Skip to main content

Cisco Firewall

Overview

Cisco Systems Firewall, the powerful and versatile firewall solutions by Cisco Systems, seamlessly integrate with Motadata AIOps to provide comprehensive monitoring and management capabilities. With this integration, organizations gain real-time visibility into the performance and security of their Cisco Systems Firewalls. Monitor critical firewall metrics such as traffic patterns, connection status, and threat activity to ensure a secure and protected network environment.

Prerequisites

Refer Adding network devices for monitoring to understand the prerequisites necessary for monitoring a network device.

List of Supported KPIs

MetricsDescriptionType
ping.min.latency.msMinimum latency (in milliseconds) observed during pingCount
ping.received.packetsNumber of packets received during pingCount
ping.lost.packetsNumber of packets lost during pingCount
ping.max.latency.msMaximum latency (in milliseconds) observed during pingCount
object.targetTarget object identifierString
ping.sent.packetsNumber of packets sent during pingCount
ping.packet.lost.percentPercentage of packet loss during pingPercent
ping.latency.msAverage latency (in milliseconds) observed during pingCount
system.oidSystem Object IdentifierString
started.time.secUptime in Seconds for the monitorCount
started.timeUptime of the monitorString
object.nameName of the monitorString
system.locationLocation of the monitorString
system.descriptionDescription of the monitorString
correlation.metricsCorrelation metrics between network connectionsString
network.connection.tcp.connectionsNumber of TCP connectionsCount
network.connection.udp.connectionsNumber of UDP connectionsCount
network.connection.udp.error.segmentsNumber of UDP error segmentsCount
network.connection.tcp.error.segmentsNumber of TCP error segmentsCount
network.connection.tcp.retransmitted.segmentsNumber of TCP retransmitted segmentsCount
destination.ipDestination IP addressString
destination.portDestination port numberCount
network.connection.protocolProtocol used for network connectionCount
network.connection.stateState of the network connectionString
source.ipSource IP addressString
source.portSource port numberCount
interface.sent.discard.packetsNumber of discarded packets sent on the interfaceCount
interface.in.packetsNumber of incoming packets on the interfaceCount
interface.packetsNumber of packets on the interfaceCount
interface.error.packetsNumber of error packets on the interfaceCount
interface.sent.error.packetsNumber of error packets sent on the interfaceCount
interface.received.discard.packetsNumber of discarded packets received on the interfaceCount
interface.received.octetsNumber of octets received on the interfaceCount
interface.bit.typeBit type of the interfaceCount
statusStatus of the interfaceString
interface.out.packetsNumber of outgoing packets on the interfaceCount
interface.operational.statusOperational status of the interfaceString
interface.admin.statusAdmin status of the interfaceCount
interface.sent.octetsNumber of octets sent on the interfaceCount
interface.last.changeLast change of the interfaceString
interface.received.error.packetsNumber of error packets received on the interfaceCount
interface.discard.packetsNumber of discarded packets on the interfaceCount
started.timeUptime of the interfaceString
started.time.secUptime in seconds of the interfaceString
cisco.asa.active.remote.connections.rateThe rate of active remote connections on the Cisco ASA firewall.Count (Rate)
cisco.asa.active.remote.user.sessions.rateThe rate of active remote user sessions on the Cisco ASA firewall.Count (Rate)
cisco.asa.active.remote.group.sessionsThe number of active remote group sessions on the Cisco ASA firewall.Count
cisco.asa.remote.in.packets.rateThe rate of incoming packets on the Cisco ASA firewall.Count (Rate)
cisco.asa.remote.out.packets.rateThe rate of outgoing packets on the Cisco ASA firewall.Count (Rate)
cisco.asa.remote.received.dropped.packetsThe number of received packets that were dropped on the Cisco ASA firewall.Count
cisco.asa.remote.sent.dropped.packetsThe number of sent packets that were dropped on the Cisco ASA firewall.Count
cisco.asa.active.ipsec.sessionsThe number of active IPsec sessions on the Cisco ASA firewall.Count
cisco.asa.active.lan.sessionsThe number of active LAN sessions on the Cisco ASA firewall.Count
cisco.asa.active.load.balancer.sessionsThe number of active load balancer sessions on the Cisco ASA firewall.Count
cisco.asa.active.svc.sessionsThe number of active service (SVC) sessions on the Cisco ASA firewall.Count
cisco.asa.active.web.vpn.sessionsThe number of active web VPN sessions on the Cisco ASA firewall.Count
tunnel.life.time.secThe lifetime duration of the tunnel in seconds.Count
tunnel.active.time.secThe time duration that the tunnel has been active in seconds.Count
tunnelThe identifier or name of the tunnel.String
tunnel.source.ip.addressThe source IP address of the tunnel.String
tunnel.out.traffic.bytes.rateThe rate of outgoing traffic in bytes per second through the tunnel.Count
tunnel.in.traffic.bytes.rateThe rate of incoming traffic in bytes per second through the tunnel.Count
tunnel.destination.ip.addressThe destination IP address of the tunnel.String
tunnel.nameThe name or label assigned to the tunnel.String
tunnel.statusThe current status of the tunnel.String
remote.vpn.active.connectionsThe number of active VPN connections from remote clients.Count
remote.vpn.client.in.traffic.bytes.rateThe incoming traffic rate in bytes per second for VPN clients.Count
remote.vpn.client.out.traffic.bytes.rateThe outgoing traffic rate in bytes per second for VPN clients.Count
remote.vpn.client.protocolThe communication protocol used by the VPN client.String
remote.vpn.client.encryption.algorithmThe encryption algorithm used by the VPN client.String
remote.vpn.clientThe identifier or name of the remote VPN client.String
remote.vpn.client.duration.secThe duration of the VPN client connection in seconds.Count
remote.vpn.client.app.versionThe version of the VPN client application.String
remote.vpn.client.durationThe duration of the VPN client connection.String
remote.vpn.client.statusThe status of the VPN client connection.String
remote.vpn.user.groupThe user group associated with the remote VPN client.String
remote.vpn.client.appThe application name of the remote VPN client.String
ipsla.nameThe name of the IP SLA (Service Level Agreement) test.String
ipsla.latency.msThe latency value in milliseconds for the IP SLA test.Count
ipslaThe identifier or name of the IP SLA configuration.String
ipsla.statusThe status of the IP SLA test (e.g., active, inactive).String
ipsla.typeThe type or category of the IP SLA test.String
ipsla.availabilityThe availability status of the IP SLA test.String