Use the built-in problem and alert signatures in vRealize Log Insight for an ESXi host and a vCenter Server to enable alerts for these components and map these alerts to the vRealize Operations Manager inventory. For each alert, you create one instance for the management data center and one instance for the shared edge and compute data center in each region.
For basic monitoring of the vSphere components, use the following alerts:
Alert Name |
Purpose |
Severity |
---|---|---|
*** CRITICAL *** ESXi: Core dump detected |
This alert indicates the failure of a component in the ESXi host. This problem can lead to failing VMs and ESXi host PSODs. |
Critical |
*** CRITICAL *** Hardware: Physical event detected |
This alert notifies when physical hardware events have been detected and that indicate a hardware problem. In normal conditions, this alert returns no results. The following types of hardware events are returned:
|
Critical |
Hardware: Faulty memory detected |
During the previous start of an ESXi host, faulty memory was detected. You might replace the memory, unless you see a corresponding corrected message. |
Critical |
*** CRITICAL *** ESXi: Stopped logging |
This alert notifies when an ESXi host has stopped sending syslog events to a remote server. |
Critical |
*** CRITICAL *** ESXi: RAM disk / inode table is full |
A ESXi host root file system has reached its resource pool limit. Various administrative actions depend on the ability to write files to the root file system and can fail when the RAM disk or inode table is full. |
Critical |
ESXi: HA isolated events by hostname |
During a health check, HA determined that an ESXi host was isolated. Depending on how HA is configured this alert can mean that VMs have been failed over from the isolated host. |
Critical |
vCenter Server: HA connection failure detected |
A HA cluster has detected one or more unresponsive ESXi hosts. If any ESXi hosts get marked as dead, then VMs running on them are migrated to other hosts. |
Critical |
Procedure
- Open the vRealize Log Insight user interface.
- Open a Web browser and go to the following URL.
Region
vRealize Log Insight URL
Region A
https://sfo01vrli01.sfo01.rainpole.local
Region B
https://lax01vrli01.lax01.rainpole.local
- Log in using the following credentials.
Setting
Value
User name
admin
Password
vrli_admin_password
- Open a Web browser and go to the following URL.
- In the vRealize Log Insight user interface, click Interactive Analytics.
- Click the
icon and select Manage Alerts.
- Select an alert that is related to vSphere resources.
- Create an instance of the alert for each data center in the region.
- Repeat Step 3 to Step 5 for the rest of the alerts, configuring two instances of each alert in the region.
- Repeat the procedure in vRealize Log Insight to create the alerts for both data centers in the other region.