Viewing Alerts in List View

To navigate to the Alerts page, complete the following steps:

  1. In the HPE Aruba Networking Central landing page, select a site from the Sites menu.

    Alternatively, you can click the expand icon on the Sites menu to search for a site from the list.

    The site dashboard is displayed with the network and connectivity information for the site.

  2. Click Alerts.

    Note: The Alerts circle displays the total number of Active alerts with Critical, Major, or Minor severity. Info alerts are excluded from the total count.

    The Alerts page is displayed for the selected site context.

    Figure 1: Alerts Page

    The List view displays alerts generated within the last 30 days. By default, the Critical, Major, Minor, and Active filters are selected.

    Alternatively, alerts for a specific site, network, or clients can be viewed by selecting the respective context.

    You can use the search bar to search for an alert by keywords. For more information, see Searching for Alerts in the List View.

    Note:

    Alerts triggered every 5 minutes are consolidated into a single entry in the alerts list table, forming a group of alerts triggered at this frequency.

    Alert grouping is implemented for the following alerts:

    • MAC Authentication Server Timeout

    • 802.1X Authentication Server Timeout

    • Roaming Latency

    • DNS Server Failed to Respond

    • DNS Server Failed to Resolve Domain (URL Name Resolution Failed)

    • Maximum Associations

    • Wireless Overlay Client Association Failed

    • DNS Server Response Delayed

    • DHCP Discover Timeout

    • WPA Passphrase is Incorrect

    • Captive Portal Server Unreachable

    • Wireless Client Deny Listed

    • 802.1X Authentication Rejected - AOS-CX Switch

    • MAC Authentication Rejected - AOS-CX Switch

    • Client was Denied Access

    • 802.1X Authentication Timeout

    • MAC Authentication Server Timeout

    • High 802.1X Authentication Latency for AOS-CX Switches

    • High MAC Authentication Latency for AOS-CX Switches

    • Loop Detected

    • Wired Client did not Receive an IP Address from DHCP Server

    • 802.1X Authentication Rejected - AOS-S Switch

    • Switch MAC Authentication Rejected - AOS-S Switch

    The following table describes the columns in the list view.

    Table 1: Alert Details

    Parameter

    Description

    Name

    Displays the name, severity, and description of the alert.

    Priority

    Displays the priority of the alert. Priority can be mapped based on the severity, as listed below:

    Severity

    Priority

    Critical

    Very High

    Major

    High

    Minor

    Medium

    Info

    Low

    To modify the priority, complete one of the following steps:

    • In the Alerts page,

      1. Compete one of the following:

        • To set the priority for a one alert, hover over an alert and click the icon.

        • To set the priority for multiple alerts, select the check box next to the alert and click the icon.

      2. Click Set Priority.

        The Set Priority pop-up window is displayed.

        Figure 2: Set Priority Pop-up Window

      3. Select the radio button next to the priority and click Apply.

    • In the Alert Dashboard page,

      1. In the alert context, click the icon.

      2. Click Set Priority.

        The Set Priority pop-up window is displayed.

      3. Select the radio button next to the priority and click Apply.

    Status

    Displays the status of the alert. The status can be Active, Deferred, or Cleared.

    Origin

    Displays the origin of the alert. For example, System or Custom.

    First Occurred

    Displays the date and time when the alert was first triggered.

    Note: Sorting is disabled for this column.

    Last Occurred

    Displays the date and time when the alert was last triggered.

    Occurrences

    Displays the count of alerts triggered for a period of up to 30 days.

    A set of AI Insight alerts will display the count for last 15 minutes only.

    Note: Sorting is disabled for this column.

    Duration

    Displays the duration of the current alert instance.

    Note:
    • For Cleared alerts, the duration of the last occurred alert is displayed.

    • For event-based alert, the duration is not displayed.

    • For AIOps alerts, the duration is calculated using the below formula:

      • (Last Occurred - First Occurred) + 5 Minutes

    Category

    Displays the category of the alert.

    Device

    Displays the device type.

    To customize the table, click the icon and select the required columns. To reset the default columns, click Reset to Defaults. In the Alerts table, the default columns are Name, Status, and Last Occurred. For more information, see Viewing Devices in the List View.

Filtering Alerts Using Quick Filters

You can select one or more quick filter tabs to filter the alerts.

Figure 3: Alerts Quick Filters

Note:

By default, all severity levels are selected.

The following table describes the quick filter tabs in the list view:

Table 2: Quick Filter Tabs

Tab

Description

Severity

Critical

Displays the total number of critical alerts. Select this tab to view the list of critical alerts.

Major

Displays the total number of major alerts. Select this tab to view the list of major alerts.

Minor

Displays the total number of minor alerts. Select this tab to view the list of minor alerts.

Info

Displays the total number of information alerts. Select this tab to view the list of information alerts.

Status

Active

Displays the total number of active alerts. Select this tab to view the list of active alerts.

When an alert is active, you can change the state to Defer or Clear.

Deferred

Displays the total number of alerts that are deferred by the user or administrator.

To defer an alert, complete one of the following steps:

  • In the Alerts page,

    1. Compete one of the following:

      • To defer an alert, hover over an alert and click the icon.

      • To defer multiple alerts, select the check box next to the alert and click the icon.

    2. Click Defer.

      The Defer pop-up window is displayed.

    3. To delay the notification or resolution for a specified period, enter the duration in the Defer until field and click Defer.

  • In the Alert Dashboard page,

    1. In the alert context, click the icon.

    2. Click Defer.

      The Defer pop-up window is displayed.

    3. To delay the notification or resolution for a specified period, enter the duration in the Defer until field and click Defer.

    Note:
    • When an alert is deferred, you can change the state to Active or Clear.

    • An alert in the deferred state can automatically clear if the alerting condition returns to acceptable limits. However, if the alerting condition is triggered again, a new alert is created and will move to the active state.

Cleared

Displays the total number of alerts that are cleared by you or the system. Select this tab to view the list of cleared alerts.

To clear an alert, complete one of the following steps:

  • In the Alerts page,

    1. Compete one of the following:

      • To clear an alert, hover over an alert and click the icon.

      • To clear multiple alerts, select the check box next to the alert and click the icon.

    2. Click Clear.

      The Clear pop-up window is displayed.

    3. Select a reason for clearing the alert from the Reason drop-down list.

    4. If required, enter the Notes.

    5. Click Clear.

  • In the Alert Dashboard page,

    1. In the alert context, click the icon.

    2. Click Clear.

    3. Click the icon and select Clear.

      The Clear pop-up window is displayed.

    4. Select a reason for clearing the alert from the Reason drop-down list.

    5. If required, enter the Notes.

    6. Click Clear.

  • In the Alert Side Panel,

    1. Click the icon and select Clear.

      The Clear pop-up window is displayed.

    2. Select a reason for clearing the alert from the Reason drop-down list.

    3. If required, enter the Notes.

    4. Click Clear.

      Note:
      • If an alert is not triggered for 60 minutes, it will be automatically moved to the cleared list. For now, this is implemented for all AIOps alerts.

      • The following event-based alerts will be automatically cleared after 60 minutes:

        • USB Device Removed from AP

        • USB Device Inserted in AP

        • AP Uplink Changed

      • If a user wants to clear an active alert while the alerting condition is still valid and the alert remains in the active state, they can clear it manually. However, if the condition continues to persist, the alert may be triggered again and return to the active state. To prevent the alert from reappearing, the user can disable it in the configuration settings.

Exporting the Alert List Table

To export the table in CSV format, complete one of the following steps:

  1. In the Alerts page, click the Table Menu icon and select the Export option.

    The table is downloaded in CSV format.

Clearing Active Alerts When the Device Goes Offline

The alerts are automatically cleared when the device goes offline and the offline alert is generated. When the device offline alert is generated:

  • All the alerts associated with the device are cleared and a message Device went offline is displayed.

  • When the device come back online, the alert is triggered again if the alert condition persists for the configured threshold value. The newly generated alert is treated as another occurrence.

    • Existing alert notes are retained when an alert is cleared and a new instance of the same alert is generated.

      Note: Clearing of alerts when the device offline alert is triggered is not applicable for AIOps alerts.