This article was updated to support v11.7.8 of Goliath Performance Monitor.
Windows Services Watch rules monitor Windows Services on your Windows servers/workstations using our Goliath Intelligent Agent to alert on specified conditions in real-time.
Configure the Monitoring
- To create a new monitoring condition for a Windows Service, navigate to the Configure - Monitoring Rules page and click the New button
- A selection pane will appear, select the radio button option for WindowsServices Watch and then click OK
- Now the monitoring rule pane will appear. At the top of the pane name the Monitoring Rule via the Rule Name field, as well as define the description and the severity.
- The first tab, WinServicesWatch is where you will define what Windows Service the rule is monitoring.
- If you would like to configure the remediation action of attempting to restart the service if it is stopped, select the checkbox in the ‘Attempt Service Restart’ field.
- In the optional ‘Delay’ field, add a duration that the service must be stopped for in order to trigger and alert.
- In the ‘Display Services By’ field, choose how you’d like to sort the ‘Selection’ tree. If ‘Server/Workstation’ is chosen, the tree will be sorted via the primary groups defined in the product. If ‘Service’ is selected, the tree will be sorted by the Windows Services detected.
- Use the ‘Selections’ tree to define which Windows Service you’d like to monitor and on which servers/workstations you’d like to monitor it on.
Configure the Schedule
The Schedule tab of a monitoring rule allows users to define how frequently the rule will alert. This can be done by adjusting the following fields:
Required Options (one of the below must be selected):
-
Alert Every Time: Defines whether an alert is generated every time the conditions are on the previous tab are met.
- When checked, an alert is generated every time the specified condition is met.
- When unchecked, the alert is only generated if the alert conditions are met, and the Minimal Notification Interval, see below, is exceeded since the last alert for this type.
-
Minimal Notification Interval: Defines the minimum amount of time that must elapse between events for the specified condition before another alert will be generated.
-
For example, if the interval is 15 minutes and the condition is being met every 3 mins, you will receive 1 alert every 15 minutes instead of being alerted at each occurrence.
- However, each alert occurrence is considered unique based on the details. For example, an Event Log alert is considered the same based on being the same Event Type and ID, from the same server/workstation.
- The Alert Every Time checkbox must be unchecked in order to use this option.
- For ServerWatch IP Services, this also defines the minimum elapsed time since a service is first detected as down or failed before an alert is generated.
-
For example, if the interval is 15 minutes and the condition is being met every 3 mins, you will receive 1 alert every 15 minutes instead of being alerted at each occurrence.
Additional Options:
-
Maximum Notification Interval: Defines the maximum number of times you want to be notified during a continuous failure situation.
- The default value of '0' means infinite; no maximum is defined so you will continue to be notified according to your Alert Every Time and Minimal Notification Interval settings.
- A non-zero value means that after you have been notified the number of times defined in the Maximum Alert Notifications, and according to your Alert Every Time and Minimal Notification Interval settings, you will not be notified again.
- For example, if "5" is selected, the event will alert for the first 5 events and all additional events will be ignored.
-
Notify On Restore: Defines whether a 'Restore' alert is generated if you have previously been alerted due to a failure.
- For example, if CPU has been 90%, and then dropped below the alert threshold, the notify on restore email will inform you that the condition has returned to a normal state.
- There is always a Notify on Restore for a ServerWatch type alerts.
- Active Only if Server 'Owns".... This Cluster Group: This option is for monitoring machines that are apart of a cluster. If the checkbox is checked, then the rule is monitoring and will alert only if the server is a member of a cluster, 'owns' the specified Cluster Group and the specified Cluster Group is 'Online'.
Additional Configuration
For additional configuration options please see the following articles:
- Enabling Notifications:
- Configure Custom Remediation