Issues Fixed in
Network Flow Analysis10.0.6
In Network Protocol trend charts, you may see wrong standard deviation values for the protocol. This issue happens when the average value for a metric of a protocol is different from the first protocol in the list.
The standard deviation is not being reset when the selection of the protocol changes from the first protocol. Changes are made to reset the standard deviation when protocol is changed. New values are picked and plot the trend chart with the new values.
Issues Fixed in
Network Flow Analysis10.0.5
For the Linux machines, when a disk is mounted it is sent as a fixed disk and NFA stores it in the DiskUtilization table. While the disk is unmounted NFA does not record the event and the existing record is not deleted from table showing an alert.
While getting the disk utilization details from the SNMP calls, the existing fixed details for that particular harvester are deleted. And the new disk utilization details are inserted.
When drilling down to NFA from CAPC (as a power user), the Flow Forensics, and the Site to Site tabs are hidden. The issue frequently occurs when you navigate between the tabs in NFA.
With this fix, admin users can view the Flow Forensics, and the Site to Site tabs when drilling down to NFA from CAPC.
For MySQL users, if the password contains "D"(capital D) and while encrypting the password it is converted to special character ":". When NFA OData API forms the connection url to connect database, issues occur due to the special characters in the url. In few OData API calls urls are formed dynamically and in few cases urls are formed using props and settings.
Code changes are made to query the calls using OData Api even the password in the ReporterAnalyzer .ini file contains ":".
When using the OData API to create a CVI, some subnets are not created properly in the database. This issue occurs when subnet octets range is more than 127, example: 184.108.40.206/24.
Modified the OData API query to properly insert the subnet ranges.
The Top Interfaces charts in EOV page show high Rates and Utilization for interfaces.
Code changes are made to show the correct Rates and Utilization for interfaces for the Top Interfaces charts in EOV page.
Viptela devices interface up/down stream speeds are not accurate.
Code changes are made to display the correct up/down stream values of the interface bandwidth for the Viptela devices.
FLT files are creating unwanted interfaces.
Removed the FLT file interface creation code in the NFAConsole to avoid the duplication of the interfaces.
As part of merge interfaces, after the console/harvester services are restarted, the merge activity gets aborted intermediately.
Code changes are made to verify the merge activity when the harvester/console services are restarted. Also implemented the retry mechanism when the merge activity goes wrong after the restart.
RouterName and RouterID are missing in Interfaces API after upgrading from 10.0.2.
RouterName and RouterID are now available in the Interfaces API.
While processing few custom virtual subnet rules which has IPv6 source/destination getting an exception "java.lang.IllegalArgumentException: Length of IP Address and Subnet Mask do not match!"
NFA does not support custom virtual interfaces rules for IPv6 flows whose source/destination is IPv6. Added checks to validate any such flows to discard while processing.
Issues Fixed in
Network Flow Analysis10.0.4
AD errors in log after upgrading to 10.0.1
Code changes are done to handle the custom storage engine’s bad templates with invalid data length.
When a device is deleted from NFA's 'Enable Interfaces' page, does not get deleted from the CAPC, the NFA is attached to.
A device when deleted from 'Enable Interfaces' page in NFA UI gets deleted (along with its interfaces) from the CAPC, the NFA is attached to.
After adding a router to a harvester sometimes, we get the exception 'Expected flow sequence cannot be null' is seen in harvester wrapper log file.
Worked on the root cause of the issue and now the exception 'Expected flow sequence cannot be null' will not be seen in harvester wrapper log file.
While loading 15-min resolution data NQMysql service crashes, if the database file is invalid under ReaperArchive15 directory.
Code changes are made to resolve Netqos NQMysql service crash so that the data for 15-min resolution gets loaded successfully.
Odata api has ifindex type as Singed Int 32 while as per standards ifindex of interfaces can be of unsigned int 32.
Modified the way odata handles ifindex of routers.
FLT files are processing too slow.
Added index to few columns of the reporter.routers table and optimized few queries which are involved in processing of .flt files.
Odata api while deleting interface/s and router/s runs delete queries in reporter and harvester tables and also sends agentids instead of interaceids while deleting interfaces from reporter.interfaces table.
Modified delete interface odata api and router delete odata api so that wrong interfaces will not get deleted from reporter.interfaces table during these operations.
Issues Fixed in
Network Flow Analysis10.0.3
IIS causes web page to not work: logo is not displaying on custom report pdf on console after I enable X-Content-Type-Options" value="nosniff".
Enable X-Content-Type-Options" value="nosniff" and change the image format jpg to gif. The report now displays the logo with nosniff.
Deleting a router from Enable Interfaces page, deletes router from all the harvesters.
Code changes are made to deletes router only from the respective harvester.
Egress Multicast data is not shown on the input interface, even if the input interface is non-zero.
Egress Multicast data is now shown on the input interface as well when the input interface is non-zero.
Some devices do not get refreshed automatically.
Devices get priority properly to get refreshed periodically.
Merge Interface rest API gives "start time and end time not available" response while merging two interfaces.
Code changes are done to return an appropriate response while merging two interfaces.
Values are changed for SNMP profiles during full sync in CA PM, if the privacy protocol is AES256_3DES.
Code changes are made to show the correct value after full sync with CA PM when the privacy protocol is for AES256_3DES.
On Linux, reaper service is down after harvester installation. The reaper reads incorrect DB password from ini file due to windows line encodings.
As part of the fix, the dos2unix command is applied to the DBUsers\ReporterAnalyzer.ini file.
Issues Fixed in
Network Flow Analysis10.0.2
SNMP information like interface speed is not shown in 'Enable Interfaces' page for Huawei devices.
The 'Enable Interfaces' page for Huawei devices now displays the SNMP information.
Harvester service runs successfully and processes all the incoming flows.
00957440, 00931541, 00960805, 00960786
Query service crashes when multiple reports are running in parallel.
Reports now run in parallel without crashing query service.
Issues Fixed in
Network Flow Analysis10.0.1
00931541, 00957440, 00960786, 00960805,00951251, 01126402, 01255217
Custom reports with ToS Group filters fail with the error "Failed to complete baseline calculation" as report status.
Reports complete successfully without errors.
Unable to apply ToS group filters on Custom reports, hence the report shows unrelated results.
The report now shows relevant results for the ToS Group filter you apply.
Status message in custom reporting tab does not honor the user time zone.
Status message in custom reporting tab now shows date and time relevant to the user time zone.
No data is loaded under Collections Sources in the Anomaly Detector tab.
The Collection Sources in the Anomaly Detector tab now show the appropriate data.
Issues Fixed in
Network Flow Analysis10.0.0
On Router Refresh detection, the data is still pointing to Old interfaces.
On Router Refresh detection, the data points to New interfaces.
Column Headers for Host Summary Volume in the custom reports do not match the columns when exported to CSV.
Column Headers for Host Summary Volume in the custom report match the columns when exported to CSV.
Search in Add Interface filter page of Custom reports does not work properly when the interface list is expanded.
The search works properly even when the interface list is expanded.
Column Headers do not match for Protocol reports when exported to CSV.
Column Headers matches the Protocol reports when exported to CSV.
The pages for Physical & Virtual Interfaces, Enable Interfaces loads slowly.
The pages for Physical & Virtual Interfaces, Enable Interfaces loads faster.
Flow Statistics page shows that router reboots more than the actual.
Flow Statistics page shows the router reboot correct count.
The AdminTrapsInitial.asp page is vulnerable to scripting attacks.
The fields are now encrypted to avoid the scripting attacks.
The Conversation charts in CA PC error out due to RIB query failures.
The Conversation charts load properly in CA PC.
The charts in CA NFA show data at a higher rate for Viptela devices.
The data for Viptela devices is shown correctly.
CA NFA no longer detects the proper sampling rate for the router.
CA NFA detects and honors the proper sampling rate for the routers.
Data gaps are seen in the flow statistics page.
Data gaps are not seen now.
CA NFA 9.5.0 shows less data for some routers, compared to the data for the same routers in CA NFA 9.3.8.
CA NFA shows correct data for all the routers.