> For the complete documentation index, see [llms.txt](https://docs.colt.net/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.colt.net/product/sd-wan-versa/getting-started/exploring-the-sd-wan-monitor-tab.md).

# EXPLORING THE SD WAN MONITOR TAB

The Monitor tab shows the summary and granular information of for your devices, along with their network health and service information:

* organizations connecting to different core elements such as the controllers and different device types for your organization
* map displaying the different core elements and devices’ location, click on a device on the map to view the device details
* firmware summary of the associated devices
* multiple device health summary with deeper details to view a list of devices with their status
* alarm summary and drill-down functionality to view the list of devices with their respective events
* application use of all the associated devices
* subscribed services view for each customer organization
* policy violations view for each customer organization

### NETWORK OVERVIEW

The Summary subtab has seven tiles to show you activity for your network (devices and organisations):

{% columns %}
{% column %}

<figure><img src="/files/3jtrWQBhL8b2whyBbT9q" alt=""><figcaption></figcaption></figure>
{% endcolumn %}

{% column %}

1. Tenant Summary tile
2. Map View tile
3. Tenant Health tile
4. Recent Events tile
5. System Summary tile
6. Application Activity tile
7. Services tile
   {% endcolumn %}
   {% endcolumns %}

<details>

<summary>TENANT SUMMARY TILE</summary>

The Tenant Summary tile shows the number of core elements associated and devices for your organization:\
&#x20;

* controllers
* hubs
* branches
* non SD WAN nodes such as routers, DHCP, NAT, and security standalone devices\
  &#x20;

To view the tenant information as a table, click Detail on the Tenant Summary tile. (To return to tile view, click Back.)

<figure><img src="/files/yykg83tI7jxNEzGoDruj" alt=""><figcaption></figcaption></figure>

</details>

<details>

<summary>MAP VIEW TILE</summary>

The Map View tile shows the location of your organization's controllers, branches, and hubs:

* controllers are shown in blue
* branches are shown in green
* hubs are shown in orange

<figure><img src="/files/3TENH7ObqafkZr1W9yNt" alt=""><figcaption></figcaption></figure>

</details>

<details>

<summary>TENANT HEALTH TILE</summary>

The Tenant Health tile shows summary information of all of your organization's devices:

* Config Sync Status—the number of Versa Director’s device configurations that are in sync with the device.
* Reachability Status—the number of devices reachable via ping or SSH from Versa Director.
* Service Status—the number of device services running in a good state.
* Interfaces—the number of LAN and WAN interfaces and their status.
* BGP Adjacencies—the number of BGP adjacencies in the established, connect, and idle state.
* IKE Status—the number of IKE connections in the up and down state.
* Paths—the number of paths with respect to devices associated in the up and down state.

<figure><img src="/files/0jvejUMRZFwnYnbdRpYo" alt=""><figcaption></figcaption></figure>

To view more information, click the row, then:<br>

* To go back to the Tenant Healthsummary view, click Back.
* To search for a device, click the Search icon.
* To sort the data in ascending/descending order, click the Sort icon.

<figure><img src="/files/pE4bsq9B9TIgYdzyA1La" alt=""><figcaption></figcaption></figure>

* To view the status for a device, click the row for the device.\
  \
  The SD WAN portal shows the device's status.

</details>

<details>

<summary>RECENT EVENT TILE</summary>

The Recent Events tile shows all the alarms across your organization and its devices. Alarms have multiple levels: critical, major, minor, indeterminate, and warning. For details on an alarm type (including the devices with that alarm), click the bubble for that alarm.

* To view the device information for each alarm type in a table, click Detail.
* To go back to tile view, click Back.
* To select the columns to be displayed, click Column Filter icon.

<img src="/files/o0iVV6165LGgS9iWuywK" alt="" data-size="original">

* To filter the alarms you're viewing, click the Alarms Filter icon.

![](/files/iX6cJ5d1UlxbUb1BQXbe)

* To see the events list, which shows the alarms raised or cleared, click on the device.

<figure><img src="/files/oUY6SjdTrfzNRrPgnxGs" alt=""><figcaption></figcaption></figure>

</details>

<details>

<summary>SYSTEM SUMMARY TILE</summary>

The System Summary tile shows of the number of devices, along with their hardware and software version information.

To get additional information, click the row.

<figure><img src="/files/UaS178Eib3KSQic1ZuSJ" alt=""><figcaption></figcaption></figure>

</details>

<details>

<summary>APPLICATION ACTIVITY TILE</summary>

The Application Activity tile shows the top 10 applications used on the device based on these parameters:

* sessions
* transactions
* total bytes forward
* total bytes reverse\
  &#x20;

To view application activity statistics:

1. Click the Settings icon.
2. Select a parameter. The Application Activity tile shows the break-up for each application.

<figure><img src="/files/xTALXPu1maDJiYnPlsNH" alt=""><figcaption></figcaption></figure>

</details>

<details>

<summary>SERVICES TILE</summary>

The Services tile shows the total number of services turned on for your organization and associated devices.

<figure><img src="/files/QElxK2aGWHyYGyKM4QU6" alt=""><figcaption></figcaption></figure>

</details>

### APPLIANCE OVERVIEW

Use the Devices subtab to get an overview of your appliances: view a list of your appliances, then get more information about each appliance, such as services on the appliance, etc.

#### APPLIANCE LIST

The appliance list shows your deployed appliances and whether they are reachable from the Director. You can also view the deployed configuration and take a snapshot or restore the appliance configuration should you change it.

To view the appliance list, click the Monitor tab, then click the Devices subtab. (You can also view the appliance list by clicking the Configuration tab, and then Devices.)

1. Appliance summary (click to view a summary of an appliance).
2. Manage appliance configuration snapshots.
3. Appliance reachable from Director.
4. Appliance up to date with templates.\
   &#x20;

To view a summary of one of your appliances, click the blue hyperlink for the appliance (in the Name column).

Use the sections below to explore the information available for each appliance:

<figure><img src="/files/lO0Px6HmWCMWZkzgEYn4" alt=""><figcaption></figcaption></figure>

<details>

<summary>SUMMARY SUBTAB</summary>

To view a snapshot of the device, click the Summary subtab. Versa Director shows the following tiles to summarize the device:

* **CPE Interfaces** tile—A breakdown of interfaces and the traffic that is going over them in four second increments. This can be for all traffic or all SD WAN traffic. To view interface details, click the eye icon (next to the interface name):
  * IP address. Configured and public IP, if different
  * Current RX/TX bps
  * Configured RX/TX bps
  * VRF\
    &#x20;
* **SD-WAN Application Traffic** tile—A filtering option to look at a specific SD WAN traffic flow between FlexVNF’s and gives the ability to see SLA performance in real time. **Under SD-WAN Application Traffic**, you can look at an aggregate of all SD WAN traffic to a specific branch, along with looking at traffic for a specific SD WAN policy. Traffic counters will be displayed in the same 4 sec increments as the CPE interfaces section. If a SD-WAN policy and branch is selected, you can also see the associated SLA metrics and the thresholds that are set to deem that link out of policy.<br>
* **Recent Events** tile—recent alarms received from the FlexVNF.
* **Health Monitor** tile—current health of the FlexVNF looking at:
  * Is the configuration on the device in sync with the template on Director.
  * Versa Director's reachability to the remote FlexVNF
  * Versa services status
  * Number of interfaces: up or down
  * Number of BGP adjacencies: up or down
  * IKE status: up or down
  * SD-WAN paths: up or down\
    &#x20;
* **Policy Violations** tile—any SD-WAN policy violations occurred on that device.
* **Appliance Activity** tile—top applications going through the FlexVNF.

<figure><img src="/files/kIiWkeGVeARAIBAOZcvW" alt=""><figcaption></figcaption></figure>

</details>

<details>

<summary>SERVICES SUBTAB (OVERVIEW)</summary>

The Services subtab is a quick way to get information from a branch FlexVNF without having to sign in to the CLI and run a command. This is useful for an operations teams to track down an issue as well as for daily operational tasks—including looking at traffic flows or seeing the health of IPSec tunnels. The items shown on the Services subtab fall under two categories: Services and Networking.

<figure><img src="/files/V012TitNXJGtI7FLkmUh" alt=""><figcaption></figcaption></figure>

</details>

<details>

<summary>SERVICES SUBTAB (SD WAN)</summary>

#### SERVICES: SD WAN

* **Aggregate Traffic**—From the branch you are on to another branch or a controller, you can look at the aggregate amount of traffic that has traversed over the encrypted or plain-text tunnels.

<figure><img src="/files/QpR6Cs2kqLhIXCAyTJyG" alt=""><figcaption></figcaption></figure>

* **Forwarding Profiles**—The screen displays the forwarding profile statistics. The data includes the profile name, hit count, valid link drop count, SLA fail drop count, SLA fail forward count, and turn redirect count.

<figure><img src="/files/tSk8IX7GOczpFv3a5vZz" alt=""><figcaption></figcaption></figure>

* **Access Circuits**—From the branch you are on to another branch or a controller, you can look at each transport and see how much data has traversed over the plain-text or encrypted tunnels.

<figure><img src="/files/Me9vmIQKIm4jq1q7ZQoe" alt=""><figcaption></figcaption></figure>

* **Policies**—How many times a policy has been hit and the transmit and receive bytes/packets.&#x20;
* **Sessions**—Active number of SD WAN sessions going through the local FlexVNF. Clicking the eye icon lets you search for SD WAN sessions by supplying any one of the following criteria to search for:<br>
  * Source IP address/prefix
  * Source port
  * Destination IP address/prefix
  * Destination port
  * Protocol
  * Predefined application
  * Predefined URL category

<figure><img src="/files/M8bEaTP3ErSYd8IApcGg" alt=""><figcaption></figcaption></figure>

* **Sites**—All the SD WAN sites this specific branch has connectivity to.&#x20;

<figure><img src="/files/czz2CnwqNBvJL0VBjm1y" alt=""><figcaption></figcaption></figure>

* **SLA Paths** - From the branch you are on to another branch or a controller, you can look at what the current SLA paths are by forwarding class to see if they are up, the last time they flapped and if adaptive monitoring is active or not.

<figure><img src="/files/5JaPMpXjsERo1Ua3ljl2" alt=""><figcaption></figcaption></figure>

* **SLA Metrics**—From the branch you are on to another branch or a controller, what the current SLA metrics are between the devices.

<figure><img src="/files/WxHj994q1DF08CQjljVi" alt=""><figcaption></figcaption></figure>

</details>

<details>

<summary>SERVICES SUBTAB (NEXT-GENERATION FIREWALL)</summary>

#### SERVICES: NGFW

* **Antivirus**—select the antivirus type, for example User Defined Profile, from the list. Select the scanning profile from the list. Select the profile type from the list.

<figure><img src="/files/uGcl3998P3DXbtJug2yd" alt=""><figcaption></figcaption></figure>

* **Decryption**—shows the decryption filter, with the following choices.
  * Global—displays all the decryption data within the associated organisation.
  * Profile—displays the decryption data associated with user-defined profiles.
  * Policy—displays the decryption data associated with user-defined policies.

<figure><img src="/files/pO5gmF2i4Cnva1NqIA3K" alt=""><figcaption></figcaption></figure>

* **DDoS**—shows the DDoS policy details.&#x20;
* **IP Filtering**—shows predefined or user-defined IP filtering policies.

<figure><img src="/files/23vi7NmH7w6pYVU5t9sH" alt=""><figcaption></figcaption></figure>

* **Policy**—shows the hit count, forward packet/byte count, reverse packet/byte count, hit rate, and inactive session count for configured NGFW rules.

<figure><img src="/files/XwMcFiU9As59GMdq2aDY" alt=""><figcaption></figcaption></figure>

* **Security Packages**—security package details. The details include the installation date, version, flavor, release date, update type, and installation status.

<figure><img src="/files/Feq3gwFDK8u0J5UosoQy" alt=""><figcaption></figcaption></figure>

* **Sessions**—Refers to vulnerable sessions during the current system up time.&#x20;

<figure><img src="/files/dxSUjQwgGxew795Nv1Do" alt=""><figcaption></figcaption></figure>

* **URL Filtering**—shows URL filtering for the following:<br>
  * Profile—Displays URL traffic data associated with user-defined profiles.
  * Global—Displays URL statistics based on the total URL traffic in an organisation.
  * User Category Predefined—The Security Administrator can apply various types of policies based on the predefined URL categories.
  * User Category User-defined—The Security Administrator can create user-defined URL category objects for certain URLs and override predefined URL categorization values.
  * URL Reputation Predefined—The Security Administrator can filter websites based on their predefined reputation values.
  * URL Reputation User-defined—The Security Administrator can define URL reputation values and filter websites.&#x20;
* **Vulnerability**—select the type of vulnerability profile from the list to view details:
  * User Defined—refers to profiles as defined by an administrator.
  * Pre Defined—refers to system-defined profiles.&#x20;
* **Vulnerability Signature**—lets the administrator look into a profile/rule to see what vulnerabilities it is protecting against. Clicking view shows you what signature ID is associated with the policy.

<figure><img src="/files/FrTaRRxaR6HAjlYN7zd2" alt=""><figcaption></figcaption></figure>

* **Zone Protection**—shows the statistics of zone protection profiles.<br>

  <figure><img src="/files/nW2Yrn8TQwEUliwlXBS5" alt=""><figcaption></figcaption></figure>

* **Sessions**—NGFW session details. The details include the total number of NGFW sessions, number of sessions created, number of sessions closed, total number of NAT sessions, number of NAT sessions created, number of NAT sessions closed, and number of NAT sessions failed.

</details>

<details>

<summary>SERVICES SUBTAB (CGNAT)</summary>

* **Pools**—configured pool usage.

<figure><img src="/files/TXcpun8JHPwV8U6ttCuP" alt=""><figcaption></figcaption></figure>

* **Rules**—hit count, forward packet/byte count, and reverse packet/byte count for configured rules.

<figure><img src="/files/2BDZzanyn6nFtQZIX2bo" alt=""><figcaption></figcaption></figure>

* **Sessions**—NAT sessions created. Clicking on the eyeball, lets you search for CGNAT sessions by supplying any one of the following criteria to search for:
  * source IP address/prefix
  * source port
  * destination IP address/prefix
  * destination port
  * protocol
  * predefined application
  * predefined URL category

<figure><img src="/files/Tpc35bqmdGM3h7cYZHLW" alt=""><figcaption></figcaption></figure>

</details>

<details>

<summary>SERVICES SUBTAB (IPSEC)</summary>

* **Branch to Branch**—connection details from a IPSEC Profile view.

<figure><img src="/files/kaEZQjiMXmfm3xkmVP5j" alt=""><figcaption></figcaption></figure>

* **IKE History**—IKE history from an IPsec Profile view.
* **IKE Security Associations**—IKE SA details from an IPsec Profile view.

<figure><img src="/files/8m9mhCvs6Z68ZSyShBOV" alt=""><figcaption></figcaption></figure>

* **IPsec History**—IPsec History IPsec Profile view.

<figure><img src="/files/REr9FRA94QJzt6zqVukp" alt=""><figcaption></figcaption></figure>

* **IPsec Security Associations**—IPsec SA details from an IPsec Profile view.

<figure><img src="/files/df0RzehKyNdBPfHRUJpc" alt=""><figcaption></figcaption></figure>

* **Overview**—the IPsec details of the local FlexVNF.

<figure><img src="/files/ig9f7gu3UqqTDDFp5Ysp" alt=""><figcaption></figcaption></figure>

* **Profile Statistics**—profile statistics from the local FlexVNF based on a IPsec Profile view.

<figure><img src="/files/p9w93jB3ef9eNxRtnpI2" alt=""><figcaption></figcaption></figure>

<br>

</details>

<details>

<summary>SERVICES SUBTAB (SESSIONS)</summary>

Allows you to look at any session tables for SDWAN, CGNAT, and NFGW and to search across all session tables.&#x20;

</details>

<details>

<summary>SERVICES SUBTAB (NETWORK INTERFACES)</summary>

* **Interfaces**—the WAN and LAN interface statistics with respect to the organization associated with the device. The table displays the latest cumulative values at the time of polling after the interface is activated, unless a clear operation is performed. The PPS (packets per second) and BPS (bits per second) counters average out over a maximum of 30 seconds. The PPS and BPS numbers represent the observable rate of a stable flow. For example, if the traffic drops to zero at the 20th second, the value of these averages will drop to zero as well, and will not use the values of the first 20 seconds to calculate the rate.

<figure><img src="/files/08MUpXAm7mCbgHfFUs0J" alt=""><figcaption></figcaption></figure>

Click the eyeball to view the configured IP address, VRF, interface status, and type.

<figure><img src="/files/CvOLsU2Q3hGNlncyaVE2" alt=""><figcaption></figcaption></figure>

* **Routes**—show either IPv4 or IPv6 routes from a specific routing instance.

<figure><img src="/files/VpLizBxAFlKen3myesxb" alt=""><figcaption></figcaption></figure>

* **BGP**—show BGP neighbor adjacencies from a specific routing instance.

<figure><img src="/files/tPelVePKk7423LEALXq5" alt=""><figcaption></figcaption></figure>

* **OSPF**—show OSPF neighbour adjacencies from a specific routing instance.

<figure><img src="/files/PnoohsOaFRkXpUpZfnWJ" alt=""><figcaption></figcaption></figure>

* **OSPFv3**—show OSPFv3 neighbor adjacencies from a specific routing instance.

Interfaces view

<figure><img src="/files/zfcN8rRyKo0HSXZqGH38" alt=""><figcaption></figcaption></figure>

Neighbour view

<figure><img src="/files/fxbD8AI3xvW2vKSbKut2" alt=""><figcaption></figcaption></figure>

* **BFD**—show BFD adjacencies from a specific routing instance.

<figure><img src="/files/KJpcoghCUMmQsKRV6QVK" alt=""><figcaption></figcaption></figure>

* **DHCP**—show DHCP active leases, lease history, and statistics.

Active Leases

<figure><img src="/files/xoJ4G32CJS8QnGPFMYEB" alt=""><figcaption></figcaption></figure>

Lease History

<figure><img src="/files/qJTjjQst5vhabjfpMsId" alt=""><figcaption></figcaption></figure>

Statistics

<figure><img src="/files/9nc309DcEMLgNdg8D2Hq" alt=""><figcaption></figcaption></figure>

* **CoS**—shows the following:

**App QoS Policies**—layer 2–7 QoS policies and their hit count, forward packets/bytes, dropped packets/bytes.

<figure><img src="/files/67PE5Vi8M5r4S84lXTS1" alt=""><figcaption></figcaption></figure>

**Interfaces**—shows the CoS interface details. The details include the transmitted and received packets, number of transmitted packets per second, number of transmitted packets dropped, number of received packets per second, number of received packets dropped, number of transmitted bytes per second, and the number of bytes dropped in transmission.

<figure><img src="/files/iF8eE9m5AVDyJ3rFFOau" alt=""><figcaption></figcaption></figure>

**QoS Policies**—layer 2–4 QoS policies and their hit count, forward packets/bytes, dropped packets/bytes.

<figure><img src="/files/EoI5ed3vTABb52y63Rhi" alt=""><figcaption></figcaption></figure>

* **VRRP**—shows details of VRRP master/slave, configured priority, VIP address.

<figure><img src="/files/T0WyjmY0hCVxOMmjhq8U" alt=""><figcaption></figcaption></figure>

* **Log Export Functionality (LEF)**—shows the status and statistics of configured LEF devices and groups:

Collector Groups (showing status)

<figure><img src="/files/P7p9SRr1MYGGFNbhpI8h" alt=""><figcaption></figcaption></figure>

Collectors (showing status)

<figure><img src="/files/3vw0MXHgntxdunBlN35N" alt=""><figcaption></figcaption></figure>

Collectors (showing statistics)

<figure><img src="/files/jwnse2dv7iIM5cLf2oSs" alt=""><figcaption></figcaption></figure>

* **ARP**—shows ARP information for a routing instance.

<figure><img src="/files/4iGBBq5AylmBAusfvF2o" alt=""><figcaption></figcaption></figure>

* **IP SLA**—shows state, address, routing instance, interval and threshold for configured IP SLA.

<figure><img src="/files/98Vw3kK2exb3Qr1Js6Je" alt=""><figcaption></figcaption></figure>

</details>

<details>

<summary>SYSTEM SUBTAB</summary>

The system tab displays the following information about the local FlexVNF.<br>

* CPE Resources—shows the CPU, disk, and memory usage for all the CPE resources.
* Firmware Summary—shows the hardware and software details.
* Device Summary—shows the device location and address.
* System Overall Status—shows the status of all the processes running on the system.
* Associate Templates—shows the name of the templates associated with the device.
* NTP Client Statistics—shows the NTP statistics.
* License—shows the license mode and status.

<figure><img src="/files/g6qrL58N43h8fAJMq9hE" alt=""><figcaption></figcaption></figure>

</details>

<details>

<summary>TOOLS SUBTAB</summary>

As a part of the troubleshooting process, Versa Networks exposes the following toolsets using the Monitor tab.

<figure><img src="/files/rmEfP03wYUpBcVI5XgxZ" alt=""><figcaption></figcaption></figure>

* **Ping**

<figure><img src="/files/ih7DErMd6rYpGynlAat7" alt=""><figcaption></figcaption></figure>

* **Traceroute**

<figure><img src="/files/51X3k2fliXqJCyeE72rV" alt=""><figcaption></figcaption></figure>

* **TCPDump**—you run tcpdump from the monitor tab using the standard tcpdump command syntax. When the tcpdump operation complete, a .pcap is downloaded to the local workstation.

<figure><img src="/files/rWeCihH6F63fd6Ig3Lnf" alt=""><figcaption></figcaption></figure>

* **Speed Test**—a device can be set up as a speed-test server and from the local FlexVNF you can run a speed test to test the link.

<figure><img src="/files/lhi7BDmjeAFr3vPlMrXz" alt=""><figcaption></figcaption></figure>

</details>
