VM insights guest health (preview)

VM insights guest health allows you to view the health of virtual machines based on a set of performance measurements that are sampled at regular intervals from the guest operating system. You can quickly check the health of all virtual machines in a subscription or resource group, drill down on the detailed health of a particular virtual machine, or be proactively notified when a virtual machine becomes unhealthy.

Enable virtual machine health

See Enable VM insights guest health (preview) for details on enabling the guest health feature and onboarding virtual machines.


There is no direct cost for the guest health feature, but there is a cost for ingestion and storage of health state data in the Log Analytics workspace. All data is stored in the HealthStateChangeEvent table. See Manage usage and costs with Azure Monitor Logs for details on pricing models and costs.

View virtual machine health

The Guest VM Health column in the Get Started page gives you a quick view of the health of each virtual machine in a particular subscription or resource group. The current health of each virtual machine is displayed while icons for each group show the number of virtual machines currently in each state in that group.

Get started page with guest VM health


Click on a virtual machine's health status to view the detailed status for each of its monitors. Each monitor measures the health of a particular component. The overall health of the virtual machine is determined by the health of its individual monitors.

Monitors example

The following table lists the aggregate and unit monitors currently available for each virtual machine.

Monitor Type Description
CPU utilization Unit Percentage utilization of the processor.
File systems Aggregate Aggregate health of all file systems on Linux VM.
File system Aggregate Health of each individual file system on Linux VM. The name of the monitor is the name of the file system.
Free space Unit Percentage free space on the file system.
Logical disks Aggregate Aggregate health of all logical disks on Windows VM.
Logical disk Aggregate Health of each individual logical disk on Windows VM. The name of the monitor is the name of the disk.
Memory Aggregate Aggregate health of the memory on the VM.
Available memory Unit Available megabytes on the VM.

Health states

Each monitor samples values on the agent every minute and compares sampled values to the criteria for each health state. If the criteria for particular state is true, then the monitor is set to that state. If none of the criteria are true, then the monitor is set to a healthy state. Data is sent from the agent to Azure Monitor every three minutes or immediately if there is a state change.

Each monitor has a lookback window and analyzes any samples collected within that time. For example, a monitor may have a lookback window of 240 seconds looking for the maximum value among at least 2 sampled values but no more than the last 3. While values are sampled at a regular rate, the number sampled in a particular window may vary slightly if there is any disruption in the agent operation.

Monitors each have the potential health states in the following table and will be in one and only one at any given time. When a monitor is initialized, it starts in a healthy state.

Health State Description
Healthy The monitor doesn't currently exceed the Warning or Critical threshold.
Warning The monitor exceeded the Warning threshold (if defined).
Critical The monitor exceeded the Critical threshold (if defined).
Unknown Not enough data has been collected to determine the health state.
Disabled The monitor is currently disabled.
None Monitor is just started and not yet been evaluated or monitored object no longer exists.

There are two types of monitors as shown in the following table.

Monitor Description
Unit monitor Measures some aspect of a resource or application. This might be checking a performance counter to determine the performance of the resource, or its availability.
Aggregate Monitor Groups multiple monitors to provide a single aggregated health state. An aggregate monitor can contain one or more unit monitors and other aggregate monitors.

Health rollup policy

The health state of a virtual machine is determined by the rollup of health from each of its unit and aggregate monitors. Each aggregate monitor uses a worst state health rollup policy where the state of the aggregate monitor matches the state of the child monitor with the worst health state.

In the following example, the Free space monitor is in a critical state which roles up to the aggregates for its instance and then to File systems. Even though CPU utilization in in a warning state, the virtual machine is set to critical since this is the worst state underneath it. If the free space were to return to a healthy state, then the virtual machine would change to a warning state since CPU utilization would then become the monitor with the worst state.

Health rollup example

Monitor details

Select a monitor to view its detail which includes the following tabs.

Overview provides a description of the monitor, the last time it was evaluated, and values sampled to determine the current health state. The number of samples may vary based on the definition of the monitor and the volatility of the values.

Monitor details overview

History lists the history of state changes for the monitor. You can expand any of the state changes to view values evaluated to determine the health state. Click View configuration applied to view the configuration of the monitor at the time that the health state was changed.

Monitor details history


View and modify the configuration of the monitor for the selected VM. See Configure monitoring in VM insights guest health (preview) for details.

Monitor details configuration

Next steps