• Forums
    • Public Forums
      • Community Connect
      • Dynatrace
        • Dynatrace Open Q&A
      • Application Monitoring & UEM
        • AppMon & UEM Open Q&A
      • Network Application Monitoring
        • NAM Open Q&A
  • Home /
  • Public Forums /
  • Application Monitoring & UEM /
  • AppMon & UEM Open Q&A /
avatar image
Question by Tamás V. · Mar 12, 2015 at 08:14 PM ·

Incident email generation - how it works

Hi,
I'd like to get some information about incident generation in dynaTrace (6.x).
Let's say, I have an incident rule for a business transaction with a warning upper treshhold set to 5 seconds and a severe upper set to 10 seconds (for purepath response time).
If i configure the incident rule to send email on incident starts AND incident ends, how many emails will i get if the incident is violated mutliple times in one evaluation timeframe?
So let's say, my evaluation time is 10 seconds. These are the incoming bTs' max response times for every seconds of the evaluation timeframe:
second No. - max resp time - expected outcome of the incident
_____________________________________
second #1 - 4  seconds
second #2 - 6  seconds - warning incident starts
second #3 - 8  seconds - warning continues
second #4 - 2  seconds - warning incident ends
second #5 - 3  seconds
second #6 - 7  seconds - warning incident starts
second #7 - 11 seconds - severe incident starts (will this take over the place of the warning incident?)
second #8 - 12 seconds - severe incident continues
second #9 - 4  seconds - now what? both incident ends? or just the severe one (because the warning ceased to exist when the severe came)
second #10- 3  seconds
Is this correct?
My main question is about the emails:
I need one email for every incident start, and one email for every incident end (i'll calculate something from every started-ended email pairs i get). Important note: i need to see the "started"/"ended" words in the subject of the emails.
How many emails am i going to receive with the above example?
My thinking:  I'll get 4 emails:  Incident started (#2), Incident ended (#4), incident started (#6), incident ended (#9). Is that correct?
Now, i have a problem: sometimes i don't get the emails with the subject "... incident ended" or "... incident started". Some of them have the subject like "Incidents, ..." and in the body of the email i see multiple incidents.
My guess is when an incident occures (so a violation occurs) while the incident is active (so it already occured and didn't ended yet), the dT will send a summary email, instead of the "... incident ended" ones.
Thank you for the help in advance!
Best regards,
Tamas
Comment

People who like this

0 Show 0
10 |2000000 characters needed characters left characters exceeded
  • Viewable by all users
  • Viewable by moderators
  • Viewable by moderators and the original poster
  • Advanced visibility
Toggle Comment visibility. Current Visibility: Viewable by all users

Up to 10 attachments (including images) can be used with a maximum of 50.0 MiB each and 250.0 MiB total.

2 Replies

  • Sort: 
  • Most voted
  • Newest
  • Oldest
avatar image

Answer by Jaydatt D. · Mar 13, 2015 at 07:22 PM

Hi Tamas,

If your evaluation time is 10 seconds then depending on you aggregation  it will send the alerts.

for subject line you can use the extended email action plugin.

Best Regards,

Jaydatt

 

Comment

People who like this

0 Show 0 · Share
10 |2000000 characters needed characters left characters exceeded
  • Viewable by all users
  • Viewable by moderators
  • Viewable by moderators and the original poster
  • Advanced visibility
Toggle Comment visibility. Current Visibility: Viewable by all users

Up to 10 attachments (including images) can be used with a maximum of 50.0 MiB each and 250.0 MiB total.

avatar image

Answer by Sreerag M. · Mar 13, 2015 at 01:10 AM

Hi Tamas,

Here is a forum thread that has details on how incidents work in dynatrace. Help needed in understanding dynatrace incidents

-Sreerag

 

Comment

People who like this

0 Show 0 · Share
10 |2000000 characters needed characters left characters exceeded
  • Viewable by all users
  • Viewable by moderators
  • Viewable by moderators and the original poster
  • Advanced visibility
Toggle Comment visibility. Current Visibility: Viewable by all users

Up to 10 attachments (including images) can be used with a maximum of 50.0 MiB each and 250.0 MiB total.

How to get started

First steps in the forum
Read Community User Guide
Best practices of using forum

NAM 2019 SP5 is available


Check the RHEL support added in the latest NAM service pack.

Learn more

LIVE WEBINAR

"Performance Clinic - Monitoring as a Self Service with Dynatrace"


JANUARY 15, 3:00 PM GMT / 10:00 AM ET

Register here

Follow this Question

Answers Answers and Comments

1 Person is following this question.

avatar image

Forum Tags

dotnet mobile monitoring load iis 6.5 kubernetes mainframe rest api dashboard framework 7.0 appmon 7 health monitoring adk log monitoring services auto-detection uem webserver test automation license web performance monitoring ios nam probe collector migration mq web services knowledge sharing reports window java hybris javascript appmon sensors good to know extensions search 6.3+ server documentation easytravel web dashboard kibana system profile purelytics docker splunk 6.1 process groups account 7.2 rest dynatrace saas spa guardian appmon administration production user actions postgresql upgrade oneagent measures security Dynatrace Managed transactionflow technologies diagnostics user session monitoring unique users continuous delivery sharing configuration alerting NGINX splitting business transaction client 6.3 installation database scheduler apache mobileapp RUM php dashlet azure purepath agent 7.1 appmonsaas messagebroker nodejs 6.2 android sensor performance warehouse
  • Forums
  • Public Forums
    • Community Connect
    • Dynatrace
      • Dynatrace Open Q&A
    • Application Monitoring & UEM
      • AppMon & UEM Open Q&A
    • Network Application Monitoring
      • NAM Open Q&A