alerts: Added in dell server sensors alert rules to the collection (#7647)

* alert rules: alert rules for dell servers

added in dell alert rules to the collection.

* Update alert_rules.json

fixed the ,

* Update alert_rules.json

fixed the "rule":

* Update alert_rules.json

minor fixes and added in MAC address alert. This could be useful when searching for missing devices or rogue devices on your network.

* Update alert_rules.json

removed mac address rule.
This commit is contained in:
Kevin Krumm
2017-11-07 14:21:37 -06:00
committed by Neil Lathwood
parent cbe6cb532d
commit 597af28093

View File

@@ -269,5 +269,24 @@
{
"rule": "%devices.os = \"panos\" & %sensors.type = \"panSysHAState\" && %sensors.sensor_current = \"1\" && %sensors.sensor_prev = \"2\"",
"name": "Palo Alto Networks passive firewall changed to active"
},
{
"rule": "%sensors.sensor_current ~ \"[2|6]\" && %sensors.sensor_oid = \".1.3.6.1.4.1.674.10893.1.20.130.15.1.4.1\"",
"name": "Dell Server Raid Battery Failed/Degraded"
},
{
"rule": "%sensors.sensor_current = \"2\" && %sensors.sensor_oid = \".1.3.6.1.4.1.674.10892.1.1100.32.1.5\"",
"name": "Dell Server CPU Status Critical"
},
{
"rule": "%sensors.sensor_current ~ \"[2|6]\" && %sensors.sensor_oid = \".1.3.6.1.4.1.674.10893.1.20.130.1.1.5\"",
"name": "Dell Server Disk Controller State Failed/Degraded"
},
{
"rule": "%sensors.sensor_current ~ \"[2|5]\" && %sensors.sensor_oid = \".1.3.6.1.4.1.674.10893.1.20.130.4.1.4\"",
"name": "Dell Server Disk Array State Failed/Degraded"
}
]
]