The Kubernetes and app service monitoring solution collects event details and displays them on the entity detail view page. The detail page includes the Kubernetes® Events histogram along with the event details but excludes the normal severity type by default. See Configure Events.

You can observe these types of severity events:

  • Normal: The informational event details for the selected entity.
  • Warning: The warning event details for the selected entity.
  • Severe: An Splunk AppDynamics specific custom class that you can create during the event configuration by using the monitoring-values.yaml configuration file. This is the customized event severity that you can configure for a critical group of events. To classify a set of events as severe based on the event reason, see Events Reason Reference.

If you are unable to view the events, ensure that the helm chart is on the latest version and events is set to enabled in the collectors-values.yaml file. 

With events enabled, you can view Kubernetes Events in the details view of the entity.

Display Options

These are examples of the entity details view that display the UI options.

You can observe the count of events based on the severity types for all time ranges and for a specific time range.

These UI options display the events information to help you debug issues in the Kubernetes infrastructure:

  • Kubernetes Events: This displays the histogram with the number of events for each severity type at a specific date and time. You can select any event type to view the details of only that event type.
    Different colors represent different event types. 
  • View Event Summary: You can view the event summary based on your selection in the Kubernetes Events histogram. You can filter the details by either using All Time Ranges or Specific Time Ranges. To get more event details based on the event reason, click the required event reason. You can use the Search field to search for the specified string in any column listed in the following table:
Column NameDescription
Severity The severity of the events such as normal, warning, and severe.
Number Of EventsThe number of events based on the severity you select in the histogram.
Event Reason

The reason for the event such as completed, created, pulled, and so on.

Entities AffectedThe affected entities such as pod, job, cronjob, and so on.

When you click Normal in the  Kubernetes Events histogram, the normal event count displays in all time ranges along with the summary mentioned under View Event Summary. To view the event summary for a specific time range, you can click the bar in the histogram for the specific time range.

View Event Details 

You can view the details of events based on the event reason. The Events page displays the data that you can use to identify and troubleshoot any issue with entities. You can view the event details of the events that are generated within 30 days because Splunk AppDynamics retains the events for 30 days. 

On the entity details page (under Kubernetes Events), you can:

  • Click any event reason under View Event Summary to view the Events page that includes events of any specific event reason reported on the entity or its child entity (on which the events with the same event reason is reported).
  • Click Show all Events at the top right corner of the Kubernetes Events histogram on the entity details page to view all the events reported on that entity and its child entities.

You can add filters on the Events page. You can check Recent Filters to view the list of filters that you have used earlier.

The details show the event's trend and the messages with the timestamp that can help in analyzing the reason why the event was created and which entity is affected.

To quickly view only the details for the severe and warning types of events, you can click Severe and Warning Events.

The following details are displayed on this page:

Field NameDescription
TimestampThe date and time the event started.
Severity

The severity of the event.

The values can be Normal, Warning, or Severe. 

Event Reason

The Kubernetes event reason. 

You can also refer to Events Reason Reference to view the list of event reasons.

MessageThe Kubernetes message that provides more information about what happened.
Affected Entity

The entity type that is affected.

This lists the entity type or redirects you to the specific entity details page.

When you click on a specific row, the right pane displays all the details related to that event. You can left click any required field on the right pane to get more options such as Add to filter, Exclude from filter and so on. You can add or remove the fields for the filter, and for the table.


OpenTelemetry™ and Kubernetes® (as applicable) are trademarks of The Linux Foundation®.