Application Visibility

What are the prerequisites for viewing Application Health Monitoring in HPE Aruba Networking Central?

HPE Aruba Networking Gateways are required, and all traffic must be tunneled through the gateways to accurately measure application health. For more information, see Requirements to Measure Application Health .

How is application health calculated?

To calculate the application health, see How Application Health Is Calculated.

What configuration is required to enable the collection of application telemetry from switches?

To enable the collection of application telemetry, refer to the prerequisites section, Configuring Application Visibility for Switches. For additional information on gateways and APs, refer to Configuring Application Visibility for Gateways and Configuring Application Visibility for Access Points.

Can Aruba APs, gateways, or switches identify encrypted applications?

To identify encrypted traffic, the DPI Engine uses several techniques to infer information about encrypted applications:

  • Metadata Analysis — Although the content of encrypted packets is not visible, the DPI Engine can analyze traffic metadata such as packet sizes, transmission patterns, communication endpoints, timing, and protocol behavior. These details provide clues about the nature of the encrypted application. Additionally, DPI technology leverages Server Name Indication (SNI) information as part of its analysis to identify and classify encrypted traffic.

  • Protocol Heuristics — Many encrypted applications follow specific protocols or communication patterns that can be recognized even when the content is encrypted. The DPI Engine used by HPE Aruba Networking APs, gateways, and switches (ENEA Qosmos) applies protocol heuristics to detect these behavioral patterns, aiding in the classification of encrypted traffic.

For more information, see Deep Packet Inspection.

Why is the UXI status grayed out for some or all applications in the applications list?

The UXI status appears grayed out if UXI and HPE Aruba Networking Central integration is not properly configured.

To resolve this:

  1. Verify that UXI and HPE Aruba Networking Central integration is set up correctly by following this help article: HPE Aruba Networking Central Integration Guide.

  2. Click the UXI Status column header to sort the application list by UXI-tested applications.

  3. Note that UXI status and application health are computed based on the selected time range:

    • 3 hours (default)

    • 1 day

    • 7 days