New Features and Enhancements

The following new features have been added in this release. Some of the existing features have been improved, and are listed under the Enhancements section.
capm370
The following new features have been added in this release. Some of the existing features have been improved, and are listed under the Enhancements section.
New Features
Network Flow Analysis Administration (3.7.13 and Higher Only)
This release introduces the ability to manage network flow processing and view the overall heath status of your
CA Network Flow Analysis
reporters, harvesters, and interfaces.
New Group Editor (3.7.12 and Higher Only)
The new and improved group editor no longer uses Adobe Flash.
The following out-of-the box group names changed:
  • "Defined Tenants" changed to "Tenants"
  • "Collections" changed to "Custom Collections"
  • "Domains" changed to "IP Domains"
  • "Service Provider Global Groups" changed to "Global Tenant Groups"
  • "Service Provider Defined Groups" changed to "Global Tenant Groups"
  • "Service Provider Items" changed to "Global Tenant Items"
These name changes impact any existing custom scripts using the previous naming. You must update your scripts accordingly.
For more information, see the Groups section.
Telemetry
Telemetry is a capability that is integrated into
CA Performance Management
to send product usage and system configuration data to CA Technologies, a Broadcom Company (CA).
  • Telemetry does not collect Personally Identifiable Information (PII) or sensitive information.
  • For information about configuring
    CA Performance Management
    to collect and send telemetry data to CA, see Telemetry.
Extended Flow Views
This release introduces the ability to drill down
CA Network Flow Analysis
data from
CA Performance Center
interface without having to navigate to
CA Network Flow Analysis
. The interface context page has been enhanced to support the following views:
  • Network Flow Protocol
  • Network Flow Host
  • Network Flow Conversation
  • Network Flow ToS
For more information in the views, see Context Pages.
If the data source is CA Network Flow Analysis 10.x and higher, the links in the charts and tables in the IP Performance page open the corresponding network flow pages within CA Performance Management. If the data source is CA Network Flow Analysis 9.x and earlier, the links open the corresponding pages in the CA Network Flow Analysis console.
The following new interface pages are available only if the data source is CA Network Flow Analysis 10.x and higher. These pages are not be visible if the data sources are CA Network Flow Analysis 9.x and earlier.
  • Network Flow Protocol
    Provides trends and next level drill downs (hosts and conversations) for the selected Protocol in the table. Host and conversation trend tables provide utilization information in the context of the selected Protocol.
  • Network Flow Host
    Provides host trends and protocol stacked trends for the selected Host in the table.
  • Network Flow Conversation
    Provides host trends and protocol stacked trends for the selected Conversation in the table.
  • Network Flow ToS
    Provides trends and next level drill downs (hosts and conversations) for the selected Type of Service(ToS) in the table. Host and conversation trend tables provide utilization information in the context of the selected ToS.
Network Interface Performance Dashboard
This release introduces a Network Interface Performance dashboard with flow data. The dashboard contains the following views:
  • Routers with the Most Flow Traffic
  • Top IP Interface Utilization (Flow) - Out
  • Top IP Interface Utilization (Flow) - In
  • Top Flows By Volume - Out
  • Top Flows By Volume - In
  • Top Hierarchy Hosts By Volume
  • Top Hierarchy Protocol By Volume
For more information, see CA Network Flow Analysis Views in CA Performance Center.
Save On-Demand Report Templates for All Users
This release introduces the Save On-Demand report templates role. This role allows the user to save On-Demand report templates that are visible to all users. By default, the administrator has the right to this role. Administrators must provide the rights to users who need this role, to save On-Demand report templates for all users. This role right is always assigned together with the Create On-Demand Report Templates and Run On-Demand Report Templates right. Users with this right can save on-demand report templates at the tenant level, which allows all users within the tenant to view the template.
Data Aggregator SSL Configuration Tool
In an environment with a single Data Aggregator, you can enable the Data Aggregator for HTTPS. This release introduces an SSL configuration tool for enabling the Data Aggregator to use HTTPS. For more information see, Enable the Data Aggregator to use SSL.
Install the CA
CA Performance Center
Database on a Separate Node
In previous releases, CA
CA Performance Center
services and the MySQL database were installed on the same node. You can now install the MySQL database on a separate node for better performance.
The CA
CA Performance Center
installer now includes an Advanced Installation option that allows you to install CA
CA Performance Center
services, or the MySQL database.
To perform a fresh installation, see Install Performance Center. To upgrade an existing system and install the MySQL database on a separate system, see Migrate the CA Performance Center Database to a Separate Node.
Disable Display Within a Frame in a Web Page
For increased security, you can now use the following options to disable display within a frame in a web page:
  • Allow
    CA Performance Center
    in a frame (Local Override)
    Determines whether
    CA Performance Center
    is allowed to display within a frame in a web page.
    Default:
    Enabled
    For more information, see Update Performance Center Website Settings.
  • Allow Single Sign-On in a frame (Local Override)
    Determines whether Single Sign-On is allowed to display within a frame in a web page.
    Default:
    Enabled
    For more information, see Update Single Sign-On Website Settings.
Fault Tolerant Data Aggregator SSL Configuration
You can now enable HTTPS for the Data Aggregator in a fault tolerant environment with multiple Data Aggregators. Previously, you could enable the Data Aggregator for HTTPs only in an environment with a single Data Aggregator. For more information, see Enable Fault Tolerant Data Aggregators to Use SSL.
Filter Which Data Sources Contribute Inventory to the Data Aggregator
For each data source, you can now specify whether it contributes inventory to the Data Aggregator with the
Contribute inventory to the Data Aggregator
option. The
Discover devices from other data sources
was removed for the Data Aggregator.
For upgrades, the following default behavior applies:
  • If
    Discover devices from other data sources
    was selected for the Data Aggregator,
    Contribute inventory to the Data Aggregator
    is selected for all preexisting data sources.
  • For new data sources,
    Contribute inventory to the Data Aggregator
    is unselected.
  • If
    Discover devices from other data sources
    was unselected for the Data Aggregator,
    Contribute inventory to the Data Aggregator
    is unselected for all data sources.
For fresh installs,
Contribute inventory to the Data Aggregator
is unselected by default.
For more information, see Configure a Data Source.
Manage Device Life Cycles from an Alarms View or Device Inventory
You can now change the life cycle state of a device from an alarms view or device inventory. For more information, see Alarms View and Manage Device Life Cycles.
Enhancements
Data Aggregator Upgrade (3.7.16 and Higher Only)
The
etlHealth.sh
script is now included with the Data Repository installation. We recommend you run this script well in advance of the upgrade and again directly before the upgrade.
For more information, see Upgrade the Data Aggregator.
New Custom Gauge View Options (3.7.11 and Higher Only)
If you are configuring a custom gauge view, you can now select
Scaled
or
Unscaled
to specify whether the values in the view are scaled. Scaled values appear with larger units, for example, 1 KB. Unscaled values appear in the raw form for the metric, for example, 1000 bytes. The new options are unavailable for all existing custom gauge views, which now have "Deprecated" appended to the title.
For more information, see Gauge Views.
Check Point Virtual Firewall Context Name Support (3.7.5 and Higher Only)
A new vendor certification and metric family are defined for Check Point Virtual Firewalls.
To add Check Point Virtual Firewalls to your managed devices, complete the following steps:
  1. Use SNMPv3 profiles to discover the physical parent devices.
  2. Attach the new Context System metric family to each device.
  3. Wait for discovery to complete.
    The Check Point Virtual Firewalls are automatically discovered.
    All the Check Point Virtual Firewall items have the same IP address as the parent device. However, each Check Point Virtual Firewall item has its own context name. All the polling data for the Check Point Virtual Firewall item (CPU, Memory, Interfaces, and so on) appear under the context name.
LDAP Authentication for CA Business Intelligence Reports and Dashboards (3.7.5 and Higher Only)
When you integrate CA Business Intelligence 7.1.1 and higher with CA Performance Management 3.7.5 and higher, you can enable LDAP authentication for CA Business Intelligence reports and dashboards. For more information, see Enable LDAPS Authentication. You also need to enable LDAP authentication in CA Business Intelligence. For more information, see the CA Business Intelligence documentation.
Search Within Specific Columns (3.7.4 and Higher Only)
Global searches in large-scale environments can impact performance. You can now use the following filter expressions to refine your search results and minimize the impact on performance.
ViewName1
:
Column1
;
ColumnN
&
ViewName2
:
ColumnN
=
value
If you exclude the
ViewName
, the search applies to all views.
Groups:Name;Owner&Interfaces:Name;Description=cisco
Enhanced MySQL Security (3.7.2 and Higher Only)
As a step toward enhanced security, the Performance Center installation now allows you to set a custom MySQL password.
Increased Maximum Alarm Filter Condition Values (3.7.2 and Higher Only)
You can now have a maximum of 50 overall conditions and 100 alarm filter condition values per condition. For all conditions that support multiple values, you can enable Advanced mode. In Advanced mode, you can enter a comma separated list of values. You can use "and" for all the values or you can select the checkbox to use "or". For more information, see Alarm Views.
Map Views Include All Sites (3.7.1 and Higher Only)
Sites with no data now appear as gray icons in Map views. In previous versions, sites with no data were excluded from the Map view. For more information, see Map Views.
Alarms View Details Pane
You can now add or remove the attributes to display in the Alarm Details pane. By default, the Alarm Details pane displays the following attributes.
  • Severity
  • Date/Time
  • Item Name
  • IP Address
  • Model Type
  • Acknowledged
  • Contact Person
  • Troubleshooter
  • Trouble Ticket ID
  • Number of Occurrences
  • Impact
For more information, see Alarms View.
Alarms View Interfaces Pane
The alarms view now includes an Interfaces pane for viewing the interfaces that are associated with an alarm. For more information, see Alarms View.
Alarms View Multiple Column Sort
You can now sort by up to three columns in an alarms view. For more information, see Alarms View.
Authentication Requirements
By default, user passwords must now meet the following heightened requirements:
  • Different from the username
  • Minimum length of eight characters
  • Maximum length of 30 characters
  • Contain at least 3 of the following types of characters:
    • Special characters
    • Uppercase letters (A-Z)
    • Lowercase letters (a-z)
    • Numbers (0-9)
For more information, see Customize Your User Settings.
By default, non-LDAP passwords expire after 105 days. When passwords expire, access to REST and the OpenAPI is blocked. The next time users log in, they must change their passwords.
You can now enable a setting that disables users after multiple failed login attempts within a timeframe. By default, 6 failed login attempts within 3 minutes disable the user. In addition to disabling the user, you can also block the IP address of the user for a specified amount of time. This functionality is
not
an intrusion detection system. For more information, see Manage Authentication Requirements.
Changes to Life Cycle Management
Life cycle management now supports devices that are assigned an IP address that previously belonged to a retired device. 
When a device with a replacement IP address is added to the network,
CA Performance Management
attempts to discover it using the following sequence:
  • CA Performance Management
    searches using the SNMP Community String for the old device. If that fails, uses the other Discovery Profiles/Community Strings.
  • When a replacement device is created, it exists on any eligible Data Collector that manages the associated IP Domain.
  • If no SNMP Community String matches the device,
    CA Performance Management
    creates a Pingable using that IP Address. If users search Inventory for that device, they find the retired device
    and
    the Pingable replacement.
Replacement IP address support impacts the following behavior:
  • You can now use the IP address of a retired device for a new device. The new device does not need to be the same type as the retired device.
  • By default, performance data exists separately for the device with the old and with the new IP addresses. You can configure reporting on the new and retired devices for continuity.
  • CA Network Flow Analysis
    now more accurately reflects interfaces that have replacement IP addresses.
  • In previous releases, 
    CA Network Flow Analysis
    displayed an interface with the old IP address, and another interface with the new IP address.
  • When a device is deleted in CA Spectrum, the device no longer receives the Retired state automatically in
    CA Performance Management
    .
Business Hour Filtering for Dashboards
Business hours filtering is now supported for most views on context pages and On-Demand report charts. For more information, see Dashboards.
Device Inventory with Alarm States
If you have
CA Spectrum
configured as a data source, you can now view alarm states from the device inventory. For more information, see Inventory Pages and Views.
Full CSV Generation
You can now generate CSV files containing the full set of data for MultiTrend views, MultiViews, Dynamic Trend views, and On-Demand views. This support is in addition to existing support for full CSV generation of all other trend views. For more information, see Share Data with Other Users.
Group Rules on Device Alarm States
If you have
CA Spectrum
configured as a data source, you can now create group rules based on device alarm states. For more information, see Manage Group Rules.
Modifiable VCSupportExpression XML Tag
When you extend a vendor certification or metric family, you can now modify the
VCSupportExpression
XML tag, which was restricted in previous versions. For more information, see Restricted XML Tags.
Row Limit for Sent or Scheduled IM Table (Top) Reports
Reports sent or scheduled by email include only the information up to the row limit. The limit for the IM Table (Top) view is now increased from 1,000 to 2,500 by default. When an IM Table (Top) view contains a mix of core and baseline metrics, the results might be capped at 1,000 rows. This reduced row limit depends on the number of queried items. The following warning message appears, “Selected metric has a sum roll-up strategy. Detailed projections support only averaged metrics.”
For more information, see Share Data with Other Users.
Row Selection in Grids
If you mouse-click a row without pressing Shift or Ctrl, the clicked row is selected and the other selected rows are now deselected. To select more than one row, press Ctrl and click the other rows. To select a range of rows, click the first row, press Shift, and select the end of the range.
To make a selection in a menu or tree using only the keyboard, you must now press Shift and click Enter. For more information, see Product Accessibility Features.
Search Across Displayed Columns
When you enter a search string in a view, results now include matches from many of the columns that are displayed in the view. For example, previously, if you replaced the display name with the item name alias, you could not search on the alias value. Now you can search on many of the values in the displayed columns including custom attributes. The results also include matches from the inventory data columns that a user has added to a view beyond the default columns. Some numeric and data columns do not support searching. For more information, see Search and Filter in CA Performance Center and Inventory Pages and Views.
This capability is supported only with the Data Aggregator data source.
Secure Connection Between
CA Performance Center
and Database
SSL now secures the connection between
CA Performance Center
and the MySQL database.
CA Business Intelligence
Installation and Uninstall
The installation script for
CA Business Intelligence
reports and dashboards was enhanced to automate the GUID retrieval. You can now perform a silent uninstall.
For more information, see the following pages:
Platform Updates
CA Business Intelligence
(
CA Performance Management
3.7.12 and Higher Only)
CA Performance Management
3.7.12 and higher is now packaged with
CA Business Intelligence
7.1.1.
CA Performance Management
3.7.X is compatible with
CA Business Intelligence
7.1.1.
AdoptOpenJDK 8 (3.7.3 and Higher Only)
This release introduces AdoptOpenJDK 8 and removes Oracle JDK.
Jetty (3.7.1 and Higher Only)
This release upgrades Jetty to release 9.4.15.v20190215
Vertica Update
This release upgrades the Data Repository to Vertica release 9.1:
  • The default installation directory for the Data Repository installation package and Vertica license file has changed to the following location:
    /opt/CA/IMDataRepository_vertica9/