Alarms Tab
Monitoring > Summary > Alarms
The Alarms tab provides details about both appliance and Orchestrator alarms. Each entry in the Alarms table represents one current condition that could require human intervention. Because alarms are conditions, they can come and go without management involvement.
While merely acknowledging most alarms does not clear them, some alarm conditions are set up to self-clear when you acknowledge them. For example, if you remove a hard disk drive, it generates an alarm; after you replace it and it finishes rebuilding itself, the alarm clears.
You can filter the alarms listed in the Alarms table.
-
Time: 1h, 4hr, 1d, 7d, or Custom. Custom enables you to specify a range of dates in the Range fields.
-
Active: All uncleared alarms. Acknowledged alarms go to the bottom of this list.
-
History: Filtered to show only cleared alarms.
-
All: All uncleared and cleared alarms.
NOTE: Orchestrator keeps a history of alarms for 7 days. If you use the on-prem version of Orchestrator, you can configure it to keep a history for more than 7 days. If you use Orchestrator-as-a-service, this cannot be changed.
The Alarms tab also includes the following functionality:
-
Alarm Emails ON and Alarm Emails Paused: Enable or disable to receive an email if an alarm is on or paused.
-
Alarm Email Recipients: Each configured recipient can receive emails about either appliance alarms or Orchestrator alarms. Click Add Recipient in the Alarm Recipients dialog box. Select the appropriate type of alarm from the Alarm Type drop-down list, and then select the check boxes (Critical, Major, Minor, Warning) for which you want to receive emails. Click Save or Reload.
-
Wait to Send Emails: You can customize the amount of time you want the system to wait to send you an email notifying you of an alarm. Click this button to open the Wait to Send Emails dialog box, and then enter the number of minutes you want the system to wait. Click Save.
-
Export: You can export a CSV file of your alarms.
-
Ack, Acked By, and Acked Time: These columns in the Alarms table indicate whether an acknowledgment has been received between devices.
-
Acked By: Name of the appliance that did the acknowledgment.
-
Acked Time: Time when the acknowledgment was received by the appliance.
-
Disable Alarms
You can specify the alarms you want to disable by clicking Customize / Disable Alarms, which opens the Alarm Information dialog box.
To disable alarms:
-
Click Disable All Alarms on Specific Appliances.
-
Enter the name of the appliance that has the alarms you want disabled.
-
Click Disable Alarms.
-
Click Save.
Customize Alarms
Complete the following steps to customize a pre-existing alarm.
-
Select the edit icon next to the selected appliance in the Alarm Information dialog box.
-
Choose Enable/Disable.
-
If enabling, specify the Custom Severity by choosing from the list: None, CRITICAL, MAJOR, MINOR, WARNING.
-
If disabling, the following message appears: *You are about to disable this alarm. Click Save.
Alarm Severity
Orchestrator has four severity levels for alarms:
-
Critical (red): Critical alarms are service-affecting and require immediate attention. They reflect conditions that adversely affect an appliance or indicate the loss of a broad category of service.
-
Major (orange): While service-affecting, major alarms are less severe than critical alarms. They reflect conditions that should be addressed in the next 24 hours. An example would be an alarm caused by an unexpected traffic class error.
-
Minor (yellow): Minor alarms are not service-affecting and can be addressed at any time. Examples include alarms caused by a user who has not changed their account’s default password, a degraded disk, or a software version mismatch.
-
Warning (blue): Warning alarms are not service-affecting. They warn of conditions that could become problems over time—for example, an alarm caused by IP SLA being down.
Alarm Recipients
To add alarm recipients to receive email messages that notify them of alarms within the network:
-
Click Alarm Email Recipients.
-
Click Add Recipient.
-
Enter the following information:
-
In the Alarm Type field, select Orchestrator for Orchestrator alarms or Appliance for appliance-generated alarms.
-
To indicate the severity of alarms to send to recipients, select the Critical, Major, Minor, and Warning check boxes as appropriate. Major and Minor are selected by default.
-
In the Format field, select the format to use for the alarm notifications. By default, alarms are HTML Formatted. However, you can choose Plain Text or Both.
-
In the Email Addresses field, enter email addresses for recipients you want to receive alarm notifications.
-
In the Groups field, select the appropriate groups from the drop-down list. The listed groups reflect the groups configured in the appliance tree.
-
To include detailed diagnostic or debugging information in alarm notification email messages, select the Debug check box.
IMPORTANT: It is recommended that you use the Debug option cautiously and disable it after your troubleshooting is finished to avoid unnecessary logging or performance overhead. Because debugging information can contain sensitive system information, consider limiting access to authorized personnel only.
-
-
Click Save.
Plain Text alarms are emailed as pipe-separated data. Recipients can create a script to parse the message and read the fields.
Example:
Hostname|Alarm_Status|Time|Alarm_ID|Type_ID|Source|Severity|Description|Recommended_action
Orchestrator|1|1526341365000|94|6815775|orchestrator|MINOR|Backup configuration not set|
Orchestrator|1|1526341362000|93|6815762|orchestrator|MAJOR|Orchestrator is using the default SMTP settings|
Alarm ID is the auto-incremented, primary key in the database. Alarm Status indicates 0 for cleared or 1 for raised.
Additional Alarm Indications
-
A cumulative (Orchestrator + appliances) alarm summary always displays at the right side of the header. Clicking it opens a top-level summary and access to the Alarms tab.
-
Appliances are color coded to indicate their severest alarms on the Topology tab and in the navigation pane.
-
Threshold crossing alerts are related to alarms. They are preemptive, user-configurable thresholds that declare a Major alarm when crossed. For more information about their configuration and use, see Threshold Crossing Alerts Template and Threshold Crossing Alerts Tab.
Export Alarm Descriptions
Orchestrator enables you to export to a CSV file a full list of alarms you could potentially receive. This file includes a variety of details about the listed alarms, including alarm descriptions and recommended actions. For details, see Alarm Descriptions.
To automatically export the CSV file, go to Support > User Documentation > Alarm Descriptions.
List of Alarms
This topic provides lists of alarms related to EdgeConnect appliances and Orchestrator.
NOTE: The tables in this topic use the decimal numeral system for Alarm ID. You can convert these numbers to the hexadecimal numeral system if you have applications that can do their own filtering, such as SNMP.
EdgeConnect Appliance Alarms
Appliances can raise alarms based on issues that occur with tunnels, software, equipment, and Threshold Crossing Alerts (TCAs). TCAs are visible on the appliance but are managed by Orchestrator.
Tunnels
System Type 0 (Appliance); Source Type 1 (Tunnel)
| Alarm ID: Severity | Alarm Text | Source | Service Affecting | Clearable |
|---|---|---|---|---|
| 65537: CRITICAL |
Tunnel is down. Recommended Action: Tunnel peer is unreachable. Check tunnel configuration. Verify Local & Remote IPs, Admin up, and peer’s Mode matches. Check network connectivity. NOTE: Down-in progress overlay tunnels are not counted as down tunnels, as the appliance is in the process of bringing the tunnel up, and they are not hard down. |
Appliance | TRUE | TRUE |
| 65539: CRITICAL |
Tunnel protocol version mismatch. Recommended Action: Tunnel peers are running incompatible software versions. Normal during a software upgrade. Run the same or compatible software releases among the tunnel peers. |
Appliance | TRUE | TRUE |
| 65542: CRITICAL |
Tunnel peer type mismatch. [For VX-Xpress only] Recommended Action: VX-Xpress appliance can only peer with another VX-Xpress appliance. Create a tunnel to another VX-Xpress appliance. |
Appliance | TRUE | FALSE |
| 65543: CRITICAL |
Duplicate license detected. Recommended Action: Duplicate serial numbers detected. Install unique license on all virtual appliances. To check and/or change license: In Appliance Manager: Administration > Basic Settings > License & Registration In Orchestrator: Configuration > Overlays & Security > Licensing > Licenses |
Appliance | TRUE | TRUE |
| 65544: CRITICAL |
Tunnel has invalid source IP address. Recommended Action: Delete the tunnel and re-create it with a valid IP address. |
Appliance | TRUE | TRUE |
| 65545: CRITICAL |
Tunnel received an unmatched GRE packet. Recommended Action: Check for tunnel encapsulation mismatch. On the Tunnels page, go to specified tunnel and verify both tunnel peers are using the same encapsulation method. |
Appliance | TRUE | TRUE |
| 65548: CRITICAL |
Tunnel is using a not allowed cipher. Recommended Action: Check tunnel configuration and ensure that only allowed ciphers are used. |
Appliance | TRUE | TRUE |
| 65536: MAJOR |
Tunnel is misconfigured. Recommended Action: System ID is not valid. Was appliance registration completed? |
Appliance | TRUE | TRUE |
| 65546: MAJOR |
Tunnel is in reduced functionality. Recommended Action: Tunnel peers are not running the same release of software. This results in reduced functionality. Run the same or compatible software releases among the tunnel peers. |
Appliance | TRUE | TRUE |
| 65547: MAJOR |
Tunnel UDP port conflicts with cluster port. Recommended Action: [Deprecated alarm] Choose another number for UDP Destination Port on local and remote appliances if using the same interface for UDP tunnel and flow redirection. |
Appliance | TRUE | TRUE |
| 65541: MINOR |
Tunnel software version mismatch. Recommended Action: Tunnel peers are not running the same release of software, but the releases are completely compatible. Normal during an upgrade. Run the same software version to eliminate the alarm. |
Appliance | TRUE | TRUE |
| 131072: MINOR |
Tunnel has unexpected traffic class error. Recommended Action: [Deprecated alarm] |
Appliance | TRUE | TRUE |
Software
System Type 0 (Appliance); Source Type 4 (Software)
| Alarm ID: Severity | Alarm Text | Source | Service Affecting | Clearable |
|---|---|---|---|---|
| 262147: CRITICAL |
The licensing for this virtual appliance has expired. [For VX series only] Recommended Action: Enter a new license key for the appliance. NOTE: The VX appliances are a family of virtual appliances, comprised of the VX-n000 software, an appropriately paired hypervisor and server, and a valid software license. |
Appliance | TRUE | FALSE |
| 262148: CRITICAL |
There is no license installed on this virtual appliance. [For VX series only] Recommended Action: Enter a valid license key for the appliance. NOTE: The VX appliances are a family of virtual appliances, comprised of the VX-n000 software, an appropriately paired hypervisor and server, and a valid software license. |
Appliance | TRUE | FALSE |
| 262156: CRITICAL |
Invalid virtual appliance license. [For VX series only] Recommended Action: Enter a valid license key for the appliance. |
Appliance | TRUE | FALSE |
| 262165: CRITICAL |
Software license token needs to be renewed. Recommended Action: Software will automatically renew the license lease as long as it has HTTPS connectivity to the internet. |
Appliance | FALSE | TRUE |
| 262166: CRITICAL |
Software capability token expired. Recommended Action: Portal (30-day token) expired; no communication with Portal in 30 days. You must have HTTPS connectivity to internet to renew the license lease. |
Appliance | TRUE | FALSE |
| 262171: CRITICAL |
Invalid account registration information. Recommended Action: Check that the account registration information is correct. |
Appliance | TRUE | FALSE |
| 262172: CRITICAL |
EC Base license not granted. Recommended Action: Contact Support to obtain additional EdgeConnect licenses. If you have licenses, approve this appliance from your Orchestrator. |
Appliance | TRUE | FALSE |
| 262173: CRITICAL |
Orchestrator is unreachable. Recommended Action: Either the primary or backup Orchestrator (or both) cannot be reached using HTTPS. This connectivity is required for appliances to be managed by Orchestrator. |
Appliance | TRUE | FALSE |
| 262175: CRITICAL |
Cloud Portal host name cannot be resolved. Recommended Action: Check if appliance has been configured with a reachable DNS server. If there is no DNS server configured, appliance tries to use built-in DNS servers on the Internet to resolve the portal hostname. |
Appliance | TRUE | FALSE |
| 262176: CRITICAL |
EC Plus license not granted. Recommended Action: Contact Support to obtain additional licenses. |
Appliance | TRUE | FALSE |
| 262177: CRITICAL |
EC WAN Optimization license not granted. Recommended Action: Contact Support to obtain additional licenses. |
Appliance | TRUE | FALSE |
| 262178: CRITICAL |
Appliance has not been approved by Orchestrator. Recommended Action: Approve the appliance from your Orchestrator. |
Appliance | TRUE | FALSE |
| 262179: CRITICAL |
Software licensing error. Recommended Action: Failing to get token from Portal. Contact Support. |
Appliance | TRUE | FALSE |
| 262180: CRITICAL |
No public IP address detected on an interface behind Internet. Recommended Action: [Deprecated alarm] Connect the interface to Internet. |
Appliance | TRUE | FALSE |
| 262182: CRITICAL |
DHCP server misconfiguration. Recommended Action: DHCP server configuration contains invalid entry that prevented it from running. Check log file for error and verify your configuration. |
Appliance | TRUE | FALSE |
| 262185: CRITICAL |
Unable to resolve Orchestrator DNS name. Recommended Action: Could not resolve one or more Orchestrator DNS names. Check DNS server configuration. |
Appliance | TRUE | TRUE |
| 262209: CRITICAL |
Invalid account registration information. Recommended Action: Check that the account registration information is correct. |
Appliance | TRUE | FALSE |
| 262210: CRITICAL |
Cloud Portal not connected. Recommended Action: Check the Cloud Portal connection. |
Appliance | TRUE | FALSE |
| 262211: CRITICAL |
Database errors. Recommended Action: If the issue is not resolved, contact Technical Support. |
Appliance | TRUE | FALSE |
| 262213: CRITICAL |
Config DB load partially failed. Recommended Action: Check configuration and apply again. |
Appliance | TRUE | TRUE |
| 262220: CRITICAL |
End entity certificate has expired. Recommended Action: Renew the end entity certificate that has expired. |
Appliance | TRUE | TRUE |
| 262224: CRITICAL |
One or more peers cannot support the current number of IPv4 routes. Recommended Action: Some routes are being dropped. Upgrade all appliances to a compatible ECOS version to receive all routes. |
Appliance | TRUE | TRUE |
| 262225: CRITICAL |
One or more peers cannot support the current number of IPv6 routes. Recommended Action: Some routes are being dropped. Upgrade all appliances to a compatible ECOS version to receive all routes. |
Appliance | TRUE | TRUE |
| 262229: CRITICAL |
End entity certificate est enrollment failed. Recommended Action: Check that est server enrollment is working correctly. |
Appliance | TRUE | TRUE |
| 262230: CRITICAL |
HPE End entity certificate procurement timed out. Recommended Action: Hpe_cert procurement failed. Check connectivity to Portal, and then disable and enable hpe_cert. |
Appliance | TRUE | TRUE |
| 262231: CRITICAL |
HPE End entity certificate validation failed. Recommended Action: Hpe_cert validation or save failed. It is possible that the trust store does not have RDA root CA certificate. Add it, and then disable and enable hpe_cert. |
Appliance | TRUE | TRUE |
| 262232: CRITICAL |
HPE End entity certificate expired or revoked. Recommended Action: HPE certificate expired or revoked. Disable and enable hpe_cert to reissue. |
Appliance | TRUE | TRUE |
| 262243: CRITICAL |
WebCC database load failed. Recommended Action: WebCC Database load failure. The WebCC-based categorization of the flows shall continue as per the older database if already loaded. |
Appliance | TRUE | TRUE |
| 262244: CRITICAL |
WebCC threat intelligence server not reachable. Recommended Action: WebCC external server is not reachable. Check the connectivity. |
Appliance | TRUE | TRUE |
| 262245: CRITICAL |
WebCC not enough disk space on the appliance. Recommended Action: WebCC database files cannot be downloaded to the appliance. Check the disk space availability in the /var/opt/tms. |
Appliance | TRUE | TRUE |
| 262247: CRITICAL |
Unable to resolve proxy server DNS name. Recommended Action: Could not resolve the proxy server DNS name. Check the DNS server configuration. |
Appliance | TRUE | FALSE |
| 262248: CRITICAL |
Proxy server is unreachable. Recommended Action: Portal and Orchestrator cannot be reached using HTTPS via Proxy. Check Proxy configuration. |
Appliance | TRUE | FALSE |
| 262144: MAJOR |
Software upgrade process has failed. Recommended Action: If the software upgrade repeatedly fails, open a support case. |
Appliance | FALSE | TRUE |
| 262145: MAJOR |
System is low on resources. Recommended Action: The appliance is running low on resources (memory). If this alarm persists, open a support case. |
Appliance | TRUE | FALSE |
| 262146: MAJOR |
Significant change in time of day has occurred, and might compromise statistics. Please contact TAC. Recommended Action: [Deprecated alarm] Appliance time changed. Appliance statistics could be missing for an extended interval. Contact Support. |
Appliance | FALSE | TRUE |
| 262149: MAJOR |
A disk self-test has been performed. You must reboot the appliance after the test has been completed. Recommended Action: Reboot the appliance. Traffic will not be optimized until this is performed. |
Appliance | TRUE | FALSE |
| 262154: MAJOR |
Software license will expire in 15 days. [For VX series only] Recommended Action: Enter new license key to avoid loss of optimization or potential traffic disruption. |
Appliance | FALSE | FALSE |
| 262157: MAJOR |
Dual wan-next-hop topology is no longer supported. Recommended Action: Reconfigure appliance as single bridge with one next hop, or as dual bridge with two IP addresses and two next hops. |
Appliance | TRUE | TRUE |
| 262160: MAJOR |
Major inconsistency among tunnel traffic class settings found during upgrade. Recommended Action: [Deprecated alarm] Review the WAN shaper traffic class settings. |
Appliance | TRUE | TRUE |
| 262161: MAJOR |
Tunnel IP header disable setting was discarded during upgrade. Recommended Action: [Deprecated alarm] Review the optimization map header compression settings. |
Appliance | TRUE | TRUE |
| 262163: MAJOR |
A peer name has been specified in the configuration matching no existing remote peer. Recommended Action: Correct route-map entry or build tunnel. A route policy peer hostname might have changed. |
Appliance | TRUE | TRUE |
| 262168: MAJOR |
Cloud Portal WebSocket is down. Recommended Action: Appliance cannot connect to the Cloud Portal using HTTPS WebSockets. |
Appliance | FALSE | TRUE |
| 262174: MAJOR |
Cloud Portal is unreachable for licensing. Recommended Action: Appliance cannot connect to the Cloud Portal using HTTPS WebSockets. Verify the connectivity between the appliance and the portal. This connectivity is needed for licensing. |
Appliance | TRUE | FALSE |
| 262184: MAJOR |
IPv4 subnet table is full. Recommended Action: IPv4 subnet table has reached its maximum allowable size. Additional subnets will not be added unless others are removed. |
Appliance | TRUE | TRUE |
| 262188: MAJOR |
A BGP peer session is not in Established state. Recommended Action: A BGP peer session is Down. Verify BGP neighbor, ASN, or next-hop IP address is configured correctly. |
Appliance | TRUE | TRUE |
| 262190: MAJOR |
An OSPF neighbor session is no longer in Full or Two-Way state. Recommended Action: An OSPF neighbor session is Down. Verify whether OSPF neighbor connectivity still exists on this interface. |
Appliance | TRUE | TRUE |
| 262193: MAJOR |
DHCP server failover my state communications interrupted. Recommended Action: DHCP server failover my state communications interrupted. Check for partner reachability and verify your configuration. |
Appliance | TRUE | TRUE |
| 262197: MAJOR |
Excessive route advertisement updates detected. Recommended Action: Verify proper configuration or route filtering of the route indicated. |
Appliance | TRUE | TRUE |
| 262201: MAJOR |
EC Feature License not granted. Recommended Action: Contact Support. |
Appliance | TRUE | FALSE |
| 262205: MAJOR |
ACL Groups File Handling Failed. Recommended Action: Verify that valid IPs/ports are used for configuration. If the issue persists, contact Support with support logs. |
Appliance | FALSE | TRUE |
| 262206: MAJOR |
ACL Groups Config Memory Limit Exceeded. Recommended Action: To free up memory, reduce the group name lengths used in the Address/Service groups configuration and try again. |
Appliance | FALSE | TRUE |
| 262207: MAJOR |
ACL rule has invalid syntax. Recommended Action: Check ACL rules syntax and apply again. Syntax rules: Even when using a range or a wildcard, the IPv4 address must be specified in the 4-octet format, separated by the dot notation. For example, A.B.C.D. Range is specified using a single dash. For example, 128-129. Wildcard is specified as an asterisk (*). Range and Wildcard can both be used in the same address, but an octet can only contain one or the other. For example, 10.136-137.*.64-95. A wildcard can only be used to define an entire octet. For example, 10.13*.*.64-95 is not supported. Use 10.130-139.*.64-95 to specify this range. The same rules apply to IPv6 addressing. CIDR notation and (Range or Wildcard) are mutually exclusive in the same address. For example, 192.168.0.1-127/24 is not supported. Use either 192.168.0.0/24 or 192.168.0.1-127. After fixing the syntax, the alarm does not clear automatically. Clear it manually. |
Appliance | TRUE | TRUE |
| 262208: MAJOR |
AVC Attributes File Handling Failed. Recommended Action: Contact Support. |
Appliance | FALSE | TRUE |
| 262214: MAJOR |
Maximum allowable OSPF neighbors has been exceeded. Recommended Action: OSPF maximum allowable neighbors exceeded. Check how many OSPF neighbors are active on each OSPF interface. |
Appliance | TRUE | TRUE |
| 262215: MAJOR |
An LACP port is not in sync with its neighbor. Recommended Action: Verify its status and whether the aggregator is configured correctly. |
Appliance | TRUE | TRUE |
| 262216: MAJOR |
An LACP aggregator has no operational ports. Recommended Action: Verify whether it is configured correctly and the status of its ports. |
Appliance | TRUE | TRUE |
| 262218: MAJOR |
One or more DoS thresholds exceeded limit. Recommended Action: Check appliance Firewall Protection Profiles status for thresholds state and firewall log for details of DoS events. |
Appliance | TRUE | TRUE |
| 262221: MAJOR |
End entity certificate is nearing expiry. Recommended Action: Renew the end entity certificate that is expiring soon. |
Appliance | TRUE | TRUE |
| 262227: MAJOR |
IPv6 subnet table is full. Recommended Action: IPv6 subnet table has reached its maximum allowable size. Additional subnets will not be added unless others are removed. |
Appliance | TRUE | TRUE |
| 262242: MAJOR |
Route label is down. Recommended Action: Route label and associated routes are down due to IP SLA status. |
Appliance | TRUE | TRUE |
| 262170: MINOR |
Performance is limited by max WAN Optimization bandwidth. Recommended Action: Recommend subscribing to more WAN Optimization bandwidth. |
Appliance | FALSE | TRUE |
| 262183: MINOR |
IPv4 subnet table reached High water mark. Recommended Action: IPv4 subnet table has reached its maximum level for adding BGP/OSPF-learned routes. Only local subnets added beyond this number. |
Appliance | TRUE | TRUE |
| 262194: MINOR |
Secure shell challenge-response succeeded. Recommended Action: Secure shell authentication succeeded. No action required if authorized personnel are trying to access secure shell. |
Appliance | TRUE | TRUE |
| 262195: MINOR |
Secure shell challenge-response failed. Recommended Action: Secure shell authentication failed. Verify if authorized personnel are trying to access secure shell. |
Appliance | TRUE | TRUE |
| 262199: MINOR |
DSCP label is unassigned. Recommended Action: Label is not assigned to interface. |
Appliance | TRUE | TRUE |
| 262200: MINOR |
Peer interface admin or oper or nh reachability is down. Recommended Action: Peer interface admin or operational or next hop reachability status changed. |
Appliance | TRUE | TRUE |
| 262226: MINOR |
IPv6 subnet table reached High water mark. Recommended Action: IPv6 subnet table has reached its maximum level for adding BGP/OSPF-learned routes. Only local subnets added beyond this number. |
Appliance | TRUE | TRUE |
| 262228: MINOR |
DNS Proxy model limit. Recommended Action: DNS proxy model limit reached. DNS for express Apps may no longer take the same path as express App traffic. |
Appliance | TRUE | TRUE |
| 262246: MINOR |
VRRP instance removed since its interface attributes has changed. Recommended Action: Attributes of the interface associated with VRRP instance have changed. Reconfigure VRRP. |
Appliance | TRUE | TRUE |
| 262150: WARNING |
The SSL private key is invalid. Recommended Action: The key is not an RSA standard key that meets the minimum requirement of 1024 bits. Regenerate a key that meets this minimum requirement. |
Appliance | TRUE | FALSE |
| 262151: WARNING |
The SSL certificate is not yet valid. Recommended Action: The SSL certificate has a future start date. It will correct itself when the future date becomes current. Otherwise, install a certificate that is current. |
Appliance | TRUE | FALSE |
| 262152: WARNING |
The SSL certificate has expired. Recommended Action: Reinstall a valid SSL certificate that is current. |
Appliance | TRUE | FALSE |
| 262153: WARNING |
The NTP server is unreachable. Recommended Action: Check the appliance’s NTP server IP and version configuration. Can appliance reach the NTP server? Is UDP port 123 open between the appliance’s mgmt0 IP and the NTP server? |
Appliance | TRUE | FALSE |
| 262155: WARNING |
Software license will expire in 45 days. [For VX series only] Recommended Action: Enter a new license key to avoid loss of optimization or potential traffic disruption. |
Appliance | FALSE | TRUE |
| 262158: WARNING |
Setting default system wan-next-hop to VLAN next-hop no longer necessary. Recommended Action: [Deprecated alarm] Use the VLAN IP address as tunnel source endpoints instead of bvi0. |
Appliance | FALSE | TRUE |
| 262159: WARNING |
Minor inconsistency among tunnel traffic class settings found during upgrade. Recommended Action: [Deprecated alarm] Review the WAN shaper traffic class settings. |
Appliance | FALSE | TRUE |
| 262162: WARNING |
A very large range has been configured for a local subnet. Recommended Action: Confirm that you intended to configure such a large local subnet (/8 or larger). |
Appliance | FALSE | TRUE |
| 262164: WARNING |
Interface shaper max bandwidth exceeds system max bandwidth. Recommended Action: Review the interface shaper max bandwidth settings. Make sure it does not exceed system max bandwidth. |
Appliance | TRUE | TRUE |
| 262167: WARNING |
Cloud Portal is unreachable. Recommended Action: Appliance cannot connect to the Cloud Portal using HTTPS. This connectivity is needed for internet applications classification. |
Appliance | FALSE | TRUE |
| 262169: WARNING |
SaaS application is no longer supported. Recommended Action: SaaS application is no longer supported. |
Appliance | FALSE | TRUE |
| 262181: WARNING |
Admin password is not yet changed. Recommended Action: Change admin password. |
Appliance | FALSE | TRUE |
| 262186: WARNING |
Built-in CA certificate was invalid and it has been deleted internally. Recommended Action: Built-in CA Certificate was invalid, and a new one has been automatically generated. Install the built-in CA certificate on clients as needed. |
Appliance | FALSE | TRUE |
| 262187: WARNING |
CA Bundle was invalid and it has been deleted internally. Recommended Action: CA Certificate Bundle is invalid and will be fixed automatically by Cloud Portal in a couple of hours, or contact Support. |
Appliance | FALSE | TRUE |
| 262189: WARNING |
An IP SLA monitor is in the Down state. Recommended Action: An IP SLA monitor has reported Down status. Check and correct the source of the failure. |
Appliance | TRUE | TRUE |
| 262191: WARNING |
DNS proxy process is in Down state. Recommended Action: DNS proxy is in down state. |
Appliance | TRUE | TRUE |
| 262192: WARNING |
EC Licensing Warning. Recommended Action: Check your EC license. |
Appliance | FALSE | TRUE |
| 262196: WARNING |
An IP SLA monitor is not installed. Recommended Action: An IP SLA monitor is not installed. Check and fix the source of the failure. |
Appliance | TRUE | TRUE |
| 262198: WARNING |
CPU utilization threshold exceeded. Recommended Action: CPU utilization reached almost 100%. Ignore if it is intended. Otherwise, take action to reduce CPU utilization. |
Appliance | TRUE | TRUE |
| 262202: WARNING |
Stats collection slow or incomplete. Recommended Action: In Orchestrator, go to Orchestrator > Software & Setup > Setup > Stats Collector Configuration and look for the following issues: 1. Stats collection paused due to low disk space. 2. Stats collection failing because the Stats Collector is unreachable. 3. Too many appliances assigned to a single Stats Collector. |
Appliance | FALSE | TRUE |
| 262203: WARNING |
Unable to resolve Stats Collector DNS name. Recommended Action: Could not resolve Stats Collector DNS name. Check DNS server configuration. |
Appliance | FALSE | TRUE |
| 262204: WARNING |
Stats Collector is unreachable. Recommended Action: Appliance cannot connect to Stats Collector using HTTPS. This connectivity is required for Appliance to upload stats. |
Appliance | FALSE | TRUE |
| 262212: WARNING |
BFD process is unresponsive and maybe crashed. Recommended Action: BFD process is unresponsive and might have crashed. Open a support case. |
Appliance | TRUE | TRUE |
| 262217: WARNING |
DNS resolution for one of the IPSLA targets failed. Recommended Action: Check DNS configuration and/or verify the domain names in IP SLA configuration. |
Appliance | TRUE | TRUE |
| 262219: WARNING |
The SSL certificate will expire in less than 30 days. Recommended Action: Renew a valid SSL certificate before it expires. |
Appliance | TRUE | FALSE |
| 262222: WARNING |
Trusted certificate has expired. Recommended Action: Replace the expired certificate in the trust store. |
Appliance | TRUE | TRUE |
| 262223: WARNING |
Trusted certificate is nearing expiry. Recommended Action: Replace the trusted certificate that is expiring soon. |
Appliance | TRUE | TRUE |
| 262233: WARNING |
Authentication delay detected. Recommended Action: Check the connectivity to ensure seamless authentication. |
Appliance | TRUE | TRUE |
| 262234: WARNING |
Authentication failures detected. Recommended Action: Check auth-server connectivity/supplicant credentials. |
Appliance | TRUE | TRUE |
| 262235: WARNING |
Misconfigurations detected. Recommended Action: Check the configurations and apply again. |
Appliance | TRUE | TRUE |
| 262236: WARNING |
RADIUS servers unreachable. Recommended Action: Check the server configuration and reachability. |
Appliance | TRUE | TRUE |
| 262237: WARNING |
Bad authenticator detected. Recommended Action: Check the server-side configurations. |
Appliance | TRUE | TRUE |
| 262238: WARNING |
RADIUS server misconfigurations detected. Recommended Action: Check the RADIUS server configurations. |
Appliance | TRUE | TRUE |
| 262239: WARNING |
No loopback interface for the selected labels detected. Recommended Action: Failed to configure AppExpress group because there is no loopback interface for the selected labels. |
Appliance | TRUE | TRUE |
| 262240: WARNING |
Auto-update of baseline for threshold is skipped since new baseline value is greater than “Baseline Freeze %” of configured Max Threshold. Recommended Action: Maximum threshold needs to be revised. |
Appliance | TRUE | TRUE |
| 262241: WARNING |
Appliance reserve flow capacity is less than ‘Minimum reserve capacity limit’. So baseline raise is skipped. Recommended Action: Consider adjusting the Baseline Settings immediately and plan for a capacity upgrade as flow utilization nears its limit. |
Appliance | TRUE | TRUE |
Equipment
System Type 0 (Appliance); Source Type 3 (Equipment)
| Alarm ID: Severity | Alarm Text | Source | Service Affecting | Clearable |
|---|---|---|---|---|
| 196608: CRITICAL |
RAID array is degraded. Recommended Action: Initiate a self-service RMA for the degraded disk from the Support Portal. |
Appliance | FALSE | TRUE |
| 196611: CRITICAL |
Fan failure detected. Recommended Action: Proceed to the Online RMA tool of the HPE Networking Support Portal to request a hardware replacement. |
Appliance | FALSE | FALSE |
| 196612: CRITICAL |
System bypass mode. Recommended Action: Normal with factory default configuration, during reboot, and if user has put the appliance in bypass mode. Check the system bypass configuration. |
Appliance | FALSE | FALSE |
| 196613: CRITICAL |
LAN/WAN fail-to-wire card failure. Recommended Action: Proceed to the Online RMA tool of the HPE Networking Support Portal to request a hardware replacement. |
Appliance | FALSE | FALSE |
| 196614: CRITICAL |
LAN/WAN fail-to-wire card relay failure. Recommended Action: Open a support case for assistance. |
Appliance | FALSE | FALSE |
| 196615: CRITICAL |
Encryption card hardware failure. Recommended Action: [Deprecated alarm] Proceed to the Online RMA tool of the HPE Networking Support Portal to request a hardware replacement. |
Appliance | FALSE | FALSE |
| 196628: CRITICAL |
WAN next-hop router discovered on a LAN port (box is in backwards). Recommended Action: Check WAN next hop IP address. Check lan0 and wan0 cabling (in-line mode only). If not resolved, contact Support. |
Appliance | TRUE | FALSE |
| 196641: CRITICAL |
NIC failure. Recommended Action: Proceed to the Online RMA tool of the HPE Networking Support Portal to request a hardware replacement. |
Appliance | FALSE | FALSE |
| 196644: CRITICAL |
Insufficient configured memory size for this virtual appliance. [For VX series only] Recommended Action: Assign more memory to the virtual machine and restart the appliance. Traffic will not be optimized until this is resolved. |
Appliance | TRUE | FALSE |
| 196645: CRITICAL |
Insufficient configured processor count for this virtual appliance. [For VX series only] Recommended Action: Assign more processors to the virtual machine and restart the appliance. Traffic will not be optimized until this is resolved. |
Appliance | TRUE | FALSE |
| 196646: CRITICAL |
Insufficient configured disk storage for this virtual appliance. [For VX series only] Recommended Action: Assign more storage to the virtual machine and restart the appliance. Traffic will not be optimized until this is resolved. |
Appliance | TRUE | FALSE |
| 196649: CRITICAL |
Bridge loop is detected. Recommended Action: Make sure bridge ports are connected to different virtual switches and restart the appliance. Traffic will not be optimized until this is resolved. |
Appliance | TRUE | FALSE |
| 196650: CRITICAL |
Network interface is unassigned. Recommended Action: Assign the network interface to an existing MAC address, and then restart the appliance. Or, if the network interface is not being used, set its admin state to down. |
Appliance | TRUE | FALSE |
| 196651: CRITICAL |
Bridge creation failed. Recommended Action: Check log messages for more details on the failure. |
Appliance | TRUE | FALSE |
| 196657: CRITICAL |
Cell interface is down. Recommended Action: Device could be out of range of cellular network. Can try: admin down and admin back up the device. Last resort: check alternative values for APN. |
Appliance | TRUE | TRUE |
| 196658: CRITICAL |
LTE modem unreachable. Recommended Action: LTE modem is unplugged or not visible to system. Suggested action: check LTE modem connection to the system. Unplug and plug LTE modem back in and reboot the system. |
Appliance | TRUE | TRUE |
| 196659: CRITICAL |
Cellular interface cannot establish a call with the carrier. Recommended Action: Make sure APN is set to either default or a carrier-specified APN. |
Appliance | TRUE | TRUE |
| 196665: CRITICAL |
Equipment Ambient temperature is high. Recommended Action: Make sure that the room temperature is normal and wait for the appliance to recover. |
Appliance | TRUE | TRUE |
| 196666: CRITICAL |
Temperature at a node of PCB is high. Recommended Action: Make sure that the room temperature is normal and wait for it to recover. |
Appliance | TRUE | TRUE |
| 196667: CRITICAL |
Equipment CPU temperature is high. Recommended Action: Make sure that the room temperature is normal and wait for it to recover. |
Appliance | TRUE | TRUE |
| 196668: CRITICAL |
FAN is running with low duty cycle. Recommended Action: Proceed to the Online RMA tool of the HPE Networking Support Portal to request a hardware replacement. |
Appliance | TRUE | TRUE |
| 196671: CRITICAL |
An uncorrected memory corruption occurred. Recommended Action: Proceed to the Online RMA tool of HPE Networking Support Portal to request a hardware replacement. |
Appliance | TRUE | TRUE |
| 196609: MAJOR |
Disk is failed. Recommended Action: Proceed to the Online RMA tool of the HPE Networking Support Portal to request a hardware replacement. |
Appliance | FALSE | FALSE |
| 196617: MAJOR |
Network interface link down. Recommended Action: Is the system in bypass mode? Check cables and interface admin status on the router. |
Appliance | TRUE | TRUE |
| 196618: MAJOR |
Management interface link down. Recommended Action: Check cables and interface admin status on the router. |
Appliance | TRUE | TRUE |
| 196619: MAJOR |
Interface is half duplex. Recommended Action: Check speed/duplex settings on the router/switch port. |
Appliance | TRUE | TRUE |
| 196620: MAJOR |
Interface speed is 10 Mbps. Recommended Action: Check speed/duplex settings. Use a 100/1000 Mbps port on the router/switch. |
Appliance | TRUE | TRUE |
| 196621: MAJOR |
Config DB disk full. Recommended Action: [Deprecated alarm] |
Appliance | TRUE | FALSE |
| 196622: MAJOR |
Operating System disk full. Recommended Action: [Deprecated alarm] |
Appliance | TRUE | FALSE |
| 196623: MAJOR |
File System disk full. Recommended Action: [Deprecated alarm] |
Appliance | TRUE | FALSE |
| 196624: MAJOR |
Datapath internal loopback test failed. Recommended Action: [Deprecated alarm] |
Appliance | TRUE | FALSE |
| 196625: MAJOR |
Next-hop unreachable. Recommended Action: Check cables on EdgeConnect appliance and router. Check IP/mask on EdgeConnect appliance and router. Next hop should be only a single IP hop away. To troubleshoot, use: show cdp neighbor,show arp,and: ping/ping6 -I <appliance IP> <next-hop IP>Packets are sent with ttl=1, so ensure that the next hop IP has no intermediate routers. NOTE: If there is either a LAN Next-Hop Unreachable or WAN Next-Hop Unreachable alarm, resolve the alarm(s) immediately by configuring the gateway(s) to respond to ICMP pings from the EdgeConnect appliance IP Address. |
Appliance | TRUE | FALSE |
| 196626: MAJOR |
VRRP instance is down. Recommended Action: Check the interface. Is the link down? |
Appliance | TRUE | TRUE |
| 196629: MAJOR |
Disk is not-in-service. Recommended Action: Check whether the disks are properly seated. Contact Support for further assistance. |
Appliance | FALSE | FALSE |
| 196631: MAJOR |
Disk has been removed by operator. Recommended Action: Normal during disk replacement. Insert the disk using Appliance Manager or Orchestrator. Contact Support if insertion fails. |
Appliance | FALSE | FALSE |
| 196632: MAJOR |
LAN/WAN interfaces have different admin states. [For Bridge mode only] Recommended Action: Check interface admin configuration (lan0/wan0, lan1/wan1). Applicable only to in-line mode. |
Appliance | TRUE | TRUE |
| 196633: MAJOR |
LAN/WAN interfaces have different link carrier states. [For Bridge mode only] Recommended Action: Check interface configured speed settings and current values (lan0/wan0, lan1/wan1). Applicable only to in-line mode. |
Appliance | TRUE | TRUE |
| 196634: MAJOR |
LAN/WAN interface has been shut down due to link propagation of paired interface. [For Bridge mode only] Recommended Action: Check cables and connectivity. For example, if lan0 is shut down, check why wan0 is down. Applicable only to in-line mode. |
Appliance | TRUE | TRUE |
| 196636: MAJOR |
Cluster peer unreachable. Recommended Action: Check Cluster configuration on all applicable appliances and check L3/L4 connectivity between the peers. Open TCP and UDP ports 4164 between the cluster peer IPs if they are blocked. |
Appliance | TRUE | FALSE |
| 196637: MAJOR |
Bonding members have different speed/duplex. Recommended Action: Check interface speed/duplex settings and negotiated values on wan0/wan1 and lan0/lan1 ether-channel groups. |
Appliance | TRUE | TRUE |
| 196638: MAJOR |
WCCP adjacency(ies) down. Recommended Action: Cannot establish WCCP neighbor. Check WCCP configuration on appliance and router. Verify reachability. Enable debugging on router: debug ip wccp packet |
Appliance | TRUE | TRUE |
| 196639: MAJOR |
WCCP assignment table mismatch. Recommended Action: Check the WCCP mask/hash assignment configuration on all EdgeConnect appliances and ensure that they match. |
Appliance | TRUE | TRUE |
| 196640: MAJOR |
Power supply not connected, not powered, or failed. [EC-M, EC-L, and EC-XL only (dual supplies)] Recommended Action: Connect to a power outlet. Check power cable connectivity. |
Appliance | FALSE | FALSE |
| 196642: MAJOR |
LAN next-hop unreachable. Recommended Action: Check Appliance configuration: LAN side next hop IP, Appliance IP/Mask, VLAN IP/mask, and VLAN ID. NOTE: If there is either a LAN Next-Hop Unreachable or WAN Next-Hop Unreachable alarm, resolve the alarm(s) immediately by configuring the gateway(s) to respond to ICMP pings from the EdgeConnect appliance IP Address. |
Appliance | TRUE | FALSE |
| 196643: MAJOR |
Unexpected system restart. Recommended Action: The appliance rebooted unexpectedly. Power issues? Was the appliance shut down ungracefully? Contact Support if the shutdown was not planned. |
Appliance | FALSE | TRUE |
| 196647: MAJOR |
Interfaces have different MTUs. [For Bridge mode only: lan0/wan0] Recommended Action: Check interface MTU settings on lan0/wan0 (pairwise) on dual bridge mode and lan0/lan1/wan0/wan1… on single bridge mode. |
Appliance | TRUE | TRUE |
| 196648: MAJOR |
Interfaces have different MTUs. [For Bridge mode only: lan1/wan1] Recommended Action: Check interface MTU settings on lan1/wan1 or tlan1/twan1 interfaces. |
Appliance | TRUE | TRUE |
| 196652: MAJOR |
System optimization disabled. Recommended Action: [Deprecated alarm] Turn on system optimization. |
Appliance | TRUE | FALSE |
| 196656: MAJOR |
HASync peer is down. Recommended Action: Check HA link connectivity. |
Appliance | TRUE | FALSE |
| 196662: MAJOR |
USB disabled due to Over Current. Recommended Action: USB port disabled due to overcurrent. Connected device might be pulling too much or in charging device mode. |
Appliance | FALSE | FALSE |
| 196664: MAJOR |
PoE fault detected. Recommended Action: See the Alarm Logs for detected reason. |
Appliance | TRUE | TRUE |
| 196610: MINOR |
Disk is degraded. Recommended Action: Wait for disk to recover. If it does not recover, contact Support. |
Appliance | FALSE | FALSE |
| 196630: MINOR |
Disk is rebuilding. Recommended Action: Normal. Wait for the disk to rebuild. If it does not rebuild, contact Support. |
Appliance | FALSE | FALSE |
| 196635: MINOR |
Disk SMART threshold exceeded. Recommended Action: SSD Smart alert detected. Contact Support. |
Appliance | FALSE | TRUE |
| 196653: MINOR |
Non-optimal configured memory size for this virtual appliance. [For VX series only] Recommended Action: Assign more memory to the virtual machine and restart the appliance. Traffic will be sub-optimal until this is resolved. |
Appliance | TRUE | TRUE |
| 196654: MINOR |
Non-optimal configured processor count for this virtual appliance. [For VX series only] Recommended Action: Assign more processors to the virtual machine and restart the appliance. Traffic will be sub-optimal until this is resolved. |
Appliance | TRUE | TRUE |
| 196655: MINOR |
Non-optimal configured disk storage for this virtual appliance. [For VX series only] Recommended Action: Assign more storage to the virtual machine and restart the appliance. Traffic will be sub-optimal until this is resolved. |
Appliance | TRUE | TRUE |
| 196670: MINOR |
A corrected memory corruption occurred. [For VX series only] Recommended Action: An occasional few of these are normal. If frequent, contact HPE Networking Support. |
Appliance | TRUE | TRUE |
| 196616: WARNING |
Network interface admin down. Recommended Action: Check the EdgeConnect interface configuration. |
Appliance | TRUE | TRUE |
| 196627: WARNING |
VRRP state changed from Master to Backup. Recommended Action: VRRP state has changed from Master to Backup. Check VRRP Master for uptime and connectivity. |
Appliance | TRUE | TRUE |
| 196660: WARNING |
Unsupported USB device. Recommended Action: Detected USB device recognized, but not supported on this gateway. Unplug the device and reboot the system. |
Appliance | FALSE | FALSE |
| 196661: WARNING |
Unrecognized USB device. Recommended Action: Detected USB device not recognized by gateway. Unplug the device and reboot the system. |
Appliance | FALSE | FALSE |
| 196663: WARNING |
Activity detected only on disabled combo port. Recommended Action: Check cables or change active combo port setting. |
Appliance | TRUE | TRUE |
| 196672: WARNING |
Secure Boot is unexpectedly off. Recommended Action: Contact HPE Networking Support. |
Appliance | TRUE | TRUE |
Threshold Crossing Alerts
System Type 0 (Appliance); Source Type 5 (Threshold Crossing Alerts)
| Alarm ID: Severity | Alarm Text | Source | Service Affecting | Clearable |
|---|---|---|---|---|
| 327681: WARNING |
WAN Tx throughput threshold exceeded. Recommended Action: User configured. Check bandwidth reports for tunnel bandwidth. |
Appliance | FALSE | TRUE |
| 327682: WARNING |
LAN Rx throughput threshold exceeded. [LAN Rx outbound] Recommended Action: User configured. Check bandwidth reports. |
Appliance | FALSE | TRUE |
| 327683: WARNING |
Optimized flows count threshold exceeded. Recommended Action: User configured. Check flow and real-time connection reports. |
Appliance | FALSE | TRUE |
| 327684: WARNING |
Total flows count threshold exceeded. Recommended Action: User configured. Check flow and real-time connection reports. |
Appliance | FALSE | TRUE |
| 327685: WARNING |
File system utilization threshold exceeded. Recommended Action: Disk is almost full. In Appliance Manager, go to Support > Debug Files, and then delete the old tcpdumps, snapshots, sysdumps, and show-tech files. |
Appliance | FALSE | TRUE |
| 327686: WARNING |
Latency threshold exceeded. Recommended Action: User Configured. Check Latency reports. If latency is too high, check routing between the appliances and QoS policy on upstream routers. Check tunnel DSCP marking. If latency persists, contact Internet Service Provider (ISP) and Support. |
Appliance | FALSE | TRUE |
| 327687: WARNING |
Pre-FEC loss threshold exceeded. Recommended Action: User configured. Check Loss reports. Check for loss between EdgeConnect appliances (interface counters on upstream routers). Use a network bandwidth measurement tool, such as iPerf, to measure loss. Contact Internet Service Provider (ISP). |
Appliance | FALSE | TRUE |
| 327688: WARNING |
Post-FEC loss threshold exceeded. Recommended Action: User configured. Check Loss reports. Check for loss between EdgeConnect appliances (interface counters on upstream routers). Use a network bandwidth measurement tool, such as iPerf, to measure loss. Enable/Adjust Forward Error Correction (FEC). Contact ISP (Internet Service Provider). |
Appliance | FALSE | TRUE |
| 327689: WARNING |
Out of order packets threshold exceeded. Recommended Action: User configured. Check Out-of-Order Packets Reports. Normal in a network with multiple paths and different QoS queues. Normal in a dual-homed router or four port in-line configuration. Contact Support if out-of-order packets are not 100% corrected. |
Appliance | FALSE | TRUE |
| 327690: WARNING |
Corrected out of order packets threshold exceeded. Recommended Action: User configured. Check Out-of-Order Packets Reports. Normal in a network with multiple paths and different QoS queues. Normal in a dual-homed router or four port in-line configuration. Contact Support if out-of-order packets are not 100% corrected. |
Appliance | FALSE | TRUE |
| 327691: WARNING |
Bandwidth utilization threshold exceeded. Recommended Action: User configured. Check bandwidth reports for tunnel bandwidth utilization. |
Appliance | FALSE | TRUE |
| 327692: WARNING |
Low reduction threshold exceeded. Recommended Action: User configured. Check bandwidth reports for dedupe. Check if the traffic is pre-compressed or encrypted. |
Appliance | FALSE | TRUE |
| 327693: WARNING |
Appliance flow limit threshold exceeded. Recommended Action: If this condition persists, a larger appliance will be necessary to fully optimize all flows. |
Appliance | FALSE | TRUE |
Orchestrator Alarms
Orchestrator can raise alarms based on issues with tunnels, software, and equipment.
Tunnels
System Type 100 (Orchestrator); Source Type 1 (Tunnel)
| Alarm ID: Severity | Alarm Text | Source | Service Affecting | Clearable |
|---|---|---|---|---|
| 6619136: CRITICAL |
Interfaces with duplicate IP exists: {0}. Recommended Action: No overlays will be applied to appliances with duplicate IP address. |
/orchestrator/ interfaces |
TRUE | FALSE |
| 6619137: CRITICAL |
Interfaces with no public IP exists: {0}. Recommended Action: NAT flag is turned on for this interface. Refer to the Deployment page. If this interface is not behind NAT, remove the NAT flag. No tunnels will be built to or from the interface with missing public IP. |
/orchestrator/ interfaces |
TRUE | FALSE |
| 6619138: CRITICAL |
Failed to apply overlays. Recommended Action: One or more steps failed while applying overlays. Refer to the Audit Logs for more details. |
/orchestrator/ orchestration/ overlays |
TRUE | FALSE |
| 6619139: CRITICAL |
ACL used in an overlay is not defined on the appliance. acl name: {0} overlay name: {1}. Recommended Action: ACLs can be created on the appliance by applying ACL templates. |
/orchestrator/ orchestration/ overlays |
TRUE | FALSE |
| 6619140: CRITICAL |
Interfaces with duplicate wan/vti label exists: {0}. Recommended Action: Assign unique labels to all WAN/VTI interfaces. No overlays will be applied to appliances with duplicate WAN/VTI labels. |
/orchestrator/ interfaces |
TRUE | FALSE |
| 6619141: CRITICAL |
Interfaces with duplicate public IP exists: {0}. Recommended Action: No overlays will be applied to appliances with duplicate IP addresses. |
/orchestrator/ interfaces |
TRUE | FALSE |
| 6619142: CRITICAL |
Failed to apply tunnel group. Recommended Action: Refer to the Audit Logs for more details. |
/orchestrator/ orchestration/ tunnelgroups |
TRUE | FALSE |
| 6619143: CRITICAL |
Interface has bad IP address: {0}. Recommended Action: No overlay tunnels will be built using this interface. |
/orchestrator/ interfaces |
TRUE | FALSE |
| 6619146: CRITICAL |
Cannot build tunnel with src IP {0} and dest IP {1}. IP versions mismatch. Recommended Action: Make sure the tunnel source and destination IP address are both IPv4 or are both IPv6 addresses. |
/orchestrator/ orchestration/ tunnels |
TRUE | TRUE |
| 6619147: CRITICAL |
Failed to apply labels. Recommended Action: Refer to the Audit Logs for more details. |
/orchestrator/ orchestration |
TRUE | FALSE |
| 6619148: CRITICAL |
Failed to apply internal subnets. Recommended Action: Refer to the Audit Logs for more details. |
/orchestrator/ orchestration |
TRUE | FALSE |
| 6619149: CRITICAL |
Failed to apply application classification data to appliance. Recommended Action: Make sure the appliance can connect to Orchestrator. Refer to the Audit Logs for more details. |
/orchestrator/ orchestration/ applications |
TRUE | FALSE |
| 6619150: CRITICAL |
Appliance has the same IPSec UDP port as the other HA peer, overlays will not be applied to this appliance. HA Peer: {0}. Recommended Action: You can change the IPSec UDP Port of an appliance by editing the System Information from the System Information tab. |
/orchestrator/ orchestration/ tunnels/ha |
TRUE | FALSE |
| 6619151: CRITICAL |
Both Overlay Manager and Tunnel Group manager are ENABLED. Recommended Action: You can enable one or the other. Turn one of them OFF. |
/orchestration | TRUE | FALSE |
| 6619152: CRITICAL |
Overlay {0} has no hub defined. No tunnels will be built between appliances that are part of this overlay. Recommended Action: To add a Hub to an Overlay, either (1) apply the Overlay to a Hub appliance or (2) go to the Hubs tab and make an appliance that is currently in the Overlay a Hub. |
/orchestration/ overlays |
TRUE | FALSE |
| 6619153: CRITICAL |
Overlay {0} has no WAN ports defined. No tunnels will be built between appliance that are part of this overlay. Recommended Action: At least one WAN port needs to be defined in an overlay. |
/orchestration/ overlays |
TRUE | FALSE |
| 6619154: CRITICAL |
Tunnel Group {0} has no hub defined. No tunnels will be built between appliances that are part of this tunnel group. Recommended Action: To add a Hub to a Tunnel Group, either (1) apply the Tunnel Group to a Hub appliance or (2) go to the Hubs tab and make an appliance that is currently in the Tunnel Group a Hub. |
/orchestration/ tunnelgroups |
TRUE | FALSE |
| 6619155: CRITICAL |
Tunnel Group {0} has no interfaces defined. No tunnels will be built between appliances that are part of this tunnel group. Recommended Action: Go to Tunnel Groups to configure interfaces. |
/orchestration/ tunnelgroups |
TRUE | FALSE |
| 6619156: CRITICAL |
Failed to apply templates. Recommended Action: One or more templates failed to apply. Refer to the Audit Logs for more details. |
/orchestrator/ orchestration/ templates |
TRUE | FALSE |
| 6619157: CRITICAL |
Failed to apply port forwarding rules to appliance. Recommended Action: Make sure appliance can connect to Orchestrator. Refer to the Audit Logs for more details. |
/orchestrator/ orchestration |
TRUE | FALSE |
| 6619158: CRITICAL |
Overlay {0} is using local breakout without any interfaces selected. Recommended Action: Go to Business Intent Overlays to configure local breakout interface. |
/orchestration/ overlays |
TRUE | FALSE |
| 6619159: CRITICAL |
Maximum number of tunnels exceeded. {0}. Recommended Action: Configure Overlays to create fewer tunnels. |
/orchestrator/ orchestration/ tunnels |
FALSE | FALSE |
| 6619160: CRITICAL |
At least one region is missing a hub appliance. Recommended Action: To add a Hub to an Overlay, either (1) apply the Overlay to a Hub appliance or (2) go to the Hubs tab and make an appliance that is currently in the Overlay a Hub. |
/orchestration/ overlays |
TRUE | FALSE |
| 6619161: CRITICAL |
Appliance has a duplicate hostname with another appliance in the network. No overlays will be built to this appliance. Recommended Action: Change the hostname of one of the appliances. |
/orchestrator/ orchestration/ tunnels |
FALSE | FALSE |
| 6619166: CRITICAL |
Orchestration failed. {0}. Recommended Action: Go to the Audit Logs for more details. |
/orchestrator/ orchestration |
TRUE | FALSE |
| 6619168: CRITICAL |
Duplicate IPSec UDP Port {0} detected on the following appliances [{1}] that belong to site {2}. Appliances sharing the same site name must have unique IPSec UDP port numbers. Orchestration for these appliances will be suspended until this is addressed. Recommended Action: You can change the IPSec UDP Port of an appliance on the System Information tab. |
/orchestrator/ orchestration/ tunnels |
TRUE | FALSE |
| 6619173: CRITICAL |
Failed to apply traffic behavior data to appliance. Recommended Action: Make sure appliance can connect to Orchestrator. Refer to the Audit Logs for more details. |
/orchestrator/ orchestration |
TRUE | FALSE |
| 6619174: CRITICAL |
Appliance does not have geo location information. Zscaler Service Edges cannot be auto discovered. Recommended Action: Update appliance location in Configuration Wizard. |
/orchestrator/ orchestration/ zscaler |
TRUE | FALSE |
| 6619175: CRITICAL |
Only IPSec UDP tunnel mode is supported on EdgeHA devices. Recommended Action: Check Tunnel Settings. |
/orchestration | TRUE | TRUE |
| 6619177: CRITICAL |
Edge HA peer {0} has tunnels with source port {1}. Orchestration will be skipped for this appliance until the conflicting tunnels are deleted. Recommended Action: Wait for the conflicting tunnels to tear down. |
/orchestrator/ orchestration/ tunnels |
TRUE | FALSE |
| 6619178: CRITICAL |
This appliance and appliances [{0}] have been manually configured with same IPSec UDP port {1}. Orchestration will be paused on all the conflicting appliances until unique ports are assigned to the appliance. Recommended Action: You can change the IPSec UDP Port of an appliance on the System Information tab. |
/orchestrator/ orchestration/ tunnels |
TRUE | FALSE |
| 6619189: CRITICAL |
{0} exceeded threshold {1} by {2}% ({3}) at {4}. Recommended Action: Check internal LAN. |
/orchestrator/ internaldrops |
FALSE | TRUE |
| 6619144: MINOR |
Appliance does not have any wan labels required for an overlay. No tunnels will be built on this appliance for the overlay. Overlay name: {0} wan labels: {1}. Recommended Action: Assign at least one WAN label selected for this overlay in the deployment configuration of the appliance. |
/orchestrator/ orchestration/ overlays |
TRUE | TRUE |
| 6619145: MINOR |
Appliance missing lan label {1} for traffic access policy of overlay. No traffic on this appliance will be routed to the overlay. Overlay name: {0}. Recommended Action: Assign a LAN port the required LAN label selected for this overlay in the deployment configuration of the appliance. If this appliance is in server mode, you should use an ACL instead of selecting a LAN label in the overlay configuration. |
/orchestrator/ orchestration/ overlays |
TRUE | TRUE |
| 6619163: WARNING |
Mesh Overlay - {0} has no hub defined. No tunnels will be built for Hub & Spoke Interface label {1} for this overlay. Recommended Action: To add a Hub to an Overlay, either (1) apply the Overlay to a Hub appliance or (2) go to the Hubs tab and make an appliance that is currently in the Overlay a Hub. |
/orchestration/ overlays |
TRUE | FALSE |
| 6619164: WARNING |
Mesh Tunnel Group - {0} has no hub defined. No tunnels will be built for Hub & Spoke Interface label {1} for this group. Recommended Action: To add a Hub to a Tunnel Group, either (1) apply the Tunnel Group to a Hub appliance or (2) go to the Hubs tab and make an appliance that is currently in the Tunnel Group a Hub. |
/orchestration/ tunnelgroups |
TRUE | FALSE |
| 6619165: WARNING |
Appliance does not have public IP for wan label {0} auto discovered Zscaler Service Edges may not be correct. Recommended Action: On the Deployment page, toggle the Not Behind NAT flag to NAT, or create a Service Edge Override on the Zscaler tab. |
/orchestrator/ orchestration zscaler |
FALSE | FALSE |
| 6619167: WARNING |
At least one hub is not part of any overlay. Recommended Action: To add a Hub to an Overlay, either (1) apply the Overlay to a Hub appliance or (2) go to the Hubs tab and make an appliance that is currently in the Overlay a Hub. |
/orchestration/ overlays |
TRUE | FALSE |
| 6619169: WARNING |
At least one appliance is associated with a region and regional routing is currently disabled. Recommended Action: If regional routing is desired and has been authorized, go to Regional Routing and enable the feature. |
/orchestration | TRUE | TRUE |
| 6619170: WARNING |
{0} is only supported on inline router deployment mode appliances. Recommended Action: Go to Deployment and choose “Router” mode. |
/orchestrator | FALSE | TRUE |
| 6619171: WARNING |
Regional routing is enabled but {0} not associated with any region, so no tunnel will be built. Recommended Action: Associate the appliance with a region or disable regional routing. |
/orchestration | TRUE | TRUE |
| 6619176: WARNING |
{0} Appliance {1} configured Bandwidth for {2} interface is below min threshold for the number of configured underlay tunnels. Recommended Action: On Deployment page, update Inbound/outbound interface Bandwidth to be above the minimum Bandwidth. (Check the “interfaceBandwidth CheckPerTunnelOverhead” property under Advanced Properties.) |
/orchestrator/ interfaceBandwidth |
TRUE | FALSE |
Software
System Type 100 (Orchestrator); Source Type 4 (Software)
| Alarm ID: Severity | Alarm Text | Source | Service Affecting | Clearable |
|---|---|---|---|---|
| 6815744: CRITICAL |
Orchestrator detected possible cloned appliances - cloned: {0} clone: {1}. Recommended Action: [Deprecated alarm] |
/orchestrator/ discovery/ clone |
FALSE | TRUE |
| 6815745: CRITICAL |
Appliance backup failed: {0}. Recommended Action: Check Orchestrator reachability, and then go to Backup Now and retry the backup. Open a support case if this alarm persists more than 24 hours. |
/orchestrator/ system/backup |
FALSE | TRUE |
| 6815746: CRITICAL |
Appliances with the same serial numbers exist: {0}. Recommended Action: This alarm might be caused by applying identical license keys on multiple appliances. If the appliances are cloned, contact Support for the steps to correctly clone the appliance. |
/orchestrator/ system |
TRUE | TRUE |
| 6815748: CRITICAL |
Orchestrator cannot reach this appliance. Recommended Action: Check appliance reachability to Orchestrator and HPE Aruba Networking EdgeConnect Cloud Portal. |
/orchestrator/ connectivity |
TRUE | TRUE |
| 6815749: CRITICAL |
Appliance version not supported: {0}. Recommended Action: Upgrade appliance to minimum supported version. |
/orchestrator/ system |
TRUE | TRUE |
| 6815752: CRITICAL |
Appliance is configured with labels to build IPSec UDP tunnels, but the appliance version does not support IPSec UDP tunnels. Recommended Action: You can change the tunnel modes for labels in the Overlay Manager Settings. |
/orchestrator/ orchestration/ tunnels |
TRUE | FALSE |
| 6815754: CRITICAL |
Orchestrator requires a validated portal account name and key (or for NX/VX/VRX products, a valid license key). Recommended Action: Go to Licensing to provide the required information. |
/license | TRUE | FALSE |
| 6815757: CRITICAL |
Orchestrator portal account or license expired on {0 date}. Recommended Action: Go to Licensing to provide the required information. |
/license | TRUE | FALSE |
| 6815758: CRITICAL |
Orchestrator cannot connect to HPE Aruba Networking EdgeConnect Cloud Portal using HTTPS. Recommended Action: Check portal connection and refer to the Audit Logs for more information. |
/portal connectivity |
TRUE | TRUE |
| 6815760: CRITICAL |
Orchestrator cannot register with HPE Aruba Networking EdgeConnect Cloud Portal using the credentials provided. Recommended Action: Go to the Licensing tab and provide the required account information. |
/portal/ registration |
TRUE | TRUE |
| 6815766: CRITICAL |
CPX license expired on {0 date}. Recommended Action: [Deprecated alarm] Renew your license to avoid service interruption. |
/portal/license/ cpx |
TRUE | TRUE |
| 6815770: CRITICAL |
Your EdgeConnect account has licenses that expired on {0 date}. EdgeConnect devices in your network will stop passing traffic. Recommended Action: Renew your license to avoid service interruption. |
/portal/license/ ec |
TRUE | TRUE |
| 6815774: CRITICAL |
SaaS license expired on {0 date}. Recommended Action: Renew your license to avoid service interruption. |
/portal/license/ saas |
TRUE | TRUE |
| 6815778: CRITICAL |
Discovered appliances list contains cloned appliances. Clones: {0}. Recommended Action: Contact Support for steps to correctly clone the appliance. |
/discovery/ clone |
FALSE | TRUE |
| 6815779: CRITICAL |
Orchestrator backup failed. Recommended Action: Go to Historical Jobs for details. |
/system/backup | FALSE | TRUE |
| 6815780: CRITICAL |
Orchestrator failed to get update from portal for application definition data. Recommended Action: Check portal connection and refer to the Audit Logs for more information. |
/orchestration/ applications |
FALSE | TRUE |
| 6815782: CRITICAL |
Orchestrator failed to get update from portal for traffic behavior data. Recommended Action: Check portal connection and refer to the Audit Logs for more information. |
/orchestration/ applications |
FALSE | TRUE |
| 6815790: CRITICAL |
Orchestrator is not registered with HPE Aruba Networking EdgeConnect Cloud Portal. Recommended Action: Use your previous Orchestrator to approve this one. If you do not have another Orchestrator, contact Support for assistance. |
/portal/ registration |
TRUE | TRUE |
| 6815791: CRITICAL |
Failed to connect to Zscaler. Recommended Action: Check Zscaler subscription. |
/orchestration | TRUE | TRUE |
| 6815792: CRITICAL |
Your Orchestrator service will expire on {0 date}. Recommended Action: Contact the HPE Aruba Networking Sales team to order an extension. |
/portal/license/ cloudorch |
FALSE | TRUE |
| 6815796: CRITICAL |
Your WAN Optimization expired on {0 date}. EdgeConnect devices in your network will stop using WAN Optimization. Recommended Action: Renew your WAN Optimization license to avoid service interruption. |
/portal/license/ ec |
TRUE | TRUE |
| 6815800: CRITICAL |
Cannot get Azure data. Details : {0}. Recommended Action: Check Azure subscription. Go to the Audit Logs for more details. |
/orchestration/ azure |
TRUE | TRUE |
| 6815801: CRITICAL |
Cannot download Azure configuration. Details : {0}. Recommended Action: Check Azure subscription. |
/orchestration/ azure |
TRUE | TRUE |
| 6815802: CRITICAL |
Cannot create IPSEC Tunnels for Azure VPN Site - {0} for appliance {1} and label {2}. Recommended Action: Associate Hub to Azure VPN Site using the Azure Portal. If Hub is already associated, wait for deployment to complete to start Azure Orchestration. |
/orchestrator/ orchestration/ azure |
TRUE | TRUE |
| 6815803: CRITICAL |
Cannot Orchestrate association to Azure VWan. Recommended Action: Use the VTI IP Pool dialog box to configure the subnet pool. |
/orchestration/ azure |
TRUE | TRUE |
| 6815804: CRITICAL |
Cannot connect to Azure. Details : {0}. Recommended Action: Check Azure subscription. Go to the Audit Logs for more details. |
/orchestration/ azure |
TRUE | TRUE |
| 6815808: CRITICAL |
Appliance was manually added to Orchestrator. Recommended Action: Remove the appliance from Orchestrator, discover and approve it. |
/orchestrator/ system |
TRUE | TRUE |
| 6815815: CRITICAL |
Custom bonding policy or secondary WAN interface configured in overlay, but appliance does not support this feature. Recommended Action: Check overlay configuration or upgrade appliance. |
/orchestrator/ orchestration/ overlays |
TRUE | FALSE |
| 6815817: CRITICAL |
Invalid IPSec UDP Key Material lifetime. Lifetime must be greater than rotation period. Recommended Action: Change IPSec UDP Key Material lifetime. |
/ikeless | TRUE | FALSE |
| 6815820: CRITICAL |
Cannot connect to AWS. Details : {0}. Recommended Action: Check AWS subscription. Go to the Audit Logs for more details. |
/orchestration/ awstgnm |
TRUE | TRUE |
| 6815822: CRITICAL |
Cannot Orchestrate association to AWS Transit Gateway. Recommended Action: Use AWS VTI Subnet Pool Dialog to configure the subnet pool. |
/orchestration/ awstgnm |
TRUE | TRUE |
| 6815825: CRITICAL |
Azure VWAN has duplicate ASN in the network. Details : {0}. Recommended Action: Use Azure Portal to assign unique ASNs to the VPN Sites. |
/orchestration/ azure |
TRUE | TRUE |
| 6815826: CRITICAL |
Orchestrator cannot register with HPE Aruba Networking EdgeConnect Cloud Portal. Recommended Action: Go to the HPE Aruba Networking EdgeConnect Cloud Portal and provide the portal host information. If the issue is not resolved, contact Support. |
/portal/ registration |
TRUE | TRUE |
| 6815827: CRITICAL |
Routing Segmentation is only supported in inline-router mode. Recommended Action: Check the deployment mode. |
/orchestrator/ routing Segmentation |
TRUE | TRUE |
| 6815828: CRITICAL |
Cannot Orchestrate association to AWS Transit Gateway. No primary interface configured for AWS TGNM Integration. Recommended Action: Configure the primary interfaces using Interface Label dialog in AWS Network Manager tab. |
/orchestration/ awstgnm |
TRUE | TRUE |
| 6815829: CRITICAL |
Cannot Orchestrate association to Azure VWAN. {0}. Recommended Action: Configure the interfaces using Interface Label dialog in Microsoft Azure Virtual WAN tab to proceed with the integration. |
/orchestration/ azure |
TRUE | TRUE |
| 6815830: CRITICAL |
Cannot create AWS Customer Gateway for Appliance {0} and label {1}. Reason - No valid interface public ip address found. Recommended Action: Ensure interface has public IP address. Refer to deployment page. No AWS Customer Gateway will be created with missing public IP. |
/orchestrator/ orchestration/ awstgnm |
TRUE | TRUE |
| 6815838: CRITICAL |
New IPSec UDP Key Material will be activated at {0}. Recommended Action: Ensure the appliance is reachable from Orchestrator. |
/orchestrator/ ikeless |
TRUE | TRUE |
| 6815839: CRITICAL |
Orchestrator is unable to rotate IPSec UDP key material. Recommended Action: Ensure the appliance is reachable from Orchestrator. |
/orchestrator/ ikeless |
TRUE | TRUE |
| 6815841: CRITICAL |
Unable to activate IPSec UDP Key Material. IPSec UDP tunnels will go down without activation. Recommended Action: Go to Audit Logs for more details. |
/orchestrator/ ikeless |
TRUE | TRUE |
| 6815842: CRITICAL |
Orchestration of the appliance is in-progress for more than 24 hrs. Recommended Action: Reboot Orchestrator. |
/orchestrator/ orchestration/ hung |
TRUE | TRUE |
| 6815843: CRITICAL |
Orchestrator needs to restart in order to reflect changes to custom cert settings. Recommended Action: Restart Orchestrator for new custom cert settings to take effect. |
/orchestrator/ customCerts |
TRUE | FALSE |
| 6815846: CRITICAL |
Cannot Orchestrate association of Remote Endpoints for {0} service. No primary/backup interfaces configured. Recommended Action: Configure the primary/backup interfaces using Interface Label dialog in Service Orchestration tab. |
/orchestration/ service Orchestration |
TRUE | TRUE |
| 6815850: CRITICAL |
Unable to establish connection with stats collector. Recommended Action: Unable to establish connection with stats collector. Check the status of Stats collector. It may not be running. |
/connectivity/ statsCollector |
TRUE | TRUE |
| 6815856: CRITICAL |
Cannot connect to HPE ANW Central. Details : {0}. Recommended Action: Check HPE ANW Central subscription. Go to the Audit Logs for more details. |
HPEAruba Networking Central |
TRUE | TRUE |
| 6815857: CRITICAL |
Orchestrator cannot register with the HPE Aruba Networking EdgeConnect Cloud Portal due to a network issue. Recommended Action: Check the HPE Aruba Networking EdgeConnect Cloud Portal connection and view the Audit Logs for more information. |
/portal/ connectivity |
TRUE | TRUE |
| 6815860: CRITICAL |
Cannot create Zscaler gre tunnels for Appliance {0} and label {1}. Reason - No valid interface public ip address found. Recommended Action: Ensure the interface has public IP address. Refer to the Deployment page. No Zscaler GRE tunnels will be created with missing public IP. |
/orchestrator/ orchestration/ zscaler |
TRUE | TRUE |
| 6815861: CRITICAL |
Unable to orchestrate Zscaler sub-location. The sum of all the sub-location bandwidths cannot be greater than location bandwidth. Recommended Action: Refer to the Audit Logs for more details : {0}. Reduce the sub-location bandwidth to be less than the location bandwidth. |
/orchestrator/ orchestration/ zscaler |
TRUE | TRUE |
| 6815862: CRITICAL |
Orchestrator cannot register secondary accounts with HPE Aruba Networking EdgeConnect Cloud Portal using the credentials provided. Recommended Action: Check secondary account information by going to HPE Aruba Networking EdgeConnect Cloud Portal. |
/portal/ registration |
TRUE | TRUE |
| 6815863: CRITICAL |
Secondary account(s) are not registered with HPE Aruba Networking EdgeConnect Cloud Portal. Details: {0}. Recommended Action: Check secondary account information by going to HPE Aruba Networking EdgeConnect Cloud Portal. |
/portal/ registration |
TRUE | TRUE |
| 6815867: CRITICAL |
Your EdgeConnect account {0} has licenses that expired on {1 date}. EdgeConnect devices in your network that are licensed with this account will stop passing traffic {2 date}. Recommended Action: Renew your license to avoid service interruption. |
/portal/license/ ec |
TRUE | TRUE |
| 6815871: CRITICAL |
Your WAN Optimization for account {0} expired on {1 date}. EdgeConnect devices in your network that are licensed with this account will stop using WAN Optimization on {2 date}. Recommended Action: Renew your WAN Optimization license to avoid service interruption. |
/portal/license/ ec |
TRUE | TRUE |
| 6815873: CRITICAL |
Failed to connect to Netskope. Recommended Action: Check Netskope subscription. |
/orchestration | TRUE | TRUE |
| 6815876: CRITICAL |
Cannot create Netskope gre tunnels for Appliance {0} and label {1}. Reason - No valid interface public ip address found. Recommended Action: Ensure interface has public IP address. Refer to the Deployment page. No Netskope GRE tunnels will be created with missing public IP. |
/orchestrator/ orchestration/ netskope |
TRUE | TRUE |
| 6815877: CRITICAL |
Appliance does not have geo location information. Netskope POPs cannot be auto discovered. No third-party tunnels will be built on this appliance. Recommended Action: Update appliance location in Configuration Wizard. |
/orchestrator/ orchestration/ netskope |
TRUE | FALSE |
| 6815886: CRITICAL |
Primary orchestrator is down. Recommended Action: [Deprecated alarm] |
/orchestrator- HA |
TRUE | TRUE |
| 6815891: CRITICAL |
Your AAS license expired on {0 date}. Recommended Action: Renew your license. Go to Audit Logs for more details. |
portal/license/ orchestrator |
TRUE | TRUE |
| 6815899: CRITICAL |
Failed to connect to HPE SSE Service. {0}. Recommended Action: Check HPE SSE subscription token key and expiration. |
/orchestration/ HPE SSE |
TRUE | TRUE |
| 6815914: CRITICAL |
Unable to connect to telemetry database. {0}. Recommended Action: Check telemetry database connection. Check Layer 3 and 4 (TCP port 8123) connectivity and authentication. |
/orchestration/ clickhouse |
TRUE | TRUE |
| 6815918: CRITICAL |
Cannot connect to Azure LAN. Details : {0}. Recommended Action: Check Azure LAN subscription. Go to Audit Logs for more details. |
/orchestration/ azure |
TRUE | TRUE |
| 6815747: MAJOR |
Appliance time is off from that of Orchestrator: {0}. Recommended Action: Check NTP settings for server consistency between appliances and Orchestrator. |
/orchestrator/ system/time |
FALSE | TRUE |
| 6815750: MAJOR |
Appliance is needed to reboot. Recommended Action: You can reboot the appliance under Appliance Reboot / Shutdown. |
/orchestrator/ system |
FALSE | TRUE |
| 6815751: MAJOR |
Appliance configuration changes have not been saved. Recommended Action: [Deprecated alarm] |
/orchestrator/ system |
FALSE | TRUE |
| 6815756: MAJOR |
Orchestrator portal account or license will expire on {0 date}. Recommended Action: Go to Licensing to provide the required information. |
/license | FALSE | TRUE |
| 6815761: MAJOR |
Orchestrator does not have a set email address for alarm delivery. Recommended Action: Go to Alarms to configure email recipient(s). |
/email/alarm | FALSE | FALSE |
| 6815762: MAJOR |
Orchestrator is using the default SMTP settings. Recommended Action: Go to SMTP Server Settings to configure SMTP server. |
/email/smtp | FALSE | FALSE |
| 6815776: MAJOR |
Orchestrator SMTP configuration is not set. If you do not set Orchestrator SMTP configuration, Orchestrator cannot notify users about alarms, send reports, or send password recovery emails. Recommended Action: Go to SMTP Server Settings to configure SMTP server. |
/email/smtp | FALSE | FALSE |
| 6815777: MAJOR |
Failed to deliver an email. Recommended Action: Check SMTP Server Settings. |
/email/smtp | FALSE | FALSE |
| 6815784: MAJOR |
HPE Aruba Networking diagnostic remote access has been enabled from {0} to {1}. Recommended Action: You can disable this in the Remote Access Settings. |
/system/ support |
FALSE | FALSE |
| 6815787: MAJOR |
Failed to apply appliance preconfiguration. Recommended Action: Applying preconfiguration to an appliance failed. Refer to the Preconfiguration tab and the Audit Logs for more details. |
/orchestrator/ pre configuration |
FALSE | TRUE |
| 6815788: MAJOR |
Changes done on the appliance will not be auto saved. Enable Auto Save in Orchestration Settings. Recommended Action: Enable Auto Save in Orchestration Settings. |
/orchestration | TRUE | FALSE |
| 6815807: MAJOR |
Duplicate ASNs found in the network for appliances - {0} with asn - {1}. Recommended Action: Assign unique ASNs for appliances using the Orchestrator BGP menu. |
/orchestrator/ orchestration/ bgp |
TRUE | TRUE |
| 6815809: MAJOR |
Invalid ASN found in the network for appliance - {0} with asn - {1}. Recommended Action: Assign unique ASN for the appliance using Orchestrator BGP menu. |
/orchestrator/ orchestration/ bgp |
TRUE | TRUE |
| 6815831: MAJOR |
Invalid ASN found in the network for appliance - {0} with asn - {1}. Amazon EC2 supports all 2-byte ASN numbers in the range of 1 - 65534, with the exception of 7224, which is reserved in the us-east-1 Region, and 9059, which is reserved in the eu-west-1 Region. Recommended Action: Assign unique ASN for the appliance using Orchestrator BGP menu. |
/orchestrator/ orchestration/ aws_tgnm |
TRUE | TRUE |
| 6815837: MAJOR |
Unable to assign ASN for the appliance. All ASNs from ASN Range are reserved. Recommended Action: Use BGP ASN Global Pool dialog to increase the scope of ASN Range. |
/orchestrator/ orchestration/ bgp |
FALSE | TRUE |
| 6815844: MAJOR |
Source Interface is not configured in the IP SLA configuration on Zscaler Internet Access. Recommended Action: Configure the Source Interface for the Zscaler IP SLA configuration. |
/orchestration/ zscaler/ipsla |
TRUE | TRUE |
| 6815847: MAJOR |
Failed to initialize connection with ClearPass Policy Manager. {0}. Recommended Action: Check ClearPass Policy Manager server parameters. |
/orchestration/ clearPass |
TRUE | TRUE |
| 6815848: MAJOR |
Failed to connect with ClearPass Policy Manager service endpoints. {0}. Recommended Action: Check the Audit Logs for details. |
/orchestration/ clearPass |
TRUE | TRUE |
| 6815859: MAJOR |
This appliance does not support Stats Collection. Recommended Action: Upgrade the appliance. |
/orchestrator/ statsCollector |
TRUE | TRUE |
| 6815878: MAJOR |
Source Interface is not configured in the IP SLA configuration on Netskope. Recommended Action: Configure the Source Interface for the Netskope IP SLA configuration. |
/orchestration/ netskope/ipsla |
TRUE | TRUE |
| 6815887: MAJOR |
Backup orchestrator is down. Recommended Action: Check backup orchestrator status. |
/orchestrator- HA |
TRUE | TRUE |
| 6815892: MAJOR |
Out of compliance AAS licensing: {0}. Recommended Action: Go to the Audit Logs for more details. |
/portal/ license/ orchestrator |
FALSE | TRUE |
| 6815898: MAJOR |
Appliance does not currently support Air-Gap mode. Recommended Action: Upgrade the appliance to ECOS 9.4.2.0 or above. |
/orchestrator/ airGap |
TRUE | FALSE |
| 6815903: MAJOR |
Missing AWS vpc and route table association for the appliance. Unable to automate AWS lan integration. Recommended Action: In Orchestrator, go to Orchestrator > Cloud Services > AWS Network Manager, click AWS Resources, and then configure AWS VPC and AWS Route Table for the appliance. |
/orchestrator/ orchestration/ aws_tgnm |
FALSE | TRUE |
| 6815904: MAJOR |
Missing AWS transit gateway cidr block for [{0}]. Unable to automate AWS lan integration for appliance {1}. Recommended Action: Use the AWS VPC console to configure the transit gateway CIDR block and force refresh in Orchestrator - AWS Network Manager Subscription UI. |
/orchestrator/ orchestration/ aws_tgnm |
FALSE | TRUE |
| 6815905: MAJOR |
Missing edge connect segment association for label {0}. Unable to automate AWS lan integration for appliance {1}. Recommended Action: In Orchestrator, go to Orchestrator > Cloud Services > AWS Network Manager, click Tunnel Settings, and then associate segments to LAN labels. |
/orchestration/ aws_tgnm |
TRUE | TRUE |
| 6815906: MAJOR |
Missing edge connect segment{0} association to aws tgw route table. Unable to automate AWS lan integration for appliance {1}. Recommended Action: In Orchestrator, go to Orchestrator > Cloud Services > AWS Network Manager, click Segment & Zone/Role Association, and then associate EdgeConnect segments to AWS transit gateway route tables. |
/orchestration/ aws_tgnm |
TRUE | TRUE |
| 6815907: MAJOR |
Unable to orchestrate appliance[{0}] associated to aws transit gateway[{1}] due to aws region mismatch [Error Code: InvalidTransitGatewayID.NotFound].Details - edge connect region [{2}] and transit gateway region [{3}]. Recommended Action: Associate appliance to transit gateway within the same region as EdgeConnect using Orchestrator AWS Network Manager Association UI. |
/orchestrator/ orchestration/ aws_tgnm |
FALSE | TRUE |
| 6815908: MAJOR |
Unable to orchestrate appliance[{0}] associated to aws core network edge[{1}] due to aws region mismatch [Error Code: InvalidEdgeLocation.NotFound].Details - edge connect region [{2}] and core network edge location [{3}]. Recommended Action: Associate appliance to core network edge location within the same region as EdgeConnect using Orchestrator AWS Network Manager Association UI. |
/orchestrator/ orchestration/ aws_tgnm |
FALSE | TRUE |
| 6815909: MAJOR |
HPE SSE Tunnels has exceeded SSE tenant quota. Recommended Action: Increase the HPE SSE tenant size if more tunnels are needed. |
/orchestration/ HPE SSE |
TRUE | TRUE |
| 6815913: MAJOR |
Your SAML Identity Provider certificate for {0} has expired. Recommended Action: Get the latest certificate from your Identity Provider and update it in Orchestrator SAML configuration. |
/orchestrator/ samlIdpCerts |
FALSE | TRUE |
| 6815919: MAJOR |
Cipher profile changes could not be applied. {0}. Recommended Action: Validate your active cipher profile against the appliance and make sure it is supported. |
/orchestrator/ orchestration/ cipherProfile |
TRUE | TRUE |
| 6815753: MINOR |
There were {0} failed attempts to login over last 5 minutes. Recommended Action: Go to the Audit Logs for details on failed login attempts. Review usernames for validity and adherence to password policies. |
/authentication | FALSE | TRUE |
| 6815775: MINOR |
Backup configuration not set. Recommended Action: Go to Backup to schedule backup or back up now. |
/system/backup | FALSE | TRUE |
| 6815835: MINOR |
Appliance does not have any wan labels required for Azure VWAN Orchestration. No third party tunnels will be built on this appliance. Recommended Action: Use appliance deployment to assign at least one WAN label matching Azure VWAN Interface Label list. |
/orchestrator/ orchestration/ azure |
TRUE | TRUE |
| 6815836: MINOR |
Appliance does not have any wan labels required for AWS TGNM Orchestration. No third party tunnels will be built on this appliance. Recommended Action: Use appliance deployment to assign at least one WAN label matching AWS Interface Label list. |
/orchestrator/ orchestration/ aws_tgnm |
TRUE | TRUE |
| 6815845: MINOR |
Appliance does not have any wan labels required for {0} Orchestration. No third party tunnels will be built on this appliance. Recommended Action: Use appliance deployment to assign at least one wan label matching Third party service Interface Label list. |
/orchestrator/ orchestration/ service Orchestration |
TRUE | TRUE |
| 6815854: MINOR |
HA Sync Communication is not enabled for {0} appliances. Recommended Action: Follow release documents to enable this feature. |
/orchestration/ deployment |
FALSE | TRUE |
| 6815911: MINOR |
The data of one or more tables might be leaking into their defaultPartitions. Recommended Action: Go to the Partition Management tab and verify that all rows are eventually moved out from the defaultPartition (i.e., Rows=0). Contact support if the issue persists. |
/orchestrator/ Partition Management |
TRUE | TRUE |
| 6815916: MINOR |
Appliance does not have any lan labels required for Azure LAN Orchestration. Recommended Action: Use appliance deployment to assign at least one LAN label matching Azure cloud gateways LAN Interface Label list. |
/orchestrator/ orchestration/ azure |
TRUE | TRUE |
| 6815755: WARNING |
Orchestrator portal account or license will expire on {0 date}. Recommended Action: Go to Licensing to provide the required information. |
/license | FALSE | TRUE |
| 6815759: WARNING |
Orchestrator cannot connect to HPE Aruba Networking EdgeConnect Cloud Portal using HTTPS. Recommended Action: Check portal connection and refer to the Audit Logs for more information. |
/portal/ connectivity |
TRUE | TRUE |
| 6815763: WARNING |
CPX license will expire on {0 date}. Recommended Action: [Deprecated alarm] Renew your license to avoid service interruption. |
/portal/license/ cpx |
FALSE | TRUE |
| 6815764: WARNING |
CPX license will expire on {0 date}. Recommended Action: [Deprecated alarm] Renew your license to avoid service interruption. |
/portal/license/ cpx |
FALSE | TRUE |
| 6815765: WARNING |
CPX license will expire on {0 date}. Recommended Action: [Deprecated alarm] Renew your license to avoid service interruption. |
/portal/license/ cpx |
FALSE | TRUE |
| 6815767: WARNING |
Your EdgeConnect account has licenses that will expire in {0} day(s). EdgeConnect devices in your network will stop passing traffic on {1 date}. Recommended Action: Renew your license to avoid service interruption. |
/portal/license/ ec |
FALSE | TRUE |
| 6815768: WARNING |
Your EdgeConnect account has licenses that will expire in {0} day(s). EdgeConnect devices in your network will stop passing traffic on {1 date}. Recommended Action: Renew your license to avoid service interruption. |
/portal/license/ ec |
FALSE | TRUE |
| 6815769: WARNING |
Your EdgeConnect account has licenses that will expire in {0} day(s). EdgeConnect devices in your network will stop passing traffic on {1 date}. Recommended Action: Renew your license to avoid service interruption. |
/portal/license/ ec |
FALSE | TRUE |
| 6815771: WARNING |
SaaS license will expire on {0 date}. Recommended Action: Renew your license to avoid service interruption. |
/portal/license/ saas |
FALSE | TRUE |
| 6815772: WARNING |
SaaS license will expire on {0 date}. Recommended Action: Renew your license to avoid service interruption. |
/portal/license/ saas |
FALSE | TRUE |
| 6815773: WARNING |
SaaS license will expire on {0 date}. Recommended Action: Renew your license to avoid service interruption. |
/portal/license/ saas |
FALSE | TRUE |
| 6815783: WARNING |
Orchestrator deployment size has exceeded the recommended level of {0} appliances. Recommended Action: Contact Support to increase the allocation of cloud resources. |
/system/ database |
FALSE | TRUE |
| 6815785: WARNING |
Some appliances are paused from orchestration. Recommended Action: Go to Pause Orchestration List to see detail. |
/orchestration | TRUE | FALSE |
| 6815786: WARNING |
Apply Overlays is currently disabled. Recommended Action: Enable Apply Overlays in Orchestration Settings. |
/orchestration | TRUE | FALSE |
| 6815789: WARNING |
Apply Templates is currently disabled. Recommended Action: Enable Apply Templates in Orchestration Settings. |
/orchestration/ templates |
TRUE | FALSE |
| 6815793: WARNING |
Your WAN Optimization will expire in {0} day(s). EdgeConnect devices in your network will stop using WAN Optimization on {1 date}. Recommended Action: Renew your WAN Optimization license to avoid service interruption. |
/portal/license/ ec |
FALSE | TRUE |
| 6815794: WARNING |
Your WAN Optimization will expire in {0} day(s). EdgeConnect devices in your network will stop using WAN Optimization on {1 date}. Recommended Action: Renew your WAN Optimization license to avoid service interruption. |
/portal/license/ ec |
FALSE | TRUE |
| 6815795: WARNING |
Your WAN Optimization will expire in {0} day(s). EdgeConnect devices in your network will stop using WAN Optimization on {1 date}. Recommended Action: Renew your WAN Optimization license to avoid service interruption. |
/portal/license/ ec |
FALSE | TRUE |
| 6815798: WARNING |
Paused stats collection for some of the appliances. Recommended Action: Go to Statistics Retention to resume stats collection. |
/orchestration | FALSE | TRUE |
| 6815806: WARNING |
Stats Collection is paused and will resume after Orchestrator backup is completed. Recommended Action: Go to Scheduled & Historical Jobs to view the status of the backup process. Open a support case if this alarm persists more than 12 hours. |
/orchestration/ backup |
FALSE | TRUE |
| 6815811: WARNING |
Zscaler Internet Access orchestration is paused. Recommended Action: Go to Zscaler Internet Access to resume orchestration. |
/orchestration/ zscaler |
FALSE | FALSE |
| 6815812: WARNING |
Microsoft Azure Virtual WAN orchestration is paused. Recommended Action: Go to Microsoft Azure Virtual WAN to resume orchestration. |
/orchestration/ azure |
FALSE | FALSE |
| 6815813: WARNING |
Could not allocate IPs from Loopback Pool {0}. Recommended Action: Change Loopback pool with enough IPs in Loopback Orchestration tag. |
/orchestrator/ orchestration |
FALSE | TRUE |
| 6815814: WARNING |
Loss and Latency metrics are available for IPSLA monitors with appliance version later than {0}. Recommended Action: Upgrade appliance to enable loss and latency metrics for IP SLA. |
/orchestrator/ orchestration/ ipsla |
FALSE | TRUE |
| 6815816: WARNING |
Best internet breakout is configured in overlay, but appliance does not support this feature (Deprecated). Recommended Action: Check the overlay configuration or upgrade the appliance. |
/orchestrator/ orchestration/ overlays |
TRUE | FALSE |
| 6815818: WARNING |
Shell access settings are different on the appliance than on Orchestrator. Recommended Action: Reconcile shell access setting. Matching Orchestrator policy with appliance setting is recommended. |
/orchestrator/ orchestration/ shellAccess Setting |
FALSE | TRUE |
| 6815819: WARNING |
Connection not established for websocket receiver: {0}. Recommended Action: Check WebSocket receiver configuration. |
remoteLogWeb Socket |
FALSE | TRUE |
| 6815821: WARNING |
AWS Transit Gateway Network Manager orchestration is paused. Recommended Action: Go to AWS Network Manager to resume orchestration. |
/orchestration/ aws_tgnm |
FALSE | FALSE |
| 6815823: WARNING |
A new maintenance alert was received from HPE Aruba Networking. Recommended Action: Review the maintenance alert, then open a support case if you have any questions regarding the maintenance activity. |
/portal/ SilverPeak Maintenance |
TRUE | TRUE |
| 6815824: WARNING |
Stats Collection is lagging behind. Recommended Action: Open a support case if this alarm persists more than 24 hours. |
/orchestrator/ statistics |
FALSE | TRUE |
| 6815832: WARNING |
Inter-Segment Routing & DNAT rules have duplicate ip address with existing Inter-Segment Routing & DNAT Exceptions rules. Recommended Action: Check the Inter-Segment Routing & DNAT rules and solve the duplicate IP address. |
/orchestrator/ routing Segmentation |
TRUE | TRUE |
| 6815840: WARNING |
This appliance does not support Routing Segmentation. Recommended Action: Upgrade the appliance. |
/orchestrator/ routing Segmentation |
TRUE | TRUE |
| 6815849: WARNING |
ClearPass Policy Manager session paused. Recommended Action: Go to ClearPass Policy Manager to resume orchestration. |
/orchestration/ clearPass |
FALSE | FALSE |
| 6815851: WARNING |
Stats Collection is paused and will resume after backup is completed. Recommended Action: [Deprecated alarm] |
/orchestration/ backup |
FALSE | TRUE |
| 6815855: WARNING |
Some of the HPE ANW Central sites don’t have lat and lon. Site Name : {0}. Recommended Action: Orchestrator cannot derive a lat and lon from the site address information configured in HPE ANW Central. |
/HPEAruba Networking Central/ HPEAruba Networking Central |
FALSE | TRUE |
| 6815864: WARNING |
Your EdgeConnect account {0} has licenses that will expire in {1} day(s). EdgeConnect devices in your network that are licensed with this account will stop passing traffic on {2 date}. Recommended Action: Renew your license to avoid service interruption. |
/portal/license/ ec |
FALSE | TRUE |
| 6815865: WARNING |
Your EdgeConnect account {0} has licenses that will expire in {1} day(s). EdgeConnect devices in your network that are licensed with this account will stop passing traffic on {2 date}. Recommended Action: Renew your license to avoid service interruption. |
/portal/license/ ec |
FALSE | TRUE |
| 6815866: WARNING |
Your EdgeConnect account {0} has licenses that will expire in {1} day(s). EdgeConnect devices in your network that are licensed with this account will stop passing traffic on {2 date}. Recommended Action: Renew your license to avoid service interruption. |
/portal/license/ ec |
FALSE | TRUE |
| 6815868: WARNING |
Your WAN Optimization for account {0} will expire in {1} day(s). EdgeConnect devices in your network that are licensed with this account will stop using WAN Optimization on {2 date}. Recommended Action: Renew your WAN Optimization license to avoid service interruption. |
/portal/license/ ec |
FALSE | TRUE |
| 6815869: WARNING |
Your WAN Optimization for account {0} will expire in {1} day(s). EdgeConnect devices in your network that are licensed with this account will stop using WAN Optimization on {2 date}. Recommended Action: Renew your WAN Optimization license to avoid service interruption. |
/portal/license/ ec |
FALSE | TRUE |
| 6815870: WARNING |
Your WAN Optimization for account {0} will expire in {1} day(s). EdgeConnect devices in your network that are licensed with this account will stop using WAN Optimization on {2 date}. Recommended Action: Renew your WAN Optimization license to avoid service interruption. |
/portal/license/ ec |
FALSE | TRUE |
| 6815872: WARNING |
EdgeHA peer {0} is configured on a different account. EdgeHA Group reporting may be inaccurate unless the appliances are on the same metered account. (Deprecated) Recommended Action: [Deprecated alarm] Check the accounts that the EdgeHA peers are registered to in the Licenses tab. |
/orchestrator/ system/ deployment/ha |
FALSE | TRUE |
| 6815874: WARNING |
Netskope orchestration is paused. Recommended Action: Go to Netskope to resume orchestration. |
/orchestration/ netskope |
FALSE | FALSE |
| 6815888: WARNING |
Your AAS license expires on {0 date} (in {1} days). Recommended Action: [Deprecated alarm] |
/portal/license/ orchestrator |
FALSE | TRUE |
| 6815889: WARNING |
Your AAS license expires on {0 date} (in {1} days). Recommended Action: [Deprecated alarm] |
/portal/license/ orchestrator |
FALSE | TRUE |
| 6815890: WARNING |
Your AAS license expires on {0 date} (in {1} days). Recommended Action: [Deprecated alarm] |
/portal/license/ orchestrator |
FALSE | TRUE |
| 6815894: WARNING |
Non Edge HA Profile active on Edge HA Site/Cluster ({0}). Recommended Action: Map the Edge HA Profile to this site/cluster. |
/orchestration/ clusterManager |
TRUE | FALSE |
| 6815895: WARNING |
Edge HA Profile active on Non Edge HA Site/Cluster ({0}). Recommended Action: Map the Non Edge HA Profile to this site/cluster. |
/orchestration/ clusterManager |
TRUE | FALSE |
| 6815896: WARNING |
Interface ({0}) not available in appliance ({1}). Recommended Action: Configure deployment or profile to continue. |
/orchestration/ clusterManager |
TRUE | FALSE |
| 6815900: WARNING |
HPE SSE orchestration is paused. Recommended Action: Go to HPE SSE to resume orchestration. |
/orchestrator/ HPE SSE |
FALSE | FALSE |
| 6815901: WARNING |
Unable to orchestrate edgeHA appliances. EdgeHA {0} site name is not configured. Recommended Action: Configure same site name for both EdgeHA appliances. |
/orchestrator/ HPE SSE/ha |
FALSE | TRUE |
| 6815902: WARNING |
Unable to orchestrate edgeHA appliances. EdgeHA peer {0} has a different site name from its peer. Recommended Action: Configure same site name for both EdgeHA appliances. |
/orchestrator/ HPE SSE/ha |
FALSE | TRUE |
| 6815910: WARNING |
One or more certificates have expired or are due to expire within the next 60 days. Recommended Action: Go to Custom CA Certificate Trust Store to update the certificate. |
/orchestrator/ customCerts |
TRUE | FALSE |
| 6815912: WARNING |
Your SAML Identity Provider certificate for {0} will expire on {1}. Recommended Action: Get the latest certificate from your Identity Provider and update it in Orchestrator SAML configuration. |
/orchestrator/ samlIdpCerts |
FALSE | TRUE |
| 6815915: WARNING |
Azure Network Manager orchestration is paused. Recommended Action: Go to Azure Network Manager Cloud Gateways to resume orchestration. |
/orchestration/ azureLan |
FALSE | FALSE |
| 6815917: WARNING |
Either labels are not configured in appliance or WAN side interfaces / labels are not permitted. Recommended Action: Configure deployment or profile to continue. |
/orchestration/ clusterManager |
TRUE | FALSE |
Equipment
System Type 100 (Orchestrator); Source Type 3 (Equipment)
| Alarm ID: Severity | Alarm Text | Source | Service Affecting | Clearable |
|---|---|---|---|---|
| 6750234: CRITICAL |
Failed to get database connection. Details: {0}. Recommended Action: Reserve required Memory and CPU. |
/system/ resource |
TRUE | TRUE |
| 6750209: MAJOR |
Disk partition {0} is dangerously full - {1}% used. Recommended Action: Go to Server Information to see detailed disk usage. |
/system/disk | FALSE | FALSE |
| 6750208: WARNING |
Disk partition {0} is more than {1}% used. Recommended Action: Go to Server Information to see detailed disk usage. |
/system/disk | FALSE | FALSE |