Page 1 of 1

Identification of Genuine and False alerts for Hosts

Posted: Thu May 17, 2018 5:59 am
by RIDS_I2MP
Hi All,

Is there any way we can identify if the alert is False or Genuine for a particular host? The issue we are facing is the host goes down due to a network glitch and comes up in some time. But as it was down we get an alert. This is creating lots of alerts, we are trying to see if there's a way where we can identify the genuine alert.

Re: Identification of Genuine and False alerts for Hosts

Posted: Thu May 17, 2018 9:30 am
by scottwilkerson
When setting up Nagios there is a setting "Max check attempts" that asks how many times the host/service must be down before sending a notification.

The default for this is 5 after changing the check interval from 5 minutes apart to 1 minute apart.

If you changes this to be a lower number that 5, that is probably why you are getting so many notifications.

If your "glitch" is longer than 5 checks in a row, it may be more than a glitch, or you can modify the "Max check attempts" to a higher number