New Health and Wellness Monitors
New Health and Wellness MonitorsNew Health and Wellness Monitors
This topic lists the default New Health and Wellness monitors.
- Number: 1.
- Monitor: Respond Server Risk Scoring Unprocessed Alerts High Count
- Number: 2.
- Monitor: Respond Server Risk Scoring Unprocessed Alert Older Than 24 Hours
- Number: 3.
- Monitor: Respond Server Risk Scoring Transient Alerts Ignored High Count
- Number: 4.
- Monitor: Reporting Engine Shared Task Critical Utilization
- Number: 5.
- Monitor: Reporting Engine Schedule Task Pool Critical Utilization
- Number: 6.
- Monitor: Reporting Engine Rule(s) Execution Failed
- Number: 7.
- Monitor: Reporting Engine Report(s) Running > 1 hour
- Number: 8.
- Monitor: Reporting Engine Report(s) Executions Failed
- Number:
9.
- Monitor:
Reporting Engine Chart(s) Execution Failed
- Number: 10.
- Monitor: Reporting Engine Available Disk < 5%
- Number:
11.
- Monitor:
Reporting Engine Available Disk < 20%
- Number: 12.
- Monitor: Reporting Engine Available Disk < 2%
- Number:
13.
- Monitor:
Reporting Engine Available Disk < 10%
- Number: 14.
- Monitor: NW Offline Service
- Number:
15.
- Monitor:
NW Host High Swap Utilization
- Number: 16.
- Monitor: NW Host Filesystem Disk Full
- Number:
17.
- Monitor:
NW Host Critical Memory Usage
- Number: 18.
- Monitor: NW Host Critical Disk Usage
- Number:
19.
- Monitor:
NW Host Critical CPU Usage
- Number: 20.
- Monitor: Log Decoder Service in Bad State
- Number:
21.
- Monitor:
Log Decoder Log Capture Pool Depleted
- Number: 22.
- Monitor: Log Decoder Invalid Rules Detected
- Number:
23.
- Monitor:
Log Decoder Dropping > 5% of Logs
- Number: 24.
- Monitor: Log Decoder Dropping > 10% of Logs
- Number:
25.
- Monitor:
Log Decoder Dropping > 1% of Logs
- Number: 26.
- Monitor: Log Decoder Database(s) Not Open
- Number:
27.
- Monitor:
Log Decoder Capture Rate Zero
- Number: 28.
- Monitor: Log Decoder Capture Not Started
- Number:
29.
- Monitor:
Endpoint Server to Agent - Incoming UDP Packets Requested
- Number: 30.
- Monitor: Endpoint Server to Agent - Incoming UDP Packets Rejected
- Number:
31.
- Monitor:
Endpoint Server to Agent - Incoming UDP Packets Queued
- Number: 32.
- Monitor: Endpoint Server to Agent - Incoming UDP Packets Dropped
- Number:
33.
- Monitor:
Endpoint Server to Agent - Incoming UDP Packets Delayed
- Number: 34.
- Monitor: Endpoint Server - Machine Persistence Failed
- Number:
35.
- Monitor:
Endpoint Server - Inactive Machine Retention Failed
- Number: 36.
- Monitor: ESA Correlation - Sessions Behind on Datasources
- Number:
37.
- Monitor:
ESA Correlation - ESA Rule High Memory Usage
- Number: 38.
- Monitor: ESA Correlation - ESA Rule High CPU Usage
- Number:
39.
- Monitor:
ESA Correlation - ESA Rule Critical Memory Usage
- Number: 40.
- Monitor: ESA Correlation - ESA Rule Critical CPU Usage
- Number:
41.
- Monitor:
Decoder Service in Bad State
- Number: 42.
- Monitor: Decoder Packet Capture Pool Depleted
- Number:
43.
- Monitor:
Decoder Invalid Rules Detected
- Number: 44.
- Monitor: Decoder Dropping > 5% of Packets
- Number:
45.
- Monitor:
Decoder Dropping > 10% of Packets
- Number: 46.
- Monitor: Decoder Dropping > 1% of Packets
- Number:
47.
- Monitor:
Decoder Database(s) Not Open
- Number: 48.
- Monitor: Decoder Capture Rate Zero
- Number:
49.
- Monitor:
Decoder Capture Not Started
- Number: 50.
- Monitor: Contexthub Server Query Response Cache Usage > 80%
- Number:
51.
- Monitor:
Contexthub Server High Query Response Cache Usage
- Number: 52.
- Monitor: Contexthub Server Database High Disk Usage
- Number:
53.
- Monitor:
Contexthub Server Database Critical Disk Usage
- Number: 54.
- Monitor: Contexthub Server Critical Query Response Cache Usage
- Number:
55.
- Monitor:
Concentrator Service in Bad State
- Number: 56.
- Monitor: Concentrator Meta Rate Zero
- Number:
57.
- Monitor:
Concentrator Individual Rule(s) Detected
- Number: 58.
- Monitor: Concentrator Database(s) Not Open
- Number:
59.
- Monitor:
Concentrator Aggregation Stopped
- Number: 60.
- Monitor: Concentrator > 5 Pending Queries
- Number:
61.
- Monitor:
Broker Session Rate Zero
- Number: 62.
- Monitor: Broker Service in Bad State
- Number:
63.
- Monitor:
Broker Aggregation Stopped
- Number: 64.
- Monitor: Broker > 5 Pending Queries
- Number:
65.
- Monitor:
Archiver Service in Bad State
- Number: 66.
- Monitor: Archiver Aggregation Stopped
- Number:
67.
- Monitor:
Logstash offline
- Number: 68.
- Monitor: Logstash Persisting data