New Features and Enhancements

This release includes the following new features and enhancements.
This release includes the following new features and enhancements:
New Features
This section outlines the new marquee features in
DX NetOps Performance Management
For feature and enhancement descriptions for previous releases, use the
New Group Editor
The new-and-improved group editor no longer uses Adobe Flash.
This release includes changes to the following out-of-the box group names:
  • "Defined Tenants" changed to "Tenants"
  • "Collections" changed to "Custom Collections"
  • "Domains" changed to "IP Domains"
  • "Service Provider Global Groups" changed to "Global Tenant Groups"
  • "Service Provider Defined Groups" changed to "Global Tenant Groups"
  • "Service Provider Items" changed to "Global Tenant Items"
These name changes impact existing custom scripts that use the previous naming. You must update these scripts accordingly. The data aggregator REST paths have changed.
For more information, see the Groups section.
Network Flow Analysis
You can now manage network flow processing and view the overall heath status of your
Network Flow Analysis
reporters, harvesters, and interfaces.
Separate Health Dashboards
To improve clarity, in this release, the
Data Aggregator Health Dashboard
Data Collector Health Dashboard
now appear as separate dashboards. In previous releases, they were combined into a single dashboard.
This section includes enhancements made in
DX NetOps Performance Management
Manual Discovery of Logical Systems Using REST (20.2.9 and Higher Only)
For Juniper SRX devices with logical systems, you can now manually discover logical systems on physical devices using REST. You can use this method of discovery when the device
does not
provide the logical system context name through SNMP.
For more information about this method of discovery, see Discover Logical Systems Through SNMP Contexts.
Enhanced Control of the Synchronization of Life Cycle Status Between
DX NetOps Spectrum
(20.2.9 and Higher Only)
By default,
NetOps Portal
sends the life cycle state changes that you make to devices in
NetOps Portal
DX NetOps Spectrum
(Spectrum). For example, if you change the life cycle state for Device A to maintenance in
NetOps Portal
NetOps Portal
synchronizes this change for the device in Spectrum (the life cycle state in Spectrum changes to Maintenance mode).
You can now change this default behavior.
For more information, contact Support.
Support for New SNMPv3 Authentication Protocols (20.2.9 and Higher Only)
To further secure the communication between the data collector and device management information bases (MIBs), you can now specify that your SNMPv3 profiles use one of the following authentication protocols when contacting devices:
  • SHA 256
  • SHA 512
For more information about how to specify these authentication protocols for an SNMPv3 profile, see SNMP Profiles.
Configure Web Browser Security Settings (20.2.9 and Higher Only)
You can now configure the settings that control the directives that
NetOps Portal
uses when it communicates with web browsers using
NetOps Portal
. In previous releases, you could configure the settings only using the Single Sign-On Configuration (SSOConfig) tool.
Enhanced Consul Security Using ACLs (20.2.8 and Higher Only)
DX NetOps Performance Management
now secures Consul using access control lists (ACLs). To access the Consul endpoints, you now need an ACL token. The ACL token is stored in the iRep data for the data aggregator, and it is available at the following URL:
For more information:
With this enhancement:
  • If you are using
    DX NetOps Performance Management
    20.2.7 or earlier, when upgrading to 20.2.8 or higher, you must upgrade the proxy.
    For more information about this prerequisite step for upgrading fault-tolerant data aggregators, see Upgrade Fault-Tolerant Data Aggregators.
  • If you are using
    DX NetOps Performance Management
    20.2.8 and higher, when configuring Consul as Hypertext Transfer Protocol Secure (HTTPS), skip the step for importing the Consul server certificate.
    For more information about how to configure Consul at HTTPS, see Configure Consul as HTTPS.
  • While upgrading an active data aggregator from
    DX NetOps Performance Management
    20.2.7 or earlier to 20.2.8 and higher, failover does not occur. Expect some data loss during the upgrade process. The upgrade process upgrades the Consul servers and bootstraps the ACL.
    For more information about how to upgrade fault-tolerant data aggregators, see Upgrade Fault-Tolerant Data Aggregators.
Enhanced Grouping of
DX NetOps Virtual Network Assurance
Domains (20.2.7 and Higher Only)
As a tenant user logged in to
NetOps Portal
, the
DX NetOps Virtual Network Assurance
(VNA) items only for the VNA Gateway that belongs to your tenant are included in the VNA Domains system group. In previous releases, while logged in as a default tenant user, the VNA devices for all VNA Gateways on all VNA domains were included.
For more information about the VNA Domains system group, see Groups.
Enhanced Business Hours Filtering (20.2.6 and Higher Only)
This enhancement expands and simplifies business hours filtering. You can now apply business hours filters to data in views, dashboards, or context pages without using site groups. Site groups also retain business hours functionality.
For more information, see Configure Business Hours Filtering.
Usage Data Update (20.2.6 and Higher Only)
SD-WAN administrators can now view the count of wireless access points that are associated to the usage data that
DX NetOps Performance Management
generates. The
field includes this data.
For more information, see Configure to Send Usage Data.
Data Aggregator Cleanup (20.2.3 and Higher Only)
Cleanups that remove deleted items from the data aggregator now run daily by default. You can configure whether the cleanup runs. You can also disable the cleanup for attribute instance tables or relationships.
For more information, see Configure the Data Aggregator Cleanup.
Data Aggregator Upgrade (20.2.3 and Higher Only)
The data repository installation now includes the
script. For earlier releases, contact Support. This script verifies ETL health and collects the irep and other data. Verify ETL health (by running this script) well in advance of upgrades and again directly before an upgrade.
For more information about how to verify ETL health, see Upgrade a Non-Fault-Tolerant Data Aggregator.
Password Synchronization (20.2.3 and Higher Only)
NetOps Portal
Network Flow Analysis
SSO cookie encryption key changes are now automatically synchronized. You no longer have to restart
Network Flow Analysis
for the changes to reflect. This enhancement requires that you upgrade
Network Flow Analysis
to 10.0.4 or higher, and requires the following patch for
Network Flow Analysis
Access Point Discovery
Previously, the associated wireless controller discovered access points and
DX NetOps Performance Management
managed them as device components. Access points are now managed as devices available under the device inventory. New metric families are available for Cisco wireless setup. Existing access points remain device components upon upgrade. Before running metric family discovery, upgrade and then add new metric families for Cisco certification.
If access points restart and their IP addresses change, access points are reconciled. Going forward, access points with matching MAC addresses are reconciled.
In addition,
DX NetOps Performance Management
now supports the high availability Cisco setup. If
DX NetOps Performance Management
discovers both a primary and secondary controller, the access points are moved between the primary and secondary controller when failover occurs.
Lastly, Cisco access points are now also reconciled between
DX NetOps Spectrum
DX NetOps Performance Management
Baseline Metrics for SD-WAN Monitoring
Baseline metrics are now available for SD-WAN tunnels and application/SLA paths.
Baseline Rendering
DX NetOps Performance Management
processes baseline metrics up to hourly and daily increments. Previously, when the resolution was less than an hour,
DX NetOps Performance Management
showed single dots for the known data points. Now, when the resolution is less than an hour,
DX NetOps Performance Management
interpolates data points between known hourly data points.
For more information, see Trend Views.
Data Collector Statuses
System Status
page now includes new status columns for your data collectors. The
Configuration Status
column indicates whether the associated data aggregator can process distributed item repository information from the data collector. The
Polling Status
column indicates whether the associated data aggregator is receiving poll responses from the data collector.
For more information, see View the Health of the System.
Email Extended Flow Views
You can now send or schedule extended flow views in a report by email. By default, the first row is selected in the Top table and the data for the following views are of the first-row selection.
For more information, see Share Data with Other Users.
Enhanced CSV Output
When you generate CSV output, the following leading characters are now removed from cells:
  • Plus sign (+)
  • Dash (-)
  • At symbol (@)
  • Equal sign (=)
This enhancement prevents characters that can be interpreted as formula injection.
For more information, see Share Data with Other Users.
Enhanced MySQL Security
As a step toward enhanced security, the
NetOps Portal
installation now allows you to set a custom MySQL password.
For more information, see Upgrade
DX NetOps Performance Management
Increased Maximum Alarm Filter Condition Values
You can now have a maximum of 50 overall conditions and 100 alarm filter condition values per condition. For all conditions that support multiple values, you can enable Advanced mode. In Advanced mode, you can enter a comma-separated list of values. You can use "and" for all the values or you can select the checkbox to use "or".
For more information, see Alarm Views.
Increased Maximum Threshold Value Digits
Threshold values for views now support up to 15 characters including decimal points.
LDAP Authentication for CA Business Intelligence Reports and Dashboards
When you integrate
CA Business Intelligence
7.1.1 and higher with
DX NetOps Performance Management
3.7.5 and higher, you can enable LDAP authentication for
CA Business Intelligence
reports and dashboards.
For more information, see Enable LDAPS Authentication.
If you enable LDAP authentication for
CA Business Intelligence
reports and dashboards, you must also enable LDAP authentication in
CA Business Intelligence
Map Views Include All Sites
Sites with no data now appear as gray icons in Map views. In previous versions, sites with no data were excluded from the Map view.
For more information, see Map Views.
Meraki Access Point Device Reconciliation
Meraki access points are now reconciled in
DX NetOps Performance Management
. If the IP address of an access point changes, it is reconciled with the existing access point device in
DX NetOps Performance Management
. Discovery is initiated on the new IP address of the access point.
Multiple Metric Selection for MultiViews
You can now select multiple metrics within a single metric family for MultiViews.
For more information, see Trend Views.
New Custom Gauge View Options
While configuring a custom gauge view, you can now specify whether the values in the view are scaled. Scaled values appear with larger units, for example, 1 KB. Unscaled values appear in the raw form for the metric, for example, 1000 bytes. This new option is unavailable for existing custom gauge views, which now have "Deprecated" appended to the title.
For more information about this new option, see Gauge Views.
NetOps Portal
Install and Upgrade
When you install and upgrade
NetOps Portal
, you can now specify a non-root user as the install owner.
For more information, see Install NetOps Portal and Upgrade NetOps Portal.
Search Within Specific Columns
Global searches in large-scale environments can impact performance. You can now use the following filter expressions to refine your search results and minimize the impact on performance.
If you exclude the
, the search applies to all views.
For more information, see Search and Filter in
NetOps Portal
Single Sign-On URL Spoofing Protection
For enhanced security, in this release, administrators can now secure their system and require users to log in using only authorized URLs by enabling Single Sign-On URL spoofing protection. When enabled, users can log in using only authorized URLs, but cannot log in using the
Log In
button. When disabled, users receive only a warning regarding suspicious URLs.
For more information about this security setting, see Configure the DX NetOps Security Settings Using NetOps Portal.
Quickly Discover Virtual Network Devices
You can quickly discover Viptela SD-WAN, Cisco ACI, 128T, Nuage, and Silver Peak devices.
For more information, see Discovery.
Vendo Certification Import UI
The user interface for importing custom vendor certifications can now handle extensions, install, and update.
For more information, see Create or Extend Vendor Certifications.
Platform Updates
This section lists the updates to the platform.
This release upgrades Jetty to release 9.4.15.v20190215. As of
DX NetOps Performance Management
20.2.8, Jetty has been upgraded to 9.4.36.
For more information about the Jetty versions that
DX NetOps Performance Management
supports, see Third Party Agreements.
Supported Web Browsers
DX NetOps Performance Management
supports the following web browsers:
  • Google Chrome 48.x and later
  • Microsoft Internet Explorer 11
  • Microsoft Edge version 48.x and later
  • Mozilla Firefox 42.x and later
Use the latest production-level versions of these browsers whenever possible.