I suggest the following scheme:
Uncheck "always process all thresholds". Threshold order is important.
Then you will get COP_SERVICE_STARTING if service is in starting state, COP_SERVICE_DOWN if service in state other than running or starting, and COP_SERVICE_OK when it returns to running state.
If you wish to create and terminate appropriate alarms accordingly, you can add the following rules to event processing policy:
Rule 1
Event: COP_SERVICE_STARTING, COP_SERVICE_DOWN
Alarm: Generate alarm, text: %m, key: SERVICE_PROBLEM_%i_%5
Rule 2
Event: COP_SERVICE_OK
Alarm: terminate alarm with key SERVICE_PROBLEM_%i_%3
Then you will have active alarm with appropriate text when service is not running, and it will be automatically terminated when service goes back online. If service will go from starting to, for example, stopped state, text of alarm generated by previous COP_SERVICE_STARTING event will be replaced by message text of COP_SERVICE_DOWN event, so you will have actual information in your alarm browser.
Hope this helps!
Best regards,
Victor
P.S. Also there is a description of threshold checking algorithm in NetXMS user manual, in section 5.2.3.3.
| condition | event when true | event when false |
| equal 1 | COP_SERVICE_STARTING | COP_SERVICE_OK |
| not equal 0 | COP_SERVICE_DOWN | COP_SERVICE_OK |
Uncheck "always process all thresholds". Threshold order is important.
Then you will get COP_SERVICE_STARTING if service is in starting state, COP_SERVICE_DOWN if service in state other than running or starting, and COP_SERVICE_OK when it returns to running state.
If you wish to create and terminate appropriate alarms accordingly, you can add the following rules to event processing policy:
Rule 1
Event: COP_SERVICE_STARTING, COP_SERVICE_DOWN
Alarm: Generate alarm, text: %m, key: SERVICE_PROBLEM_%i_%5
Rule 2
Event: COP_SERVICE_OK
Alarm: terminate alarm with key SERVICE_PROBLEM_%i_%3
Then you will have active alarm with appropriate text when service is not running, and it will be automatically terminated when service goes back online. If service will go from starting to, for example, stopped state, text of alarm generated by previous COP_SERVICE_STARTING event will be replaced by message text of COP_SERVICE_DOWN event, so you will have actual information in your alarm browser.
Hope this helps!
Best regards,
Victor
P.S. Also there is a description of threshold checking algorithm in NetXMS user manual, in section 5.2.3.3.
В 0.2.21 будет?
The really needed steps is 2 and 3, and -c option is needed. This is because in 0.2.20 changes syntax of netxmsd.exe command line, to be in common style with agent and other tools.