Skip to main content

Devo Exchange: Devo Collector Monitoring ActiveBoard and Alert Pack

Related products: Devo Exchange
Devo Exchange: Devo Collector Monitoring ActiveBoard and Alert Pack

The Integration team prepared and released a new Activeboard to help users monitor and be informed on the status of their collectors along with any warnings or errors that may be occurring.  We have also released a companion Alert Pack that works in conjunction with the Activeboard to provide full visibility around your Collectors. This combination will give you visibility into Collector uptime, warning errors, general activity and message types. You also see all credential errors as well as API limits and server errors.   This is a must have Activeboard that provides full visibility into the health of your Data Ingestion.

Table of Contents

Collector Monitoring Activeboard

Having good supervision in data flow is key in Devo. It’s important to give customers good insights, alerts and security use cases, but insight into any problem with Collectors was missing.  This activeboard solves this, providing complete visibility of your collector health.  In this activeboard you can find:

  • Number of collectors active / failing.
  • Collectors that stop sending data in the last hour.
  • Errors Warnings distribution by collector.
  • General activity and types of messages.
  • Errors in credentials (401/403)
  • Errors for API limits retries (429)
  • Server errors (500, 501, 503)

Use this activeboard to detect credential, server failures or problems in data flow. The Collector Alert Pack works in conjunction with this activeboard to provide all the details.

 

Collector Alert Pack

Use this Alert Pack to monitor your collectors, detect credentials failures (401/403) and any problem in data flow. It is recommended to complement this content with AB Collectors Error Control.

  • SecOpsCollectorCredentials: Detects any credential problem (401 or 403 error) in any collector running in the domain, and also warnings that could mean error as well.

 

What does it look like?

 

Go Check it out on Devo Exchange

Devo Collector Monitoring Activeboard

Direct links on Devo Exchange

US Exchange CA Exchange EU Exchange APAC Exchange

 

Devo Collector Alert Pack

Direct links on Devo Exchange

US Exchange CA Exchange EU Exchange APAC Exchange

 

Hi! How does this work for MSSP? Can it be deployed in the admin domain to view all children or per domain? If the latter, are there any plans to enable MSSP capability? 🙂 Thanks!


No yet, but the team is going to work on this functionality next!


Useful resources:

https://docs.devo.com/space/latest/95126785/Inactivity+alert