Configure Log monitoring alerts so that you can be notified of issues based on the metrics and threshold values you set.
The following procedure allows you to set alerts for Log Monitoring.
- Click the Alerts icon against the saved search Name column. The Alerts page appears.
Note: Alerts are available only for metric and not for table type.
- Click the Configured alerts tab. The Log monitoring capability is selected by default.
- Select the saved search query from the drop-down list to configure alerts.
- Click Add alert.
The following Add alert window appears.
- In the Add alert window fill in the following details:
|Name of the alert. Note that only alphanumeric and a single space between words are allowed.
|List of available saved search you have created.
|The metric for which you want to trigger an alert. The threshold is matched with the metric's real-time value. For more information about the supported metrics for each capability, see Supported metrics for alerts. Note: The following fields are displayed based on the metrics you have selected.
|The options available for this drop-down are based on the metric you select in the Metric drop-down list. For the available options, see Aggregation type options.
|Select greater or lesser than, equal to, greater than or equal to, or lesser than or equal to.
|Select a threshold value. Alerts are triggered if the value over the given period is greater than or equal to the threshold you select.
|The length of time for which the alert is evaluated. Note: When there is a latency between the agent and backend communications, alerts configured for one minute may have some accuracy issues.
|An open alert is marked as closed if there are no new breaches after it reaches the specified period
|The time during which alerts are not triggered.
|The list of configured notification channels. You can select multiple notification channels that are available. If you haven't added a notification channel yet, click Create new channel. For more informaiton about adding notification channels, see step 4 for adding an email notification channel, or see step 4 for adding a slack channel, or see step 4 for adding a webhook notification channel.
|Enter a key and value for an alert tag. The best practice for naming a key would be the capability name followed by the application name at the backend. For example, LM-Count where LM is the capability name and Count is the service name. The value would be the name of the metrics followed by the capability. For example value-LM, where value is the metrics and LM is the capability name.
- Click Add.