Traffic Pattern Monitoring

This support forum board is for support questions relating to Nagios XI, our flagship commercial network monitoring solution.
Locked
weveland
Posts: 125
Joined: Tue Aug 11, 2015 4:10 pm
Location: cat /dev/urandom > /dev/sda

Traffic Pattern Monitoring

Post by weveland »

Just a quick question. I'm running Nagios XI 2014R2.7 and I wasn't sure if there was a better way to create alerts for traffic patterns.

Currently I've created a baseline of what my normal limits should be, then set that as my alert threshold for my router interfaces. However what I'm looking for is something similar to what I have in observium, except that I can alert on.

For instance Observium will overlay a bandwidth line based on trends and previous periods. I'd like to do something similar except create an alert if the current bandwidth exceeds that value [ x > ( n * 2.25) ] for example that would take the normalized value of n and increase it by 225%. if the current bandwidth exceeds this for a period of time, then alert.

I know it sounds complicated, but I know it's possible. I've used Andrisoft Wanguard previously which does the same thing to detect incoming DDoS floods and then shunts the traffic through a filter when it happens.

Thanks everyone!
ssax
Dreams In Code
Posts: 7682
Joined: Wed Feb 11, 2015 12:54 pm

Re: Traffic Pattern Monitoring

Post by ssax »

I don't think there is a way to achieve this functionality in XI, let me reach out to the devs and I'll let you know what they say.
Locked