ASSOCIATED DRATA CONTROL
This test is part of the Servers Monitored and Alarmed control that ensures your company has implemented tools to monitor servers and notify appropriate personnel of any events or incidents based on predetermined criteria.
WHAT TO DO IF A TEST FAILS
If Drata detects that CPU utilization monitoring is not enabled or that alerts have not been properly set up the test will fail. With a failed test you will receive a list of instances that lack CPU utilization monitoring or administrative alerts.
To remediate a failed test, you will need to set up and configure CPU utilization monitoring for the reported instances to ensure they are monitored with alerts being sent to admins in an event or incident.
STEPS FOR PASSING
To ensure a validated state when testing for monitoring of the infrastructure instance CPU, please follow the steps listed in the table below. Once the provider steps have been completed, navigate back to Drata and execute the test.
NOTE: If you are using the Datadog integration for this test, please see this help article for the metrics to be used.
Provider / Technology | Provider Steps |
AWS - EC2 - By Instance | Instance Creation
Alarm Creation
Subscription Confirmation The subscription to the SNS topic used (or newly created) above must be confirmed for the test to pass.
Alternatively:
|
AWS - EC2 - Cluster Across All Instances | Cluster Creation
Alarm Creation
Subscription Confirmation The subscription to the SNS topic used (or newly created) above must be confirmed for the test to pass.
Alternatively:
|
AWS - EC2 - Cluster By AutoScaling Group (ASG) | Cluster Creation
Alarm Creation
Subscription Confirmation The subscription to the SNS topic used (or newly created) above must be confirmed for the test to pass.
Alternatively:
|
AWS - ECS - Fargate - Service | Service Creation
Alarm Creation
Subscription Confirmation The subscription to the SNS topic used (or newly created) above must be confirmed for the test to pass.
Alternatively:
|
AWS - ECS - Fargate - Cluster | Cluster Creation
Alarm Creation
Subscription Confirmation The subscription to the SNS topic used (or newly created) above must be confirmed for the test to pass.
Alternatively:
|
AWS - EKS |
Subscription Confirmation The subscription to the SNS topic used (or newly created) above must be confirmed for the test to pass.
Alternatively:
|
Azure - Container Instances |
|
Azure - Kubernetes Services |
|
Azure - Virtual Machines |
|
GCP - Kubernetes Cluster
NOTE: GCP automatically creates associated VMs when a Kubernetes cluster is created. These VMs need to be monitored with their own alerts. See the next section, "GCP - VM Instance," for instructions on how to build those alerts. | Cluster Creation
Alert Creation
|
GCP - VM Instance | Instance Creation
Alert Creation
|