Monitoring SD-WAN for Versa

casp1032
 
 
10.3.1 supports the monitoring of Versa devices through CA VNA integration. When 
DX NetOps Spectrum
 is integrated with CA VNA 
(configured with Versa plug-in), 
DX NetOps Spectrum
 receives the inventory information of the Versa devices through CA VNA. 
VNA configured with Versa plug-in. acts as an SDN Gateway to collect Versa inventory information and forwards information to 
DX NetOps Spectrum
. Ensure that the CA VNA must be configured with Versa plug-in.
The 
DX NetOps Spectrum
 and CA VNA integration fetches the following Versa entities inventory information and displays under the SDN Manager hierarchy in OneClick.
  • Sites
  • Branch Router
  • Director
  • Controller
  • Policy Group
 image (4).png 
This integration supports Versa entities synchronization. When the 
DX NetOps Spectrum
 and CA VNA integration is enabled, synchronization happens automatically at the scheduled time interval. Additions, deletions, and modifications of Versa entities in a Versa environment are reflected in 
DX NetOps Spectrum
.
Versa Topology
DX NetOps Spectrum
 displays topology for Versa devices.
Topology for Controller
The overlay topology is seen by clicking the controller, it displays the devices and how they are connected through the various transports
 Versa Topology.JPG 
Versa Inventory
You can view the Versa entities such as Branch Router, vBond, Controller, Director in the OneClick console. Logical entities such as Sites and Policy Groups can also be viewed on the OneClick Navigation page. A new container '
VNA Inventory
' is created under the Universe view, this container has the Versa entities. In the Explorer View, 
SDN Manager
  provides a more detailed hierarchy i.e.
 
 Domain > Sites > Policy Groups > Policy > branch routers
 
, compared to the 
VNA Inventory
 view, which only displays the hierarchy of branch routers and associated Tunnels. 
Reconciling Versa Entity Data in 
DX NetOps Spectrum
During CA VNA data synchronization, when a new Versa entity is created in versa, it is reported to 
DX NetOps Spectrum
DX NetOps Spectrum
 performs a search to identify if this entity was modeled during 
DX NetOps Spectrum
 discovery and modeling. If such an existing model is found, 
DX NetOps Spectrum
 reconciles the CA Versa entity information with the existing model, instead of creating a model.
Interfaces Information
As a user, you can see the tunnels that are associated with the interfaces under the 
Interfaces
 tab. 
  • Tunnels
  • Physical Interfaces 
  • Transport
SDN Tunnels associated to Branch Router Interfaces
The Interfaces tab in the Component Details panel shows all the tunnels information which is associated with the selected branch router.
 Interfaces.JPG 
Policy Group
As a user you can see the edge router to which the policy group is applied: 
 Versa 4.JPG 
Policies Information
On clicking the policy, as a user, you can see the metrics that are associated with the policy and the SLA paths applied. For branch routers, associated policy and policy group information is displayed in the 
Information
 tab of the contents panel.
Branch router Policy Information
 Policy versa.JPG 
SLA Path
As a user you can see the edge devices and their transport associated with the SLA path:
 Versa 3.JPG 
Events Generated in Versa Analytics
The following table provides information about the supported alarm types, threshold values, and the default destination to which the alarms are exported. Following are the events that are generated under Versa analytics and pulled into 
DX NetOps Spectrum
:
Alarm Type
Description
Default Destination
cpu-utilization
Generated when datapath CPU utilization exceeds the configured threshold value.
SNMP, Syslog, analytics
mem-utilization
Generated when datapath memory utilization exceeds the configured threshold value.
SNMP, Syslog, analytics
disk-utilization
Generated when disk utilization exceeds the configured threshold value.
SNMP, Syslog, analytics
org-session-utilization
Generated when the number of sessions of an org exceeds configured number of sessions.
SNMP, Syslog, analytics
device-session-utilization
Generated when the number of sessions exceeds the configured number of sessions for a device/appliance.
SNMP, Syslog, analytics
Interface-down
Generated when an interface (or sub-interface) goes down.
SNMP, Syslog, analytics
uplink-bw-threshold
Generated when current uplink bandwidth exceeds the configured uplink bandwidth of an interface.
SNMP, Syslog, analytics
dnlink-bw-threshold
Generated when current downlink bandwidth exceeds configured uplink bandwidth of an interface.
SNMP, Syslog, analytics
adc-server-down
Generated when the backend server does not respond to ADC monitors for a specified amount of time. Once the server is marked down, it is not considered for load balancing.
SNMP, Syslog, analytics
adc-vservice-down
Generated when all backend servers attached to virtual service are declared down because of monitor health failure. No traffic is served by this virtual service (VIP).
SNMP, Syslog, analytics
cgnat-pool-utilization
Generated when the CGNAT pool exceeds configured threshold value or when the pool is exhausted.
SNMP, Syslog, analytics
snat-pool-utilization
Generated when the SNAT pool exceeds configured threshold value or when the pool is exhausted.
SNMP, Syslog, analytics
ipsec-tunneldown
Generated when IPSEC tunnel with a peer goes down.
SNMP, Syslog, analytics
ipsec-ike-down
Generated when IKE connection that is established with a peer goes down.
SNMP, Syslog, analytics
bgp-nbr-state-change
Generated when BGP between peers goes down or comes back up.
SNMP, Syslog, analytics
vrrp-v3-new-master
Generated when VRRP router transitions to the MASTER state.
SNMP, Syslog, analytics
vrrp-v3-new-backup
Generated when VRRP router transitions to the backup state.
SNMP, Syslog, analytics
vrrp-v3-proto-error
This notification indicates that the VRRP router has encountered protocol error like version mismatch, checksum error, or VRRP group id mismatch.
SNMP, Syslog, analytics
ddos-threshold
Generated when DDOS traffic exceeds the configured aggregate/classified DDOS threshold.
SNMP, Syslog, analytics
zone-protection-flood
Generated when flood traffic exceeds the configured zone protection threshold value.
SNMP, Syslog, analytics
port-scan-flood
Generated when PORT-SCAN from a source to destination exceeds the configured zone protection profile value.
SNMP, Syslog, analytics
sdwan-branch-disconnect
Generated a branch gets disconnected from Controller.
SNMP, Syslog, analytics
sdwan-datapath-down
Generated when all paths between two branches go down.
analytics (From Controller)
dhcp-pool-utilization
Generated when DHCP addresses are exhausted and no more addresses can be allocated from DHCP address pools.
SNMP, Syslog, analytics
software-trial-expired
Versa appliance trial period expired.
SNMP, Syslog, analytics
software-trial-error
Versa appliance trial key tampered.
SNMP, Syslog, analytics
interface-half-duplex
Generated when an interface is detected to be in Half Duplex mode.
SNMP, Syslog, analytics
nexthop-down
Generated when nexthop gateway does not respond to monitors for a specified amount of time. Once nexthop is marked down, routes are withdrawn.
SNMP, Syslog, analytics
monitor-down
Generated when IP destinations that are part of the monitor does not respond to the given type of probe packets for a specified amount of time. Once the monitor is marked down, dependent routes are withdrawn and redistribution policies are recomputed.
SNMP, Syslog, analytics
software-key-about-to-expire
Versa FlexVNF key expires soon. Contact Versa Support to replace it with a new key. For unrestricted usage, ensure Versa FlexVNF is subjugated to Versa Director and there is connectivity between Versa FlexVNF and Versa Director.
SNMP, Syslog, analytics
ha-state-change
Generated when HA state changes from master to slave or vice versa.
SNMP, Syslog, analytics
ha-sync-status
Generated after configuration sync happens between active and standby. Either sync error (or) sync ok are reported.
SNMP, Syslog, analytics