Quantcast
Channel: THWACK: All Content - Network Performance Monitor
Viewing all 21870 articles
Browse latest View live

Syslog Crashing Everyday

$
0
0

I see my syslog service crash everyday multiple times.   I am running NPM 11.5.2 on a Win 2008 R2 VM.  I looked at the event log and found a memory error.  I did some digging and found that 32 bit apps can run into this because of the 4GB limit.  Any ideas on how to fix or is there a 64 bit version?

 

Problem signature:

P1: syslogservice.exe

P9: System.OutOfMemoryException


How do I fix this problem?

$
0
0

Whenever I try to change the font network atlas says it needs to close and to contact support. It gives me a big red envelope looking X and then crashes basically. Also what number do I call?

Reporting Issues

$
0
0

We are having issues with automated reports.  When the report is ran the email it sends gives the following error for some attachments:

 

Unable to retrieve url: http://netmon03.westipc.com:80/Orion/Report.aspx?ReportID=303 using Excel type.http://netmon03.westipc.com:80/Orion/Report.aspx?ReportID=303

 

I have tried multiple things to fix this issue; and it seems to be sporadic as it does not always effect the same attachment types and no one attachment type works 100% of the time.

 

Does anyone have any input they can offer?

Network Atlas issue ( crash )

$
0
0

Solarwinds Case # 127036

Thought I would post here on the off chance anyone else has had this issue and knows a fix, yet to hear anything from Solarwinds.

Anyways... easily reproduced on our end on multiple systems. I have tried re-installing Atlas.. no change. Steps to cause the crash:

  • Open a map that has text in Atlas
  • Select a text box with text OTHER then "Microsoft Sans Sarif"
  • Select the "font" drop down in your toolbar
  • Start to type "Microsoft" to highlight the "Microsoft Sans Sarif" font
  • Should crash before you hit "i"

Any ideas ?

Database Maintenance Hanging on "Beginning Maintenance for AlertHistory"

$
0
0

We just finished upgrading our whole environment to the latest versions last week. We are running: NPM 11.5.2, SAM 6.2.1, IPAM 4.3, NCM 7.4, WPM 2.2.0, SRM 6.1.11, NTA 3.11.  Anyway, this morning I noticed that at the top of the Web Console that Database Maintenance is overdue.

 

When I click more details I get this (was originally showing 902 days):

maintenance.PNG

We also dropped "Daily Details", "Wireless Detailed" and "Interface Detailed" from 1460 to 550 days.  Once I saw this was overdue, I assumed our jump was too large, So I switched it to 1250, 200 days less than the original date we had set.  I ran the maintenance and it completed.  So now I set it to 950 days and the database maintenance app seems to be hung at "Beginning Maintenance for AlertHistory".

 

In the swdebugmaintenance.log file I am seeing this:

2015-06-22 07:38:25,554 [5] INFO  SolarWinds.Data.DatabaseMaintenance.MaintenanceEngine - Beginning Maintenance for AlertHistory

*** Assembly SolarWinds.InformationService.Contract2, Version=2015.1.1.6134, Culture=neutral, PublicKeyToken=null, .NET version v4.0.30319 ***

2015-06-22 07:39:48,650 [5] WARN  SolarWinds.InformationService.Contract2.InfoServiceProxy - Support! -- LONG RUNNING QUERY: 82637.919 ms: SELECT AlertObjectID FROM Orion.AlertObjects ao LEFT JOIN Orion.Nodes no ON ao.EntityUri=no.Uri WHERE no.Uri IS NULL AND ao.EntityType = 'Orion.Nodes' RETURN XML RAW

2015-06-22 07:42:58,559 [5] WARN  SolarWinds.InformationService.Contract2.InfoServiceProxy - Support! -- LONG RUNNING QUERY: 189894.0846 ms: SELECT AlertObjectID FROM Orion.AlertObjects ao LEFT JOIN Orion.Volumes no ON ao.EntityUri=no.Uri WHERE no.Uri IS NULL AND ao.EntityType = 'Orion.Volumes' RETURN XML RAW

2015-06-22 07:45:07,127 [5] WARN  SolarWinds.InformationService.Contract2.InfoServiceProxy - Support! -- LONG RUNNING QUERY: 128587.9398 ms: SELECT AlertObjectID FROM Orion.AlertObjects ao LEFT JOIN Orion.NPM.CustomPollerAssignmentOnNode no ON ao.EntityUri=no.Uri WHERE no.Uri IS NULL AND ao.EntityType = 'Orion.NPM.CustomPollerAssignmentOnNode' RETURN XML RAW

2015-06-22 07:46:30,323 [5] WARN  SolarWinds.InformationService.Contract2.InfoServiceProxy - Support! -- LONG RUNNING QUERY: 83192.0432 ms: SELECT AlertObjectID FROM Orion.AlertObjects ao LEFT JOIN Orion.APM.Component no ON ao.EntityUri=no.Uri WHERE no.Uri IS NULL AND ao.EntityType = 'Orion.APM.Component' RETURN XML RAW

 

I'm assuming it will eventually time out and continue on, but it is weird that at 1050 days it completes, but at 950 days it hangs.

 

Any ideas?

Is it possible to add only the SNMP community string?

$
0
0

Hi,

 

I would like to know if i can just add the new community string given by Network team without any node details.

Under Network Sonar Discovery, i see an option to add new credential but then there are other tabs as well. So can any one help in clarifying this?

Dynamic query grouping

$
0
0

For our network, all node hostnames are formatted as: <role>.<street>-<city>.<state>.<region>.domain.com

 

For our shiny new NPM install, I was hoping to build dynamic queries to group the nodes. The idea was to build a parent group for the region, then a child group for the street/city. Getting the child groups filled was easy, but the trickier part is what to do with the nodes that I won't ever fit into a child group. These might be on-off devices which I'd prefer to keep in the parent group. The tough part is that I have no idea how to build a dynamic query for the parent group to include the nodes that match a particular region and are NOT members of a child group. If there was a way to have a dynamic query filter for hostnames that 'do not contain' certain keywords, this could be easy enough. Does anyone know if there is a way to perfom some SQL ninja actions in the dynamic query interface to make this happen?

 

BVD

Upgraded license and web console displaying license status?

$
0
0

We recently upgraded from an SL100 to an SL250 license and now the web console displays that there are 2 licensed products and one in evaluation. I can't figure out how to get rid of this text on the banner of the web console. If anyone knows how to get rid of this please let me know.

 

Thanks,

 

kloepz138


Orion vs Nagios

$
0
0

Hi,


 I have been asked to look at a monitoring solution that can be used to monitor network , servers and applications. Typically us guys in the network team have used Orion for a number of years and are quite comfortable in its use. However our team that looks after servers has used nagios particulary because they come from unix backgrounds. Our applications team dont really use anything.


 My question is basically to find out what advice my colleagues on this forum can give me regarding the advantages / disadvantages of both are. Im not sure either can perform synthetic transactions which would be usefull for applications teams. Although with my limited experience with nagios given enough expertise it could be more customisable than solarwinds. Where as Solarwinds in most cases is functional out the box.


I realise this is a Solarwinds forum, but I do value the opinions of the members. For example if people moved away from nagios to orion or another tool and why.


 BTW one of the other tools i have been looking into are the HP NMS suites.


 


Regard


 


Miron

Multiple CPU Count & Each Load on CPU for the Node

$
0
0

In this post following explained.

 

How Orion will count Multiple CPU from the Node ?

How Orion will collect load on each CPU from the Node ?

 

You can verify and count yourself if there is any mismatch between the Node and  Orion .

 

In order to verify the CPU for (Windows / Linux / Unix ) nodes following OID's should return the value for each CPU core .

1.3.6.1.2.1.25.3.3.1.1 (hrProcessorFrwID) (Number of CPU Core )

1.3.6.1.2.1.25.3.3.1.2 (hrProcessorLoad)  (Each CPU Load )

(For Cisco )

1.3.6.1.4.1.9.9.109.1.1.1.1.2 (Total Physical Index of CPU )

1.3.6.1.4.1.9.9.109.1.1.1.1.7 (Total 1 min for each CPU)

1.3.6.1.4.1.9.9.109.1.1.1.1.8 (Total 5 min for each CPU )

 

For Cisco Extreme Switches

1.3.6.1.4.1.1916.1.1.1.28.0  ( extremeCpuAggregateUtilization )

FoundryextremeCpuAggregateUtilization1.3.6.1.4.1.1916.1.1.1.28.0

http://knowledgebase.solarwinds.com/kb/questions/1195/What+CPU+and+memory+utilization+object+IDs+%28OIDs%29+does+Orion+NPM+poll%3F

 

Free CISCO-PROCESS-MIB SNMP MIB Download - Free MIB Download - Search MIBs - OiDViEW

Monitoring CPU utilization on IOS-XR based platforms using SNMP tools - Cisco Support Community

 

You can create Universal Device Poller in order to verify the Value is been returned correctly by the Node for each core .

Launch UDP.

Start > All programs > SolarWinds Orion > Network Performance Monitor > Universal Device Poller

place the OID click Browse MIB Tree

UNDP1.JPG

Select your Node and Test in this Node can see 4 CPU is been presented

core .JPG

 

How Orion will collect load on each CPU from the Node .

 

Now make sure  Processor Load is been also presented for each core

Orion will not show that  CPU Core in Graph if the load is not been presented by the Node for that Core CPU .

Now Test the same for hrProcessorLoad and make sure the value is been returned by the node.

Load cpu.JPG

You should be able to see the result below on node detail page.

gg.JPG

If you are running Wireshark the packet should return load for each core.

cpuload.JPG

 

here is an example of the Node which is not showing the load for each processor and there for Orion will display only graph for single Processor .

we can see the 4 processor however the processor load is returned only for single core by the node  .

cpu.jpg

and here is the results for this Node ( only showing single CPU ) as we have not received the process load for other 3 cores from the Node's MIB's

graph.jpg

 

For more OID's  for Vendors  please see following KB

http://knowledgebase.solarwinds.com/kb/questions/1195/What+CPU+and+memory+utilization+object+IDs+%28OIDs%29+does+Orion+NPM+poll%3F

Negeate Objects from Filter Nodes (SQL)

$
0
0

Hi,

 

i would like to negate objects (such as DB's with high Memory utilization) from the "Nodes with High Memory Utilization" view,

any idea ?

 

Sagi

Creating Account Limitations

$
0
0

I have a group of people in my organization that are responsible for our remote sites.  I wanted to have their login only show the devices in those remote sites.  The only way that I can differentiate those sites from our internal devices is by IP address.  I have created an Account Limitation so that they can on see IP Address Pattern 1.x.x.x. 

The problem are:

1. They also need to see 2.x.x.x.  If I enter both of those as Limitations, nothing shows up when they login.  If I enter either, then on the main page, I get just those devices.

 2. Even though the main page shows just the 1.x.x.x devices, the Top 10 and Events ( the only other two things they can see) show ALL the devices on the network

How can I resolve those issues? 

Integrating last input Notes to last Audit Events

$
0
0

Hello,

 

Is there a way to integrate the last Note input to the last Audit Events?

 

In Node details view, I have the "last 5 notes" and the "last 5 Audit Events". I am putting the incident ticket number on the "last 5 notes" (see attached) and I need to know how to integrate what I have put on the Notes to the Audit events.

 

I have 3 columns under the "last 5 audit events" which are (Date Time, User and Action). Is there a way to add 4th column on the last audit events and get the data on the last notes?

 

Please advise.

Syslog Crashing Everyday

$
0
0

I see my syslog service crash everyday multiple times.   I am running NPM 11.5.2 on a Win 2008 R2 VM.  I looked at the event log and found a memory error.  I did some digging and found that 32 bit apps can run into this because of the 4GB limit.  Any ideas on how to fix or is there a 64 bit version?

 

Problem signature:

P1: syslogservice.exe

P9: System.OutOfMemoryException

MIBS - Need Help

$
0
0

Where is the MIBs db stored and how do import new MIBs into it?


Cisco ASA Failover status

Linking Salesforce & Orion NPM?

$
0
0

My company use Salesforce for ticketing, tracking accounts, etc.  Is anyone aware of an API, or another way, to link these two systems?  Ideally I'd like a way to pull certain technical fields from Salesforce into Orion so I don't have to True up 2 separate systems.  Is anyone aware of any solution for this or am I chasing a ghost?

 

~Limio

How can I create/update a SQL query to list NPM nodes without names, then add names to those nodes from an older NPM instance?

$
0
0

My team has opted to install a parallel instance of NPM rather than upgrading our original / older version of NPM.  The reasons are varied, but unimportant once the decision was made.

 

They've run into a snag importing older NPM 's ICMP-monitored nodes.  The nodes were created manually over many years; each one has an IP address and a manually created name.

 

Alerts were built for those nodes based on a name included in the node.  If a node goes unreachable, NPM sends an alert based on that name to a group of users who support those nodes.

 

We've found we're unable to extract that list of ICMP-monitored nodes without losing their names--all that comes out is their IP addresses.

 

How can we extract the ICMP-monitored IP addresses AND their names imported into the new NPM?

 

 

Example:  A typical ICMP-monitored node contains the phrase "Fred" and a site location in its name.  When it stops responding to pings, NPM detects a "Fred" kind of node is down and sends that device's name and IP address in an e-mail to the analysts who support "Fred" devices.  Since the name also contains the site location and the device's IP address, they know just which city/site it's in, and who to contact to troubleshoot it.

 

Extracting this list of devices from old NPM gives a long list of IP addresses without the names that should be associated with them.  This causes the alerts to fail since they're looking for "Fred" in the name.  Then the analysts don't receive their notifications until the end users complain.

 

 

How would you export the list of ICMP-monitored devices to include both their names and their IP addresses for import into the latest version of NPM?

 

Rick S.

AVTech.UnDP

Do traps bog down Solarwinds?

$
0
0

Hi Everyone,

 

            I'm not a network administrator so not sure what to do about this. SolarWinds receives about 5 - 10 traps from our wireless LAN controller every second. I'm guessing these messages are already stored on the Cisco controller so not sure why we need them in both places. We don't have any specific actions configured for each trap. Even after clearing out TrapVarbinds/syslog/traps they fill back up quickly.

 

9/4/2015 2:15 AM TrapVarbinds reached 12406093 rows, which is above warning threshold of 5000000. For more information, see SolarWinds Knowledge Base.
9/4/2015 2:15 AM Syslog reached 6554096 rows, which is above warning threshold of 1000000. For more information, see SolarWinds Knowledge Base.
9/4/2015 2:15 AM Traps reached 1483661 rows, which is above warning threshold of 1000000. For more information, see SolarWinds Knowledge Base.

 

 

(Cisco Controller) >show trapflags

 

Authentication Flag.............................. Enable

Link Up/Down Flag................................ Enable

Multiple Users Flag.............................. Enable

 

  1. configsave....................................... Enabled

 

Client Related Traps

802.11 Disassociation........................... Enabled

802.11 Association.............................. Disabled

802.11 Deauthenticate........................... Enabled

802.11 Authenticate Failure..................... Enabled

802.11 Association Failure...................... Enabled

Excluded........................................ Enabled

Authentication.................................. Enabled

 

Cisco AP

AuthFailure..................................... Enabled

Register........................................ Enabled

InterfaceUp..................................... Enabled

 

  1. 802.11 Security related traps

 

--More-- or (q)uit

WEP/WPA Decrypt Error........................... Enabled

IDS Signature Attack............................ Enable

 

AAA

auth............................................ Enabled

servers......................................... Enabled

 

  1. rogueap.......................................... Enabled

 

Auto-RF Profiles

Load............................................ Enabled

Noise........................................... Enabled

Interference.................................... Enabled

Coverage........................................ Enabled

 

Auto-RF Thresholds

tx-power........................................ Enabled

channel......................................... Enabled

 

Mesh

auth failure.................................... Enabled

child excluded parent........................... Enabled

parent change................................... Enabled

 

--More-- or (q)uit

child moved..................................... Enabled

excessive parent change......................... Enabled

onset SNR....................................... Enabled

abate SNR....................................... Enabled

console login................................... Enabled

excessive association........................... Enabled

default bridge group name....................... Enabled

excessive hop count............................. Disabled

excessive children.............................. Enabled

  sec backhaul change............................. Disabled

Viewing all 21870 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>