning | ||
+ | |$pct_free < $FS_LOW | ||
+ | | | ||
+ | |- | ||
+ | |LOW_INODES | ||
+ | |warning | ||
+ | |$pct_free_inodes < $FS_LOW | ||
+ | | | ||
+ | |- | ||
+ | |SUFFICIENT | ||
+ | |normal | ||
+ | | | ||
+ | | | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Paging File Space Sentry ==== | ||
+ | |||
+ | ;Availability: Windows only | ||
+ | |||
+ | '''Constants''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |SWAP_LOW ||Low percent free swap space ||15 | ||
+ | |- | ||
+ | |SWAP_VERY_LOW ||Very low percent free swap space ||8 | ||
+ | |} | ||
+ | |||
+ | '''States''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Very_Low ||warning ||$pct_avail_page <= $SWAP_VERY_LOW ||alarm after 570s | ||
+ | |- | ||
+ | |Low ||normal ||$pct_avail_page <= $SWAP_LOW ||warning after 570s | ||
+ | |- | ||
+ | |OK ||normal || || | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Paging Rate Sentry ==== | ||
+ | |||
+ | ;Availability: AIX, HPUX, Linux, SCO, Solaris, Tru64, Windows | ||
+ | |||
+ | '''Constants (AIX only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |OVER_PAGING | ||
+ | |Too many page ins or outs per second | ||
+ | |10 | ||
+ | |} | ||
+ | |||
+ | '''States (AIX only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |BUSY | ||
+ | |normal | ||
+ | |$pgins_per_sec >= $OVER_PAGING || $pgouts_per_sec >= $OVER_PAGING | ||
+ | |alarm after 62s | ||
+ | |- | ||
+ | |ACCEPTABLE | ||
+ | |normal | ||
+ | | | ||
+ | | | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Physical Memory Sentry ==== | ||
+ | |||
+ | ;Availability: HPUX, Linux, Solaris, Windows | ||
+ | |||
+ | '''Constants (Solaris only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |RESTIME_LONG ||Very long residency time ||600 | ||
+ | |- | ||
+ | |RESTIME_OK ||Acceptable residency time (ms) ||40 | ||
+ | |- | ||
+ | |RESTIME_PROB ||Indicating residency time is too short ||20 | ||
+ | |} | ||
+ | |||
+ | '''States (Solaris only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Very_Low ||warning ||$residency_time <= $RESTIME_PROB ||alarm after 210s | ||
+ | |- | ||
+ | |Low ||normal ||$residency_time <= $RESTIME_OK ||warning after 210s | ||
+ | |- | ||
+ | |OK ||normal || || | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Swap Space Sentry ==== | ||
+ | |||
+ | ;Availability: AIX, HPUX, Linux, Solaris, Tru64 | ||
+ | |||
+ | '''Constants''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |SWAP_LOW ||Low percent free swap space ||15 | ||
+ | |- | ||
+ | |SWAP_VERY_LOW ||Very low percent free swap space ||10 | ||
+ | |} | ||
+ | |||
+ | '''States''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Very_Low ||warning ||$swap_pct_free <= $SWAP_VERY_LOW ||alarm after 570s | ||
+ | |- | ||
+ | |Low ||normal ||$swap_pct_free <= $SWAP_LOW ||warning after 570s | ||
+ | |- | ||
+ | |OK ||normal || || | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Network Sentry ==== | ||
+ | |||
+ | ;Availability: AIX, HPUX, Linux, SCO, Solaris, Tru64, Windows | ||
+ | |||
+ | '''Constants (AIX, HPUX, Linux, SCO, Solaris, Tru64)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |NET_WORKING ||Less than this many transfers and the network is under-utilised ||50 | ||
+ | |- | ||
+ | |NET_COLL_PROB ||Indicating excessive collisions ||30 | ||
+ | |- | ||
+ | |NET_COLL_WARN ||Indicating many collisions ||15 | ||
+ | |- | ||
+ | |NET_ERROR_OK ||Indicating hardware is OK ||0 | ||
+ | |- | ||
+ | |NET_ERROR_PROB ||Indicating possible hardware error ||0.05 | ||
+ | |} | ||
+ | |||
+ | '''States (AIX, HPUX, Linux, SCO, Solaris, Tru64)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Many_Errors ||warning ||$errors_total >= $NET_ERROR_PROB ||alarm after 390s | ||
+ | |- | ||
+ | |Very_Busy ||warning ||$collisions >= $NET_COLL_PROB && $pckts_transmit > $NET_WORKING ||alarm after 390s | ||
+ | |- | ||
+ | |Some_Errors ||normal ||$errors_total > $NET_ERROR_OK ||warning after 390s | ||
+ | |- | ||
+ | |Busy ||normal ||$collisions >= $NET_COLL_WARN && $pckts_transmit > $NET_WORKING ||warning after 390s | ||
+ | |- | ||
+ | |OK ||normal || || | ||
+ | |} | ||
+ | |||
+ | '''Constants (Windows only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |NET_DROP_OK ||Indicating excessive collisions ||0 | ||
+ | |- | ||
+ | |NET_DROP_PROB ||Indicating many collisions ||1 | ||
+ | |- | ||
+ | |NET_ERROR_OK ||Indicating hardware is OK ||0 | ||
+ | |- | ||
+ | |NET_ERROR_PROB ||Indicating possible hardware error ||0.05 | ||
+ | |} | ||
+ | |||
+ | '''States (Windows only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Many_Errors ||warning ||$pkts_errs_sec >= $NET_ERROR_PROB ||alarm after 390s | ||
+ | |- | ||
+ | |Many_Drops ||warning ||$pkts_drps_sec >= $NET_DROP_PROB ||alarm after 390s | ||
+ | |- | ||
+ | |Some_Errors ||normal ||$pkts_errs_sec > $NET_ERROR_OK ||warning after 390s | ||
+ | |- | ||
+ | |Some_Drops ||normal ||$pkts_drps_sec > $NET_DROP_OK ||warning after 390s | ||
+ | |- | ||
+ | |OK ||normal || || | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Printers Sentry ==== | ||
+ | |||
+ | ;Availability: Windows | ||
+ | |||
+ | '''States (Windows only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Idle ||normal ||$status == “Idle” || | ||
+ | |- | ||
+ | |Printing ||normal ||$status == “Printing” || | ||
+ | |- | ||
+ | |No_Paper ||alarm ||$status == “Paperout” || | ||
+ | |- | ||
+ | |Offline ||info ||$status == “Offline” || | ||
+ | |- | ||
+ | |Paused ||info ||$status == “Paused” || | ||
+ | |- | ||
+ | |Problem ||alarm ||$status == “Error” || | ||
+ | |- | ||
+ | |No_Access ||alarm ||$status == “NoAccess” || | ||
+ | |- | ||
+ | |Unknown ||alarm || || | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Process Sentry ==== | ||
+ | |||
+ | ;Availability: Windows | ||
+ | |||
+ | '''Constants (Windows only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="150" bgcolor="#cccccc" | Constant | ||
+ | !width="500" bgcolor="#cccccc" | Description | ||
+ | !width="65" bgcolor="#cccccc" | Value | ||
+ | |- | ||
+ | |CPU_HIGH ||Percentage CPU usage considered high for a process ||10 | ||
+ | |- | ||
+ | |CPU_PROBLEM ||Unacceptable percentage CPU usage for a process ||50 | ||
+ | |} | ||
+ | |||
+ | '''States (Windows only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |VeryHigh_CPU ||info ||$pct_proc_time >= $CPU_PROBLEM ||warning after 120s, alarm after 300s | ||
+ | |- | ||
+ | |High_CPU ||info ||$pct_proc_time >= $CPU_HIGH || | ||
+ | |- | ||
+ | |OK_CPU ||normal || || | ||
+ | |- | ||
+ | |Not_Running ||built-in ||No data state || | ||
+ | |} | ||
+ | |||
+ | <br> | ||
+ | |||
+ | ==== Services Sentry ==== | ||
+ | |||
+ | ;Availability: AIX, HPUX, Linux, SCO, Solaris, Tru64, Windows | ||
+ | |||
+ | '''States (AIX only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |INACTIVE | ||
+ | |disabled | ||
+ | |$status == “inoperative” | ||
+ | | | ||
+ | |- | ||
+ | |ACTIVE | ||
+ | |normal | ||
+ | | | ||
+ | | | ||
+ | |} | ||
+ | |||
+ | '''States (Linux only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Confused ||info ||$Status == “Off” && $PID != “-1” || | ||
+ | |- | ||
+ | |Off ||normal ||$Status == “Off” || | ||
+ | |- | ||
+ | |Not_Running ||warning ||$PID == -1 || | ||
+ | |- | ||
+ | |Running ||normal ||$PID != -1 || | ||
+ | |} | ||
+ | |||
+ | '''States (HPUX, Solaris, Tru64)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Not_Running ||warning ||$count == 0 || | ||
+ | |- | ||
+ | |Runing ||normal || || | ||
+ | |} | ||
+ | |||
+ | '''States (Windows only)''' | ||
+ | |||
+ | {| border="1" cellpadding="6" cellspacing="0" | ||
+ | !width="125" bgcolor="#cccccc" | State | ||
+ | !width="65" bgcolor="#cccccc" | Severity | ||
+ | !width="390" bgcolor="#cccccc" | Condition | ||
+ | !width="120" bgcolor="#cccccc" | Escalation | ||
+ | |- | ||
+ | |Down ||alarm ||$state == “Stopped” && $start == “Automatic” || | ||
+ | |- | ||
+ | |Confused ||info ||$state == “Running” && $start == “Disabled” || | ||
+ | |- | ||
+ | |Running ||normal ||$state == “Running” || | ||
+ | |- | ||
+ | |Disabled ||disabled ||$state == “Stopped” && $start == “Disabled” || | ||
+ | |- | ||
+ | |Paused ||info ||$state == “Running” || | ||
+ | |- | ||
+ | |Intermediate||info ||$state == “Starting” || $state == “Stopping” || $state == “Continue pending” || $state == “Pause pending” || | ||
+ | |- | ||
+ | |Unknown ||alarm || || | ||
+ | |} | ||
<br> | <br> |
Current revision
Overview
The primary aim of the operating system knowledge bases in Sentinel3G is to provide a base level of operations monitoring that is consistent across various UNIX/Linux platforms. Due to differences between the various operating systems we monitor, complete consistency is not always achievable. This document describes the general content of the OS knowledge bases, and the discrepancies between them on different platforms.
Standard Knowledge Base
The standard knowledge base is OS independent, and so is packaged with Sentinel3G on all Operating Systems. It can be upgraded, but not uninstalled.
Sentry | AIX | HPUX | Linux | Solaris | Tru64 | Unixware | Windows |
---|---|---|---|---|---|---|---|
Connectivity¹ | √ | √ | √ | √ | √ | √ | √ |
Event_Manager¹ | √ | √ | √ | √ | √ | √ | √ |
Host_Monitor | √ | √ | √ | √ | √ | √ | √ |
Scheduler² | √ | √ | √ | √ | √ | √ | √ |
¹ Connectivity and Event_Manager sentries are only started on the Event Host.
² Scheduler sentry is not started by default. Please read the online documentation for details on how to use the Scheduler sentry.
OS Knowledge Base Versions
OS | Version | Availability Date | Min Sentinel Version |
---|---|---|---|
AIX risc | 2.1 | 17th Mar, 2004 | 4.4 |
HPUX parisc | 2.1 | 11th May, 2004 | 4.4 |
HPUX intel | 2.2 | 6th Jul, 2006 | 4.4.3 |
Linux intel | 2.1 | 20th Apr, 2004 | 4.4.3 |
Solaris intel | 2.1 | 14th Jan, 2003 | 4.4 |
Solaris sparc | 2.2 | 10th Apr, 2006 | 4.4.3 |
Tru64 alpha | 2.1 | 2nd Jun, 2004 | 4.4 |
Unixware intel | 1.0 | 10th Mar, 2004 | 4.2 |
Windows intel | 2.2 | 28th Apr, 2006 | 4.4.3 |
OS Knowledge Bases
CPU Class
Sentry | AIX | HPUX | Linux | SCO | Solaris | Tru64 | Windows |
---|---|---|---|---|---|---|---|
CPU_States¹ | √ | √ | √ | √ | √ | √ | √ |
Context_Switches | √ | √ | √ | √ | √ | √ | |
Interrupts | √ | √ | √ | √ | √ | ||
Run_Queue | √ | √ | √ | √ | √ | √ | √ |
Processors | √ | √ | √ | √ | |||
System_Calls | √ | √ | √ | √ | √ |
- NOTE
- Certain operating systems do not provide all the CPU statistics by default, and collecting them may require kernel patches or third party collection tools. Solaris requires packages SUNWaccr and SUNWaccu. Tru64 requires …
¹ All operating systems monitor % System, % User and % Idle CPU time, some OSes provide more information:
OS | More CPU_States Information | Description |
---|---|---|
AIX, Solaris, Tru64 | % Wait IO | The amount of time spent waiting for blocked I/0 to complete. |
Linux | % Nice CPU | The percentage of time that the system is in the user state running processes at low (nice) scheduling priority. |
HPUX |
Disk Class
Sentry | AIX | HPUX | Linux | SCO | Solaris | Tru64 | Windows |
---|---|---|---|---|---|---|---|
Disk | √ | √ | √ | √ | √ | √ | √ |
Error Log Class
Sentry | AIX | HPUX | Linux | SCO | Solaris | Tru64 | Windows |
---|---|---|---|---|---|---|---|
Error_Log | √ |
Event Log Class
Sentry | AIX | HPUX | Linux | SCO | Solaris | Tru64 | Windows |
---|---|---|---|---|---|---|---|
EventLog | √ |
Files Class
Sentry | AIX | HPUX | Linux | SCO | Solaris | Tru64 | Windows |
---|---|---|---|---|---|---|---|
File_Info | √ |
Filesystem Class
Sentry | AIX | HPUX | Linux | SCO | Solaris | Tru64 | Windows |
---|---|---|---|---|---|---|---|
Filesystem | √¹ | √ | √ | √ | √ | √ | √ |
¹ AIX provides two sentries for free space monitoring, one sentry specifically for /usr (with less sensitive thresholds) and another for the other filesystems.
Memory Class
Sentry | AIX | HPUX | Linux | SCO | Solaris | Tru64 | Windows |
---|---|---|---|---|---|---|---|
Paging_File_Space | √ | ||||||
Paging_Rate | √ | √ | √ | √ | √ | √ | |
Physical_Memory | √ | √ | √ | √ | |||
Swap_Rate | √ | √ | √ | ||||
Swap_Space | √ | √ | √ | √ | √ | √ | |
Virtual_Memory | √ |
- NOTE
- Certain operating systems do not provide all the memory statistics, as it may not be relevant (eg Swap_Rate on Tru64 and AIX).
Printers Class
Sentry | AIX | HPUX | Linux | SCO | Solaris | Tru64 | Windows |
---|---|---|---|---|---|---|---|
Printers | √ |
Network Class
Sentry | AIX | HPUX | Linux | SCO | Solaris | Tru64 | Windows |
---|---|---|---|---|---|---|---|
Network | √ | √ | √ | √ | √ | √ | √ |
Processes Class
Sentry | AIX | HPUX | Linux | SCO | Solaris | Tru64 | Windows |
---|---|---|---|---|---|---|---|
Process | ¹ | ¹ | ¹ | ¹ | ¹ | ¹ | √ |
¹ Use the Process Knowledge Base instead.
Services Class
Sentry | AIX | HPUX | Linux | SCO | Solaris | Tru64 | Windows |
---|---|---|---|---|---|---|---|
Services | √¹ | √ | √² | √ | √ | √ | √ |
¹ AIX provides a complete service management interface using lssrc, startsrc and stopsrc. This interface has been implemented via actions on the Services sentry on AIX.
² Linux provides a complete service management interface using chkconfig and the startup/shutdown scripts in /etc/init.d (/etc/rc.d/init.d on older systems). This interface has been implemented via actions on the Services sentry on Linux.
System Class
Sentry | AIX | HPUX | Linux | SCO | Solaris | Tru64 | Windows |
---|---|---|---|---|---|---|---|
CPU_Information | √ | √ | √¹ | √ | √ | √ | √ |
Memory_Information | √ | √ | √ | √ | √ | √ | √ |
Operating_System | √ | √ | √ | √ | √ | √ | √ |
System_Uptime | √ | √ | √ | √ | √ | √ | √ |
¹ The Linux OS on the i386 platform provides additional CPU information including the approximate speed and vendor of the processors.
Sentry Details
Overview
Sentry | Class | Agent | Poll Time | States | Logging |
---|---|---|---|---|---|
CPU_States | CPU | Performance | 60s | AIX only | √ |
Context_Switches | CPU | Performance | 60s | √ | |
Interrupts | CPU | Performance | 60s | √ | |
Run_Queue | CPU | Performance | 60s | √ | √ |
Processors | CPU/Processors | MultiProcessor | 60s | ||
System_Calls | CPU | Performance | 60s | √ | |
Disk | Disk | Disk | 120s | √ | √ |
Error_Log | Error_Log | ErrorLog | 120s | √ | |
EventLog | EventLog | EventLog | 90s | √ | |
File_Info | Files | FileInfo | 60s | √ | |
Filesystem | Filesystem | Filesystem | 300s | √ | √ |
Paging_File_Space | Memory | PageSpace | 180s | √ | √ |
Paging_Rate | Memory | Performance | 60s | AIX only | √ |
Physical_Memory | Memory | Performance | 60s | Solaris only | √ |
Swap_Rate | Memory | Performance | 60s | √ | |
Swap_Space (Linux) | Memory | Performance | 60s | √ | √ |
Swap_Space (Unix) | Memory | Swap | 180s | √ | √ |
Virtual_Memory | Memory | MemoryInfo | 60s | √ | |
Network | Network | Network | 120s | √ | √ |
Printers | Printers | Printers | 180s | √ | |
Process | Processes | ProcessInfo | 75s | √ | √ |
Services | Services | Service | 120s | √ | |
CPU_Information | System | Information | n/a³ | ||
Memory_Information | System | Information | n/a³ | ||
Operating_System | System | Information | n/a³ | ||
System_Uptime | System | Uptime | 100s |
¹ Packets sent and received are known only as sent and received on Solaris and Linux.
² The BadSU agent is a LogFile agent, and so does not have a poll time. Any new data is interpreted whenever the logfile being monitored changes.
³ The Information agent (Hardware agent on Linux) is essentially run only once.
Sentry State Details
CPU States Sentry
- Availability
- AIX¹, HPUX, Linux, SCO, Solaris, Tru64, Windows
Constants (AIX only)
Constant | Description | Value |
---|---|---|
CPU_BUSY | User + System percentage indicating the CPU is busy | 90 |
CPU_OVERLOADED | User + System percentage indicating the CPU is overloaded | 95 |
States (AIX only)
State | Severity | Condition | Escalation |
---|---|---|---|
OVERLOAD_CPU | warning | $cpu_user + $cpu_system > $CPU_OVERLOADED | severe after 120s |
BUSY_CPU | normal | $cpu_user + $cpu_system > $CPU_BUSY | warning after 120s |
NOT_BUSY | normal |
¹ The CPU States sentry only has constants and states defined for AIX.
Run Queue Sentry
- Availability
- AIX, HPUX, Linux, SCO, Solaris, Tru64, Windows
Constants
Constant | Description | Value |
---|---|---|
RUNQ_WARN | Run queue is getting long | 3 |
RUNQ_PROB | Run queue is too long | 6 |
States (HPUX, Linux, SCO, Solaris, Tru64, Windows)
State | Severity | Condition | Escalation |
---|---|---|---|
Very_Busy | warning | $run_queue > $RUNQ_PROB | alarm after 210s |
Busy | normal | $run_queue > $RUNQ_WARN | warning after 210s |
OK | normal |
States (AIX only)
State | Severity | Condition | Escalation |
---|---|---|---|
OVERLOAD | warning | $run_queue > $RUNQ_PROB | severe after 120s |
BUSY | normal | $run_queue > $RUNQ_WARN | warning after 120s |
NORMAL | normal |
System Calls Sentry
- Availability
- AIX, SCO, Tru64
Constants (AIX, SCO, Tru64)
Constant | Description | Value |
---|---|---|
CPU_SYSCALLS | Too many system calls per second | 10000 |
States (AIX, SCO, Tru64)
State | Severity | Condition | Escalation |
---|---|---|---|
BUSY | normal | $sys_per_sec > $CPU_SYSCALLS | alarm after 120s |
NORMAL | normal |
Disk Sentry
- Availability
- AIX¹, HPUX, Linux, SCO, Solaris, Tru64, Windows
Constants (HPUX, Linux, Solaris, Tru64)
Constant | Description | Value |
---|---|---|
DSK_BUSY_WARN | % busy indicating disk is busy | 5 |
DSK_BUSY_PROB | % busy indicating disk is very busy | 20 |
DSK_SVCT_WARN | Indicates a long service time (ms) | 30 |
DSK_SVCT_PROB | Indicates a very long service time (ms) | 50 |
Constants (AIX, Windows)
Constant | Description | Value |
---|---|---|
DSK_BUSY_WARN | % busy indicating disk is busy | 40 |
DSK_BUSY_PROB | % busy indicating disk is very busy | 60 |
States (HPUX, Linux, Solaris, Tru64)
State | Severity | Condition | Escalation |
---|---|---|---|
Very_Busy | warning | $percent_busy >= $DSK_BUSY_PROB && $service_time >= $DSK_SVCT_PROB | alarm after 390s |
Busy | normal | $percent_busy >= $DSK_BUSY_WARN && $service_time >= $DSK_SVCT_WARN | warning after 390s |
OK | normal | ||
Delete | built-in | No data state |
States (AIX only)
State | Severity | Condition | Escalation |
---|---|---|---|
DSK_VERYBUSY | warning | $percent_busy > $DSK_BUSY_PROB | severe after 120s |
DSK_BUSY | normal | $percent_busy > $DSK_BUSY_WARN | warning after 120s |
DSK_NORMAL | normal |
¹ Unfortunately the service time statistic is not available on AIX. The service time is a better indicator of disk IO performance. Even if a disk is 100% busy, there is no real problem unless the service time for the disk is also getting high.
States (Windows only)
State | Severity | Condition | Escalation |
---|---|---|---|
Very_Busy | warning | $percent_busy >= $DSK_BUSY_PROB | alarm after 390s |
Busy | normal | $percent_busy >= $DSK_BUSY_WARN | warning after 390s |
OK | normal |
Error Log Sentry
- Availability
- AIX only
- NOTE
- Certain error log entries are ignored by Sentinel 3G. The list of error codes can be found in a file called exclude_errors under the distrib.db folder under the Sentinel installation (/usr/lpp/cosmos/sentinel_4.2/distrib.db by default on AIX)
States (AIX only)
State | Severity | Condition | Escalation |
---|---|---|---|
UNKNOWN | severe | $Type == “unknown” | acknowledgement |
PERMANENT | alarm | $Type == “permanent” | acknowledgement |
TEMPORARY | warning | $Type == “temporary” | acknowledgement |
INFORMATION | info | $Type == “informational” | acknowledgement |
PENDING | info | $Type == “pending” | acknowledgement |
PERFORMANCE | info | $Type == “performance” | acknowledgement |
EventLog Sentry
- Availability
- Windows only
States (Windows only)
State | Severity | Condition | Escalation |
---|---|---|---|
Error | severe | $type == “error” || $type == “audit failure” | delete after acknowledgement |
Warning | warning | $type == “temporary” | delete after acknowledgement |
Information | info | $type == “information” || $type == “audit success” | delete after acknowledgement |
Unknown | alarm | delete after acknowledgement |
FileInfo Sentry
- Availability
- Windows only
States (Windows only)
State | Severity | Condition | Escalation |
---|---|---|---|
Nonexistent | alarm | $exists == 0 | |
No_Access | warning | $owner == “CAN'T ACCESS FILE” | |
Dir_Exists | normal | $type == “directory” | |
File_Exists | normal |
Filesystem Sentry
- Availability
- AIX, HPUX, Linux, SCO, Solaris, Tru64, Windows
Constants
Constant | Description | Value |
---|---|---|
LOW | Indicating low free space | 10 |
VERY_LOW | Indicating very low free space | 5 |
NEARLY_FULL | Indicating the filesystem is nearly full | 2 |
FULL | Indicating the filesystem is full | 0 |
States (HPUX, Linux, Solaris, Tru64, Windows)
State | Severity | Condition | Escalation |
---|---|---|---|
Full | critical | $pct_free == $FS_FULL | |
Nearly_Full | alarm | $pct_free < $FS_NEARLY_FULL | severe after 930s |
Very_Low | warning | $pct_free < $FS_VERY_LOW | alarm after 930s |
Low | normal | $pct_free < $FS_LOW | warning after 930s |
OK | normal | ||
Delete | built-in | No data state |
States (AIX only)
State | Severity | Condition | Escalation |
---|---|---|---|
FULL | critical | $pct_free == $FS_FULL | |
NO_INODES | critical | $pct_free_inodes == $FS_FULL | |
NEARLY_FULL | severe | $pct_free < $FS_NEARLY_FULL | |
FEW_INODES | severe | $pct_free_inodes < $FS_NEARLY_FULL | |
VERY_LOW | alarm | $pct_free < $FS_VERY_LOW | |
VLOW_INODES | alarm | $pct_free_inodes < $FS_VERY_LOW | |
LOW | warning | $pct_free < $FS_LOW | |
LOW_INODES | warning | $pct_free_inodes < $FS_LOW | |
SUFFICIENT | normal |
Paging File Space Sentry
- Availability
- Windows only
Constants
Constant | Description | Value |
---|---|---|
SWAP_LOW | Low percent free swap space | 15 |
SWAP_VERY_LOW | Very low percent free swap space | 8 |
States
State | Severity | Condition | Escalation |
---|---|---|---|
Very_Low | warning | $pct_avail_page <= $SWAP_VERY_LOW | alarm after 570s |
Low | normal | $pct_avail_page <= $SWAP_LOW | warning after 570s |
OK | normal |
Paging Rate Sentry
- Availability
- AIX, HPUX, Linux, SCO, Solaris, Tru64, Windows
Constants (AIX only)
Constant | Description | Value |
---|---|---|
OVER_PAGING | Too many page ins or outs per second | 10 |
States (AIX only)
State | Severity | Condition | Escalation |
---|---|---|---|
BUSY | normal | $pgins_per_sec >= $OVER_PAGING || $pgouts_per_sec >= $OVER_PAGING | alarm after 62s |
ACCEPTABLE | normal |
Physical Memory Sentry
- Availability
- HPUX, Linux, Solaris, Windows
Constants (Solaris only)
Constant | Description | Value |
---|---|---|
RESTIME_LONG | Very long residency time | 600 |
RESTIME_OK | Acceptable residency time (ms) | 40 |
RESTIME_PROB | Indicating residency time is too short | 20 |
States (Solaris only)
State | Severity | Condition | Escalation |
---|---|---|---|
Very_Low | warning | $residency_time <= $RESTIME_PROB | alarm after 210s |
Low | normal | $residency_time <= $RESTIME_OK | warning after 210s |
OK | normal |
Swap Space Sentry
- Availability
- AIX, HPUX, Linux, Solaris, Tru64
Constants
Constant | Description | Value |
---|---|---|
SWAP_LOW | Low percent free swap space | 15 |
SWAP_VERY_LOW | Very low percent free swap space | 10 |
States
State | Severity | Condition | Escalation |
---|---|---|---|
Very_Low | warning | $swap_pct_free <= $SWAP_VERY_LOW | alarm after 570s |
Low | normal | $swap_pct_free <= $SWAP_LOW | warning after 570s |
OK | normal |
Network Sentry
- Availability
- AIX, HPUX, Linux, SCO, Solaris, Tru64, Windows
Constants (AIX, HPUX, Linux, SCO, Solaris, Tru64)
Constant | Description | Value |
---|---|---|
NET_WORKING | Less than this many transfers and the network is under-utilised | 50 |
NET_COLL_PROB | Indicating excessive collisions | 30 |
NET_COLL_WARN | Indicating many collisions | 15 |
NET_ERROR_OK | Indicating hardware is OK | 0 |
NET_ERROR_PROB | Indicating possible hardware error | 0.05 |
States (AIX, HPUX, Linux, SCO, Solaris, Tru64)
State | Severity | Condition | Escalation |
---|---|---|---|
Many_Errors | warning | $errors_total >= $NET_ERROR_PROB | alarm after 390s |
Very_Busy | warning | $collisions >= $NET_COLL_PROB && $pckts_transmit > $NET_WORKING | alarm after 390s |
Some_Errors | normal | $errors_total > $NET_ERROR_OK | warning after 390s |
Busy | normal | $collisions >= $NET_COLL_WARN && $pckts_transmit > $NET_WORKING | warning after 390s |
OK | normal |
Constants (Windows only)
Constant | Description | Value |
---|---|---|
NET_DROP_OK | Indicating excessive collisions | 0 |
NET_DROP_PROB | Indicating many collisions | 1 |
NET_ERROR_OK | Indicating hardware is OK | 0 |
NET_ERROR_PROB | Indicating possible hardware error | 0.05 |
States (Windows only)
State | Severity | Condition | Escalation |
---|---|---|---|
Many_Errors | warning | $pkts_errs_sec >= $NET_ERROR_PROB | alarm after 390s |
Many_Drops | warning | $pkts_drps_sec >= $NET_DROP_PROB | alarm after 390s |
Some_Errors | normal | $pkts_errs_sec > $NET_ERROR_OK | warning after 390s |
Some_Drops | normal | $pkts_drps_sec > $NET_DROP_OK | warning after 390s |
OK | normal |
Printers Sentry
- Availability
- Windows
States (Windows only)
State | Severity | Condition | Escalation |
---|---|---|---|
Idle | normal | $status == “Idle” | |
Printing | normal | $status == “Printing” | |
No_Paper | alarm | $status == “Paperout” | |
Offline | info | $status == “Offline” | |
Paused | info | $status == “Paused” | |
Problem | alarm | $status == “Error” | |
No_Access | alarm | $status == “NoAccess” | |
Unknown | alarm |
Process Sentry
- Availability
- Windows
Constants (Windows only)
Constant | Description | Value |
---|---|---|
CPU_HIGH | Percentage CPU usage considered high for a process | 10 |
CPU_PROBLEM | Unacceptable percentage CPU usage for a process | 50 |
States (Windows only)
State | Severity | Condition | Escalation |
---|---|---|---|
VeryHigh_CPU | info | $pct_proc_time >= $CPU_PROBLEM | warning after 120s, alarm after 300s |
High_CPU | info | $pct_proc_time >= $CPU_HIGH | |
OK_CPU | normal | ||
Not_Running | built-in | No data state |
Services Sentry
- Availability
- AIX, HPUX, Linux, SCO, Solaris, Tru64, Windows
States (AIX only)
State | Severity | Condition | Escalation |
---|---|---|---|
INACTIVE | disabled | $status == “inoperative” | |
ACTIVE | normal |
States (Linux only)
State | Severity | Condition | Escalation |
---|---|---|---|
Confused | info | $Status == “Off” && $PID != “-1” | |
Off | normal | $Status == “Off” | |
Not_Running | warning | $PID == -1 | |
Running | normal | $PID != -1 |
States (HPUX, Solaris, Tru64)
State | Severity | Condition | Escalation |
---|---|---|---|
Not_Running | warning | $count == 0 | |
Runing | normal |
States (Windows only)
State | Severity | Condition | Escalation |
---|---|---|---|
Down | alarm | $state == “Stopped” && $start == “Automatic” | |
Confused | info | $state == “Running” && $start == “Disabled” | |
Running | normal | $state == “Running” | |
Disabled | disabled | $state == “Stopped” && $start == “Disabled” | |
Paused | info | $state == “Running” | |
Intermediate | info | $state == “Starting” || $state == “Stopping” || $state == “Continue pending” || $state == “Pause pending” | |
Unknown | alarm |