Prime Infrastructure port grouping
Hi,
I have question regarding the port groups.
Is it possible to create a port group based on port type where the port type is a dot1q trunk?
In the drop down menu, I can only find Cisco ISL.
My goal is to apply the interface/port monitoring only on trunk interfaces/ports.
Regards
Joerg
This discussion will be of your help:
https://supportforums.cisco.com/thread/2239478
You can select the interfaces of your interest for port groups manually. Check the user guide here:
http://www.cisco.com/en/US/docs/net_mgmt/prime/infrastructure/2.0/user/guide/setup_groups.html#wp1055433
P.S : In CSC it is always good to share the device and Cisco PI platform and version details. Many times you'll find features are supported in one release and not in others.
-Thanks
Vinod
**Rating Encourages contributors, and its really free. **
Similar Messages
-
Prime Infrastructure (2.0) utilization report on port group possible?
Hello
I want to create an interface utilization report for a specific port group in PI, but can't see how to do that in the report setting. You only seem to be able to select a specific device or site rather than port group. Is it possible? Also, is it possible to put that on a dashlet?
thanks for your helpThanks for that Mahavir
Yes, I worked that out a little while ago, and can now see interface utilization by port group on the Performance > Network Interface page. I do have another question however (well two)....
I wanted to add graph over time for the utilization to the detail dashboard, but nothing shows up, even though I see the utilization in the network interface page, so I'm sure the monitoring is deployed. Why is the data missing from the graphs?
Also, I wanted to see interface packets per second graphs, but see that is not part of any default template, so I created a customer SNMP template from the IF-MIB to do this, but I can only deploy that against sites/devices or a list of interfaces, and not port groups. Why can't I deploy a customer SNMP template against a port group?
thanks for your help -
Cisco Prime Infrastructure 2.0 Alarms (switch port down)
We have a cisco Prime Infrastructure 2.0 managing switches, routers and AP.
By default, when a port of a switch goes down, the cisco Prime Infrastructre generates a Critical Alarm for that. (this is a problem, because every phone of laptop disconnection will generate a critical alarm for me)
I found out that if we go to Administration --> Alarm Severity --> Link down, I can change the Alarm from Critical to another type of alarm.(ex: warning)
The problem is that I want to keep the Critical Alarm for my Uplinks ports and for some important switch ports, and I would like to make the alarm as warning for the normal user ports.
I know that I can create Port Groupping and add ports to each group and apply monitoring templates on those groups. But This couldn't Help me solving my alarm problem.
So I just need to know how to manage the alarms severity for each group of ports.
Thank youHi,
Same problem here.
I am using Cisco Prime Infrastructure 2.0 (evaluation version for 60 days). I want to deploy port monitoring for my trunk ports between switches and some other important ports e.g. servers. Basically I want to get alarms when these ports are down, there are errors on ports and etc.
So in Design>Port Grouping I created User Defined group with important ports. In Deploy>Monitoring Deployment I selected Interface Health (default)>Deploy selected Port Groups and when selected port group I created.
Now the rule shows Deployed: Yes and Status: Active. After that I just pulled out one port which was in monitored group, waited 5min as it is set in Interface Health (default) template, and nothing happened, and worse, alarms started to show up of other ports where regular users are connected (computers was turned off), which I do not want to see at all. I tried redeploy template, I even created my own template but still no desired result.
Any suggestions how to make port monitoring work? -
Prime Infrastructure 2.1 - SFP port alarms to email/show total network traffic speed
Hello,
Running Prime Infrastructure 2.1 with assurance license.
I have two questions:
1. Setting up alarms in PI 2.1. I've set up a port group of my main switches that have TenGig links to our main router. I have set up a monitor template that has only interface availability on it and then deployed it. In theory, this should email me, the contact (where I put my email address in), when the ports that I have set up go down, correct?
2. I want to monitor the entire traffic of the network going in to the router from our TenGig ports. I've messed around with the dashlets and adding my port group to the WAN utilization dashlet but only see % of utilization. I'd like to be able to see raw traffic stats from those ports. I'm sure I'm missing something. Where do I need to look in PI to check raw traffic data in Mbps/Gbps from my ports.In my first question, I do not get an email when a port goes down. I set up a test port and when I pulled it, after about 10 minutes, it had never sent me an email. I will continue to look through what I've been doing to see if I can figure it out.
-
How to deploy prime infrastructure template on selected interfaces/ports
Hi,
So I manged to create an port grouping (all ports which start with the description ACP)
And I also managed to create a CLI-template with the a DB variable setup (see http://www.cisco.com/c/en/us/td/docs/net_mgmt/prime/infrastructure/2-0/user/guide/prime_infra_ug/create_temps.html#60783)
My template:
#foreach ($interfaceName in $InterfaceNameList)
interface $interfaceName
switchport trunk encapsulation dot1q
switchport trunk native vlan 3
switchport trunk allowed vlan 3-8
switchport mode trunk
#end
But when I deploy this template it will apply to all the ports on that switch, I can't apply only to the ports in the port group
Is it possible to fix this somehow?
I can think of 3 ways:
Use other menu than Deploy -> Configuration Tasks -> <select template> -> deploy..., Which is the correct one?
Make an new DB variable which only select ports which start with the description "ACP", but I am on the dark how to create such a DB variable, I know I need to edit /opt/CSCOlumos/conf/ifm/template/inventoryTagsInTemplate/CLITemplateDbVariablesQuery.properties but I can't find the syntax/field description
Use an "if construction" in the cli template, something like #if(${description} == "ACP" ...., but how precisely?
Who can give me any tips?
Thanks,
Emiel WittemanThanks for the reply. Im aware that there are still gaps between LMS and Prime, I didn't see the ability to push a config to a port group as being a compliance feature, but I see what you are saying.
What I don't get though is that your link (thanks again) bears no resemblance to the config/admin guide section in Prime. Which in fact was in the NCS docs too (I haven't gone back any further to check).
If its not supported then that's bad enough, but for Cisco to document what seems to be an NCS/Prime specific way to do this and leave it in when it doesn't work really is appalling.
Im still hoping Cisco finally make a management tool without major gaps in it... :-( -
Prime Infrastructure 2.0 Importing user-defined group rules
Dears,
I'm looking for a way to import rules to put devices in a user defined group.
I can see how I can create groups and rules manually, but not how I could export or import those rules.
Is this possible, or on the roadmap?
Cheers,
MichelIn the Cisco Prime Infrastructure 2.0 Deployment Guide under LMS 4.2 Data Migration there is a way to import settings from a "special" backup made from LMS.
This should allow for importing userdefined groups.
Does anyone have tried this yet?
Cheers,
Michel -
List of ports Prime Infrastructure uses for HA
Can someone point me to the document containing the list of ports Prime Infrastructure HA uses?
thanks, robI found 'em----
The list of ports used are in the quick start guide...
http://www.cisco.com/en/US/docs/net_mgmt/prime/infrastructure/1.2/quickstart/guide/cpi_qsg.html#wp46964 -
Can Prime Infrastructure 2.0 enable port 8080 for Browser access?
By the offical document, port 8080 is pre-defintied for the Browser access but it is disabled by default.
I am finding a way to enable the port, but I cannot find any guide on cisco site.
Did anyone know how to enable the 8080 port?
Thanks in advance.
LouisHIi Hoi;
As per cisco document : http://www.cisco.com/en/US/docs/net_mgmt/prime/infrastructure/2.0/administrator/guide/config_server_settings.html#wp1082023
Configuring Server Settings
The Server Settings page allows you to enable or disable the TFTP, FTP, HTTP, HTTPS, or Compliance Service. To turn the server settings on or off:
Step 1 Choose Administration > System Settings.
Step 2 From the left sidebar menu, choose Server Setting.
Step 3 If you want to modify the FTP and TFTP directories or the HTTP and HTTPS ports that were established during installation, enter the port number (or port number and root where required) that you want to modify and click Enable or Disable.
The changes are reflected after a restart.
I am not sure but try to change the port number 8080 in HTTP Forward option and save it, then restart it.
I think it will work.
Regards
Don't forget to rate helpful posts -
Default netflow port in Prime Infrastructure 1.3
Is there any way to change the default port Prime Infrastructure Assurance 1.3 listens for Netflow on from 9991 to 9996?
I don't think so.
The PI 1.3 docs are pretty silent on Assurance but the Prime Assurance Manager 1.1 Quick Start Guide notes that port 9991 must be open for the Netflow Data Receiver -
Cisco Prime Infrastructure - Is there a report of unused switch ports?
Hello,
Is there a report in Cisco Prime Infrastructure 1.4 showing the unused switch ports?
There used to be one in Cisco Prime LMS (Reclaim Unused Up/Down Ports Report).
Thank you,
LukeHello,
I now have Cisco Prime Infrastructure 2.0 running, and I don't see a report like the "Reclaim Unused Up/Down Ports" report that existed in LMS.
I found one called "Interface Capacity", but it only shows the number of ports that are "connected", "notconnect" or "disabled".
Does anyone know if a report of Unused ports exists in Prime Infrastructure 2.0 or if it will be available later on?
Thank you,
Luke -
Prime Infrastructure 2.1 problem with sorting devices in device groups
Hi,
I have a problem with prime infrastructure, namely prime is not doing appropriate sorting of devices in default device groups.
Example: device type > routers > Cisco 2800 series integrated services routers - under shown results there are Cisco 2911 Integrated Service router, Cisco 2901 etc.
Any solution?
TnxHi all:
I have tried using Designing Monitoring Template to set the Health Check Polling time from default 15 minutes to 5 minutes and also tried also 1 minute.
The result is 5 minutes is working but 1 minute is not working.
May I know any one can help on this?
Many thanks!
Best regards,
tangsuan -
Prime 2.2 : Deploy template to port group
Dear Cisco guys,
We managed to make a port group, we managed to make a template, but how do you couple both ?
For example : Change description on fa0/1 & fa0/2 in switchA ?
Many thanks,
Lieven Stubbe
Belgian railwaysThanks for that Mahavir
Yes, I worked that out a little while ago, and can now see interface utilization by port group on the Performance > Network Interface page. I do have another question however (well two)....
I wanted to add graph over time for the utilization to the detail dashboard, but nothing shows up, even though I see the utilization in the network interface page, so I'm sure the monitoring is deployed. Why is the data missing from the graphs?
Also, I wanted to see interface packets per second graphs, but see that is not part of any default template, so I created a customer SNMP template from the IF-MIB to do this, but I can only deploy that against sites/devices or a list of interfaces, and not port groups. Why can't I deploy a customer SNMP template against a port group?
thanks for your help -
Cisco Prime Infrastructure 2.0 - no traps/info are pushed from devices
Good evening,
I have setup Cisco Prime Infrastructure 2.0 and, though I have added manually my 4 network cores as devices without any problem, I can't get a single trap or a single SNMP information to be pushed into my Cisco Prime Infra.
Here is my SNMP config on my core :
snmp-server user *edited* *edited* v3
snmp-server group *edited* v3 noauth notify *tv.FFFFFFFF.FFFFFFFF.FFFFFFFF.FFFFFFFF.FFFFFFFF.FFFFFFFF.FFFFFFFF.FFFFFFFF.FFFFFFFF.FFFFFFFF.FFFFFFFF.FFFFFFFF.FFFFFFFF.FFFFFFFF.FFFFFFFF0F
snmp-server community *edited* RO
snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart
snmp-server enable traps flowmon
snmp-server enable traps transceiver all
snmp-server enable traps call-home message-send-fail server-fail
snmp-server enable traps tty
snmp-server enable traps rf
snmp-server enable traps memory
snmp-server enable traps cpu_threshold
snmp-server enable traps eigrp
snmp-server enable traps ospf state-change
snmp-server enable traps ospf errors
snmp-server enable traps ospf retransmit
snmp-server enable traps ospf lsa
snmp-server enable traps ospf cisco-specific state-change nssa-trans-change
snmp-server enable traps ospf cisco-specific state-change shamlink interface
snmp-server enable traps ospf cisco-specific state-change shamlink neighbor
snmp-server enable traps ospf cisco-specific errors
snmp-server enable traps ospf cisco-specific retransmit
snmp-server enable traps ospf cisco-specific lsa
snmp-server enable traps flex-links status
snmp-server enable traps fru-ctrl
snmp-server enable traps entity
snmp-server enable traps ethernet cfm cc mep-up mep-down cross-connect loop config
snmp-server enable traps ethernet cfm crosscheck mep-missing mep-unknown service-up
snmp-server enable traps ether-oam
snmp-server enable traps aaa_server
snmp-server enable traps flash insertion removal
snmp-server enable traps l2tc threshold sys-threshold
snmp-server enable traps power-ethernet police
snmp-server enable traps rep
snmp-server enable traps vswitch dual-active vsl
snmp-server enable traps udld link-fail-rpt status-change
snmp-server enable traps vtp
snmp-server enable traps vlancreate
snmp-server enable traps vlandelete
snmp-server enable traps auth-framework sec-violation
snmp-server enable traps dot1x auth-fail-vlan guest-vlan no-auth-fail-vlan no-guest-vlan
snmp-server enable traps envmon fan shutdown supply temperature status
snmp-server enable traps entity-diag boot-up-fail hm-test-recover hm-thresh-reached scheduled-test-fail
snmp-server enable traps port-security
snmp-server enable traps ethernet evc status create delete
snmp-server enable traps energywise
snmp-server enable traps ipsla
snmp-server enable traps vstack
snmp-server enable traps bfd
snmp-server enable traps bgp
snmp-server enable traps bulkstat collection transfer
snmp-server enable traps cef resource-failure peer-state-change peer-fib-state-change inconsistency
snmp-server enable traps config-copy
snmp-server enable traps config
snmp-server enable traps config-ctid
snmp-server enable traps event-manager
snmp-server enable traps hsrp
snmp-server enable traps ipmulticast
snmp-server enable traps isis
snmp-server enable traps msdp
snmp-server enable traps pim neighbor-change rp-mapping-change invalid-pim-message
snmp-server enable traps bridge newroot topologychange
snmp-server enable traps stpx inconsistency root-inconsistency loop-inconsistency
snmp-server enable traps syslog
snmp-server enable traps isakmp policy add
snmp-server enable traps isakmp policy delete
snmp-server enable traps isakmp tunnel start
snmp-server enable traps isakmp tunnel stop
snmp-server enable traps ipsec cryptomap add
snmp-server enable traps ipsec cryptomap delete
snmp-server enable traps ipsec cryptomap attach
snmp-server enable traps ipsec cryptomap detach
snmp-server enable traps ipsec tunnel start
snmp-server enable traps ipsec tunnel stop
snmp-server enable traps ipsec too-many-sas
snmp-server enable traps errdisable
snmp-server enable traps ethernet cfm alarm
snmp-server enable traps vlan-membership
snmp-server enable traps mac-notification change move threshold
snmp-server enable traps vrfmib vrf-up vrf-down vnet-trunk-up vnet-trunk-down
snmp-server host *ip-address-edited* version 3 noauth *edited*
Basically all traps are enabled but absolutely nothing is showing up in my Prime Infra except that my 4 devices are "Reachable".
Here is a show snmp on the same device :
sh snmp
Chassis: *S/N Edited*
38554534 SNMP packets input
0 Bad SNMP version errors
14 Unknown community name
0 Illegal operation for community name supplied
0 Encoding errors
38453185 Number of requested variables
0 Number of altered variables
17790703 Get-request PDUs
20583581 Get-next PDUs
0 Set-request PDUs
0 Input queue packet drops (Maximum queue size 1000)
38490708 SNMP packets output
0 Too big errors (Maximum packet size 1500)
0 No such name errors
0 Bad values errors
0 General errors
38371069 Response PDUs
13 Trap PDUs
SNMP global trap: enabled
SNMP agent enabled
SNMP logging: enabled
Logging to *edited*, 0/10, 13 sent, 0 dropped.
Can anyone point out what is wrong or missing in my configuration? I can't seem to single it out myself.
Thanks
JeremyHi Jeremy,
SNMP traps are shown in the events and alerts section of PI.
SNMP config looks fine. Can you run the SNMP debug (debug snmp packets ) .check the logs and see if the device is actually sending the TRAPS to the PI server.
Thanks-
Afroz
[Do rate the useful post]
****Ratings Encourages Contributors **** -
Prime Infrastructure 2.x tacacs+ with radiator
Trying to setup Prime Infrastructure 2.x (2.2) to use Tacacs+. The Tacacs service is running on a Linux server running Radiator(4.12). With Radius and Radiator all we needed to do is define the user group and all the tasks associated with that group were inherited.
When configuring the TACACs configuration files have tried various permutations of adding the cisco-avpair(cisco-av-pair) reply attrs on authentication and/or authorization. When defining the group or using the individual tasks I get the following error message:
"no authorization information found for remote authenttication user. please check the correctness of the associated task(s) and Virtual Domain(s) in the remote server"
<ServerTACACSPLUS>
Key SECRET
Port 49
GroupMemberAttr OSC-Authorize-Group
# General Authorization rule format:
AuthorizeGroup core-group permit protocol=HTTP service=NCS {cisco-av-pair="virtual-domain0=ROOT-DOMAIN" cisco-av-pair="role0=Super Users" }
</ServerTACACSPLUS>It's not yet supported. Cisco doesn't generally publish roadmaps publicly for future support. The best you can do via public sources is to continue to watch the Supported Devices lists for updates.
As of right now, here is a list of the current data center switches supported (in PI 2.1):
Cisco Nexus 6004 Switch
Cisco Nexus 5596T Switch
Cisco Nexus 5010 Switch
Cisco Nexus 5020 Switch
Cisco Nexus 5020T Switch
Cisco Nexus 7000 10-Slot Switch
Cisco Nexus 7000 18-Slot Switch
Cisco Nexus 1000V Series Switches
Cisco Nexus 1010 Virtual Services Appliance
Cisco Nexus 4001I Switch Module for IBM BladeCenter
Cisco Nexus 4005I Switch Module for IBM BladeCenter
Cisco Nexus 5548P Switch
Cisco Nexus 5548UP Switch
Cisco Nexus 5596UP Switch
Cisco Nexus 3064 Switch
Cisco Nexus 3048 Switch
Cisco Nexus 3016 Switch
Cisco Nexus 7000 9-Slot Switch
Cisco Nexus 9500 Switch
Cisco Nexus 3548 Switch -
Adding new switch in my network including Cisco Prime Infrastructure
hi all,
if I connect new switch to my network, can I let Cisco PI to apply a specific template of configuration to this switch automatically?
how can I do that ?
thanks in advanceHi,
i followed these steps :
SWITCH SIDE
- configured Prime Infrastructure as snmp-server host;
- enabled snmp-traps for linkup and linkdown events globally;
- disabled snmp-traps for linkup and linkdown on non relevant interfaces using the no snmp trap link-status command
PRIME INFRASTRUCTURE SIDE
- under "Deploy/Monitor Deployment" i deployed template "Interface Health" for all the interested switches
- under "Administration/System Settings/Mail Server Configuration" configured my internal SMTP server to make Prime Infrastructure able to send e-mails
- under "Operate/Alarms & Events" click on "Email Notifications" , then on "Switches and Hubs"
- check the "critical" box , insert the destination e-mail address into the "To" field then click "Save"
- check the "switches and Hubs" box and then click Save
As i know is possible to avoid to configure every single not-interesting port on the switches with "no snmp trap link-status" command (it's a bit annoying when you have tens of switches), using Port Grouping configuration on PI but i tried it without success.
Hope this helps.
Best Regards,
Maybe you are looking for
-
How to Transport a View in R/3
Hi, I have transported a Data Source in R/3. But it is created based on a view. When I transported the datasource, view didn't get transported. I guess I have to transport view also. I went to se11, assigned the package in the object directory en
-
Fiscal calendars in time series
we are using fiscal year variant for calendars where year start with November 25 and ends with November 24th with 12 periods. Trouble is now we are having time bucket profiles where period considered for Fall and Spring seasons. Spring Season YS (8/4
-
I have a new Intex Cloud Fx phone. In this, I go to 'Device in formation' and try to update the device by pressing update now, I get an error message that says 'an error occurred while checking for updates'. Also, it does not respond to the' last upd
-
Failure while trying to modify application - 2
Not sure if the second part of the messages help but here goes : ==============[System Error Tracing]============== [System Name] : AdminServerHandler [Message Type] : ErrorMessage [Job Name] : AdminOlapSelector : DeleteCube [DateTime] : 11/
-
EEDM01 EEDM02 Profile values Enhancement
Hi, I was looking on a way to enhance the EDM Profile values transactions (EEDM01/02) by adding some extra fields in the ALV showing the profile values. Since I haven't found any Screen-exits or BAdI, are you aware about any solution to achieve that?