Use the built-in problem and alert signatures in vRealize Log Insight to create alerts about storage and map these alerts to the vRealize Operations Manager inventory. For each alert, you create one instance for the management data center and one instance for the shared edge and compute data center.

About this task

For monitoring storage in the Software-Defined Data Center, you can use the following alerts in vRealize Log Insight:

Table 1. Storage Alerts in vRealize Log Insight

Alert Name

Purpose

Severity

*** CRITICAL *** Storage: All Paths Down (APD)

One or more datastores has experienced an All Paths Down (APD) outage situation. This indicates that one or more datastores is or was unavailable. As a result of this issue, VMs are or were unavailable and ESXi hosts may have been disconnected from vCenter Server. This issue requires immediate attention.

Critical

*** CRITICAL *** Storage: VSAN device offline

A Virtual SAN storage device that backs up the datastores might fail.This occurs due to a faulty device firmware, physical media, or storage controller or when certain storage devices are not readable or writeable.

Typically, such failures are irreversible. In some instances, permanent data loss might also occur, especially when data is not replicated on other nodes before failure. Virtual SAN automatically recovers data when new devices are added to the storage cluster, unless data lost is permanent.

Critical

Storage: NFS connectivity issue

The purpose of this alert is to notify when an NFS connectivity issue was detected. This means an NFS datastore is or was unavailable. Do to this issue, one or more VMs may be unavailable.

Critical

Storage: NFS lock file issue

The purpose of this alert is to notify when an NFS lock file issue has been detected. Stale NFS lock files can prevent VMs from powering on.

Critical

Storage SCSI Path dead

The purpose of this alert is to notify when a SCSI path has become unavailable. Assuming multiple paths are in use and the other paths are online this means reduced redundancy and performance. If all paths to a storage device become unavailable then VMs running on the storage device will become unavailable.

Critical

Storage: Snapshot consolidation required

The purpose of this alert is to notify when a snapshot consolidation is required. A failed snapshot consolidation operation that is not manually addressed can lead to a full datastore.

Critical

Procedure

  1. Open the vRealize Log Insight user interface.
    1. Open a Web browser and go to the following URL.

      Region

      vRealize Log Insight URL

      Region A

      https://sfo01vrli01.sfo01.rainpole.local

      Region B

      https://lax01vrli01.lax01.rainpole.local

    2. Log in using the following credentials.

      Setting

      Value

      User name

      admin

      Password

      vrli_admin_password

  2. In the vRealize Log Insight user interface, click Interactive Analytics.
  3. Click the icon and select Manage Alerts.
  4. Select the alerts that are related to storage.
    1. In the search box of the Alerts dialog box, enter the following alert name as a search phrase.

      *** CRITICAL *** Storage: All Paths Down (APD)
    2. Select the alert from the search result and click the Edit icon next to the alert name.
  5. Create an instance of the alert for each data center in Region A.
    1. In the New Alert dialog box, click Run Query.

      A query editor page opens.

    2. Click Add Filter and use the drop-down menus to define the following filter.

      Filter

      Value for Management Storage Alerts in Region A

      Value for Compute Storage Alerts in Region A

      Object type

      vmw_datacenter

      vmw_datacenter

      Operation

      contains

      contains

      Object

      sfo01-m01dc

      sfo01-w01dc

    3. Click the icon and select Create Alert from Query.
    4. In the New Alert dialog box, configure the following alert settings and click Save.

      Setting

      Value for Management Storage Alert in Region A

      Value for Compute Storage Alert in Region A

      Name

      *** CRITICAL *** Storage: All Paths Down (APD) (sfo01-m01dc)

      *** CRITICAL *** Storage: All Paths Down (APD) (sfo01-w01dc)

      Description (Recommendation)

      storage_alert_purpose

      See Storage Alerts in vRealize Log Insight.

      storage_alert_purpose

      See Storage Alerts in vRealize Log Insight.

      Email

      Email address to send alerts to

      Email address to send alerts to

      Send to vRealize Operations Manager

      Selected

      Selected

      Fallback Object

      sfo01-m01dc

      sfo01-w01dc

      Criticality

      critical

      critical

      Raise an alert

      On any match

      On any match

    5. Repeat the steps to create the alert instance for the other data center in Region A.
  6. Repeat Step 3 to Step 5 for the rest of the alerts, configuring two instances of each alert in Region A: for the sfo01-m01dc and sfo01-w01dc data centers.
  7. Repeat the procedure in vRealize Log Insight in Region B https://lax01vrli01.lax01.rainpole.local to create the alerts for both lax01-m01dc and lax01-w01dc data centers.