(@mfriedri)

Feature Requests

Should be able to delete content from Content Packs section

When you go to look at stuff in My Content or Shared Content in the Content Packs view of Log Insight, you can't delete any content you don't want from there. You have to first open up the dashboard, query, extracted field, etc. in either the Dashboards or Interactive Analytics view. This feels like an unnecessary step. You should probably be allowed to delete things directly from the Content Packs view.

Voting

7 votes
(@heathbarj)

Feature Requests

Real Time Alerts

Currently Log Insight only allows for alerts to be triggered based on batch process times. Lowest being every minute.

I have a customer that would like alerts to be triggered when a match comes in immediately. Their use case is for monitoring 1,000's of Cisco Switch Stacks for physical sites. When a switch dies or power supply dies they would like an instant alert.

Voting

2 votes
(@noel.john.o.meara)

Feature Requests

Alert that triggers log bundle collection

Log bundles provided to vmware sometimes do not have the info needed to troubleshoot an issue because the logs of interest are no longer present. We need to wait for the next occurrence of the issue and then generate a new log bundle immediately. If this happens outside office hours the necessary logs can be missed again. It should be possible for an alert to trigger an action such as generate log bundle (or run a script). ...more »

Voting

3 votes
(@acastonguayvmware.com)

Feature Requests

Override cluster's self-identity with arbitrary FQDN

Outbound User-Alert notifications (email, webhooks, vrops) contain links back to the Log Insight Cluster. If there is more than one VIP present, the links refer to the cluster by the first (sorted by IP) FQDN. This may not be the preferred identity for user interaction.

 

Enhancement: Provide an administrative override to specify an arbitrary FQDN for generating self-referential links, as used in alert notifications.

Voting

3 votes
(@andrei)

Feature Requests

Dynamic Fields in Alert Definition Name

I`m not aware of such feature if I`m wrong please correct me. It would be very very useful to be able to use fields in alert definition and fields to be populated based on their actual value when the alert triggers. We are sending alerts to vROPS. Let`s take an example: I want to monitor when a vRO Workflow fails but I need to create an alert for each Workflow that runs into infrastructure in order to actual give some ...more »

Voting

6 votes
(@jeremy)

Feature Requests

Alert on missing data

Many applications log some sort of heartbeat data, or are otherwise expectedly chatty. It would be nice to be able to alert on a query returning less than an expected result over time. If a host or other device suddenly goes silent, having the ability to be notified about it would be very useful.

Voting

7 votes
(@markus.krausgmail.com1)

Feature Requests

PRTG WebHook Support

At the moment WebHooks are very Static regarding output format.

That is a problem if you have a monitoring Solution that is also very static by receiving WebHooks:

 

PRTG Only excepts this syntax

 

https://fqnd:5050/loginsight?content=XML String with fixed Syntax

 

https://www.paessler.com/manuals/prtg/http_push_data_advanced_sensor

 

Is there a way to integrate a WebHook Syntax Builder?

Voting

2 votes
(@charankumar.naik)

Feature Requests

Search result highlight - Email Alert

Currently in email alert, the entire search query result is sent and it would be 10s of line in an matching event.

 

is it possible to highlight the match what exactly was queried?

 

For example: if we search for a string ERROR and setup a alert, entire event where "ERROR" string appears is sent as an email, in which i would want to highlight the queried string "ERROR' for easy identification in entire event

Voting

4 votes
(@mfriedri)

Feature Requests

Ability to schedule alert queries

We have some alert queries we want to set up that check to see if a particular job ran by reading the log files for those jobs and firing an alert if the query doesn't have any results. We can set up this job today, but the query will run at pre-set intervals. We know exactly when our jobs will run so we'd like to be able to schedule the query to cover a certain time range and limit it's scope rather than expand the scope ...more »

Voting

1 vote