3 - Event Configuration & Use (34%) Flashcards
What table receives events from monitoring systems in approximately real time including details of the issue?
Events [em_event]
What table receives alerts generated from the processing of events?
Alerts [em_alert]
What are triggers for action that can be apportioned to devices and processes?
Alerts
On a daily basis, events older than ________ days are cleared out of the event table via table rotation.
a) 3
b) 5
c) 7
d) 10
b) 5
What three services appear on the Service Operations Workspace once the service is set to Operational?
Mapped Application Service
Dynamic CI Group
Manual Service
What are the available states of an event?
Ready
Processed
Ignored
Error
What is used for event de-duplication?
Message Key
What field is important for getting feedback on the event processing? You can check this field to see how the event was processed.
Processing Notes
What field is typically one of the fully qualified domain name (FQDN), IP, or MAC address associated with the event?
Node field
What field on the event identifies the monitoring tool generating the event?
Source
What field on the event is required and if not populated will cause an error state?
Severity
What uniquely identifies the event and determines is an existing alert is updated?
Message Key
If an event has no source-provided key, the key is ________________________.
auto-populated in alert