Feature Overview
The new Alerting for Network Tunnel Group State feature in Cisco Secure Access is now in General Availability. This feature empowers administrators to proactively monitor the health and status of network tunnel groups. This capability allows the system to automatically detect and alert administrators when key tunnel events occur—such as tunnel failures or loss of connectivity—enabling faster response to potential network disruptions.
Key Benefits / Value Delivered
- Real-Time Visibility: Instantly receive alerts when a tunnel in a network tunnel group fails or when both primary and secondary tunnels go down, ensuring you are always aware of potential connectivity issues.
- Minimized Downtime: Early notifications allow administrators to investigate and resolve issues before they escalate, reducing the risk of extended outages for end users.
- Reduced Noise: Built-in alert delay mechanisms help prevent unnecessary notifications caused by transient or short-lived events, focusing attention on persistent and actionable issues.
- Streamlined Management: View, filter, and manage alerts and alert rules directly from the Secure Access dashboard, improving operational efficiency and oversight.
Getting Started
To begin using the Alerting for Network Tunnel Group State feature in Cisco Secure Access:
Access Alert Management:
Navigate to Monitor > Management > Alert Rules in the Secure Access dashboard.
Add or Edit Alert Rules:
Click + Add alert rule or edit an existing rule to configure alerts for tunnel group events.
Select the alert type: Network tunnel group disconnected or Hub down in network tunnel group.
Choose severity, define conditions (such as tunnel group name or region), and specify notification recipients.
Monitor Alerts:
Use the bell icon in the Secure Access toolbar to view and manage active alerts, filter by severity, dismiss alerts, or adjust alert rules as needed.
Investigate Issues:
Quickly navigate to Connect > Network Connections > Network Tunnel Groups to drill into the details of any affected network tunnel group identified by an alert.
Documentation and Resources
Documentation can be found here: https://docs.sse.cisco.com/sse-user-guide/docs/monitor-secure-access-with-alert-rules
Best Practices
- Tailor Alert Rules: Customize alert rules to focus on critical tunnel groups or regions that are vital to your organization’s operations.
- Set Appropriate Severities: Use recommended severity levels (e.g., High for network tunnel group disconnection, Warning for a single hub down) to help prioritize incident response.
- Regularly Review Alerts: Periodically review alert logs and rule configurations to ensure alignment with evolving network architecture and business priorities.
- Test Alert Notification Flow: Verify that email notifications are reaching the intended recipients and that escalation paths are documented and effective.
The Alerting for Network Tunnel Group State feature is now Generally Available. Take advantage of enhanced visibility and control to ensure reliable and secure connectivity for your organization. For more information, please contact your Cisco representative.