20.20 告警系统主脚本
main.sh内容
#!/bin/bash
#Written by chengzhenge
# 是否发送邮件的开关
export send=1
# 过滤ip地址
export addr=`/sbin/ifconfig |grep -A1 "ens33: "|awk '/inet/ {print $2}'`
dir=`pwd`
# 只需要最后一级目录名
last_dir=`echo $dir|awk -F'/' '{print $NF}'`
# 下面的判断目的是,保证执行脚本的时候,我们在bin目录里,不然监控脚本、邮件和日志很有可能找不到
if [ $last_dir == "bin" ] || [ $last_dir == "bin/" ]; then
conf_file="../conf/mon.conf"
else
echo "you shoud cd bin dir"
exit
fi
exec 1>>../log/mon.log 2>>../log/err.log
echo "`date +"%F %T"` load average"
/bin/bash ../shares/load.sh
#先检查配置文件中是否需要监控502
if grep -q 'to_mon_502=1' $conf_file; then
export log=`grep 'logfile=' $conf_file |awk -F '=' '{print $2}' |sed 's/ //g'`
/bin/bash ../shares/502.sh
fi
主脚本解析:
[root@DasonCheng ~]# cd /usr/local/sbin/
[root@DasonCheng sbin]# mkdir mon
[root@DasonCheng sbin]# cd mon/
[root@DasonCheng mon]# mkdir bin conf shares log mail
[root@DasonCheng mon]# cd bin
[root@DasonCheng bin]# vim main.sh ##bin是存放主配置文件的目录;
[root@DasonCheng ~]# ifconfig ens33
ens33: flags=4163<UP,BROADCAST,RUNNING,MULTICAST> mtu 1500
inet 192.168.60.11 netmask 255.255.255.0 broadcast 192.168.60.255
inet6 fe80::32d1:eea9:5747:f919 prefixlen 64 scopeid 0x20<link>
ether 00:0c:29:f0:f3:49 txqueuelen 1000 (Ethernet)
RX packets 2436 bytes 209423 (204.5 KiB)
RX errors 0 dropped 0 overruns 0 frame 0
TX packets 2032 bytes 281712 (275.1 KiB)
TX errors 0 dropped 0 overruns 0 carrier 0 collisions 0
[root@DasonCheng ~]# ifconfig |grep -A1 'ens33: ' |awk '/inet/ {print $2}'
192.168.60.11
##过滤出系统ip地址;
[root@DasonCheng bin]# pwd
/usr/local/sbin/mon/bin
[root@DasonCheng bin]# echo '/usr/local/sbin/mon/bin' |awk -F '/' '{print $NF}'
bin
[root@DasonCheng bin]# echo '/usr/local/sbin/mon/bin' |awk -F '/' '{print NF}'
6
##以上是判定当前目录是否为bin或者bin/目录;这会影响后面的操作,因为使用的大都是相对路径!
20.21 告警系统配置文件
mon.conf内容
## to config the options if to monitor
## 定义mysql的服务器地址、端口以及user、password
to_mon_cdb=0 ##0 or 1, default 0,0 not monitor, 1 monitor
db_ip=10.20.3.13
db_port=3315
db_user=username
db_pass=passwd
## httpd 如果是1则监控,为0不监控
to_mon_httpd=0
## php 如果是1则监控,为0不监控
to_mon_php_socket=0
## http_code_502 需要定义访问日志的路径
to_mon_502=1
logfile=/data/log/xxx.xxx.com/access.log
## request_count 定义日志路径以及域名
to_mon_request_count=0
req_log=/data/log/www.discuz.net/access.log
domainname=www.discuz.net
20.22 告警系统监控项目
load.sh内容
#! /bin/bash
##Writen by aming##
load=`uptime |awk -F 'average:' '{print $2}'|cut -d',' -f1|sed 's/ //g' |cut -d. -f1`
if [ $load -gt 10 ] && [ $send -eq "1" ]
then
echo "$addr `date +%T` load is $load" >../log/load.tmp
/bin/bash ../mail/mail.sh aming_test@163.com "$addr\_load:$load" `cat ../log/load.tmp`
fi
echo "`date +%T` load is $load"
load.sh分析:
[root@DasonCheng conf]# uptime |awk -F 'average:' '{print $2}' |cut -d , -f1 |sed 's/ //g' |cut -d . -f1
0
##获取1分钟的cpu负载;也可以用这个:uptime |awk -F 'average: ' '{print $2}' |cut -d . -f1
##echo "$addr `date +%T` load is $load" >../log/load.tmp 这个tmp文件是发邮件的内容;
##/bin/bash 就是调用的邮件脚本,发邮件咯;
502.sh内容
#! /bin/bash
d=`date -d "-1 min" +%H:%M`
c_502=`grep :$d: $log |grep ' 502 '|wc -l`
if [ $c_502 -gt 10 ] && [ $send == 1 ]; then
echo "$addr $d 502 count is $c_502">../log/502.tmp
/bin/bash ../mail/mail.sh $addr\_502 $c_502 ../log/502.tmp
fi
echo "`date +%T` 502 $c_502"
502.sh解析:
echo "$addr `date +%T` load is $load" >../log/load.tmp
##以上是获取前一分钟的时间;(因为我们都是对前一分钟的日志进行分析的)
c_502=`grep :$d: $log |grep ' 502 '|wc -l`
##统计502出现的行数;
disk.sh内容
#! /bin/bash
##Writen by chengzhenge
rm -f ../log/disk.tmp
for r in `df -h |awk -F '[ %]+' '{print $5}'|grep -v Use`
do
if [ $r -gt 90 ] && [ $send -eq "1" ]
then
echo "$addr `date +%T` disk useage is $r" >>../log/disk.tmp
fi
if [ -f ../log/disk.tmp ]
then
df -h >> ../log/disk.tmp
/bin/bash ../mail/mail.sh $addr\_disk $r ../log/disk.tmp
echo "`date +%T` disk useage is nook"
else
echo "`date +%T` disk useage is ok"
fi
disk.sh内容解析:
[root@DasonCheng conf]# df -h
Filesystem Size Used Avail Use% Mounted on
/dev/sda3 19G 7.8G 12G 42% /
devtmpfs 479M 0 479M 0% /dev
tmpfs 489M 0 489M 0% /dev/shm
tmpfs 489M 6.7M 482M 2% /run
[root@DasonCheng conf]# df -h |awk -F '[ %]+' '{print $5}'
Use
42
0
0
2
##awk -F '[ %]+' '{print $5}'这里是以空格和%为分隔符,打印第五行;如果没有+号,则awk默认将空格和%分开来算,打印第五行就为空了
[root@DasonCheng conf]# df -h |awk -F '[ %]+' '{print $5}' |grep -v 'Use'
42
0
0
2
[root@DasonCheng conf]# df -h |awk -F '[ %]' '{print $5}'