Use the built-in problem and alert signatures in vRealize Log Insight to create alerts for vSAN monitoring and map them to the vRealize Operations Manager inventory. For each alert, you create one instance for the management data center in each region. This validated design uses vSAN only for the SDDC management components. If you use vSAN also for your tenant workloads, configure alerts accordingly.

About this task

For monitoring vSAN in the Software-Defined Data Center, you can use the following alerts in vRealize Log Insight:

Table 1. vSAN Alerts in vRealize Log Insight

Alert Name

Purpose

Severity

VSAN - SSD health change to unhealthy state

This alert will fire when the state of any SSD changes to unhealthy. The reason could be either because of permanent disk failure, disk decommissioning, node shutdown, etc.

Critical

VSAN - Configuration failure - Insufficient space

This alert indicates that we cannot create a configuration for a new object(VM) in the VSAN cluster because sufficient space is not available in the cluster. If we see this error, please check the error logs and try the provisioning operation after adding new hosts/disks.

Critical

VSAN - Device Offline

This alarm will trigger if a particular device goes offline. In this case, please check the device configuration and other cluster state.

Critical

VSAN - Object component state changed to degraded

This alert will be triggered when VSAN object state changes to degraded state. Check the state of the adapters, disks, and network settings associated with the VSAN cluster.

Critical

Procedure

  1. Open the vRealize Log Insight user interface.
    1. Open a Web browser and go to the following URL.

      Region

      vRealize Log Insight URL

      Region A

      https://sfo01vrli01.sfo01.rainpole.local

      Region B

      https://lax01vrli01.lax01.rainpole.local

    2. Log in using the following credentials.

      Setting

      Value

      User name

      admin

      Password

      vrli_admin_password

  2. In the vRealize Log Insight user interface, click Interactive Analytics.
  3. Click the icon and select Manage Alerts.
  4. Select an alert that is related to vSAN storage.
    1. In the search box of the Alerts dialog box, enter the following alert name as a search phrase.

      VSAN - SSD health change to unhealthy state
    2. Select the alert from the search result and click the Edit icon next to the alert name.
  5. Create an instance of the alert for each data center in the region.
    1. In the New Alert dialog box, click Run Query.

      A query editor page opens.

    2. Click Add Filter and use the drop-down menus to define the following filter.

      Table 2. Filters for vRealize Log Insight

      Filter

      Value for Management vSAN Alerts in Region A

      Value for Management vSAN Alerts in Region B

      Object type

      vmw_datacenter

      vmw_datacenter

      Operation

      contains

      contains

      Object

      sfo01-m01dc

      lax01-m01dc

    3. Click on the Search icon.
    4. Click the icon and select Create Alert from Query.
    5. In the New Alert dialog box, configure the following alert settings and click Save.
      Table 3. Alerts for vRealize Log Insight

      Setting

      Value for Management vSAN Alert in Region A

      Value for Management vSAN Alert in Region B

      Name

      VSAN - SSD health change to unhealthy state (sfo01-m01dc)

      VSAN - SSD health change to unhealthy state (lax01-m01dc)

      Description (Recommendation)

      vsan_alert_purpose

      See vSAN Alerts in vRealize Log Insight.

      vsan_alert_purpose

      See vSAN Alerts in vRealize Log Insight.

      Email

      Email address to send alerts to

      Email address to send alerts to

      Send to vRealize Operations Manager

      Selected

      Selected

      Fallback Object (All Objects)

      sfo01-m01dc

      lax01-m01dc

      Criticality

      critical

      critical

      Raise an alert

      On any match

      On any match

    6. If you use a vSAN datastore in the shared edge and compute cluster in both regions, repeat the steps to create an alert instance for the compute data centers.
  6. Repeat Step 3 to Step 5 for the rest of the alerts in the region.
  7. Repeat the procedure in vRealize Log Insight to create the alerts for the management data center in the other region.