Access transit gateway dashboards using AWS Network Manager
The AWS Network Manager console provides a group of dashboards for AWS Global Networks for Transit Gateways, allowing you to view and monitor your transit gateways. Dashboards include information about network resources, their geographic locations, the network topology, and the logical network associations. If you want to view the dashboards for all transit gateways in your global network, see Access transit gateway network dashboards using AWS Network Manager.
Overview
To access the transit gateway resource inventory
Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/
. -
Under Connectivity choose Global Networks.
-
On the Global networks page, choose the global network ID.
In the navigation pane, choose Transit Gateway networks.
The Transit gateways page opens, showing a list of your transit gateways.
Choose the ID of the transit gateway you want to see more information about.
-
On the Overview page you can view the following information:
-
Your transit gateway details.
-
The transit gateway attachments, along with information about each of those attachments.
Use the following legend to understand the icons on this page:
Icon Description VPC
The total number of VPC attachments in your transit gateway network.
VPN The total number of VPN attachments in your transit gateway.
Direct Connect Gateway The total number of Direct Connect gateways attached to your transit gateway.
Connect The total number of Connect peer attachments in your transit gateway.
Transit Gateway The total number of Transit Gateways.
-
-
The Details section shows information about your global network: the transit gateway ID, its Name, the Region where it's located, and the current State of the gateway.
Note
To see details about a different transit gateway, choose the dropdown list and then choose the transit gateway.
-
The Transit Gateway attachment section displays details about your attachments: the Transit Gateway ID, the Resource ID, and the Resource Type.
-
The VPNs section displays details about your VPN attachments: the VPN ID, the Device using the VPN attachment, and any Link associated with the attachment.
-
The Connect peers section displays details about your Connect peer attachments: the name of the Connect peer and the Device using that Connect peer.
-
The Network events summary section shows the network events for that transit gateway. You must first onboard CloudWatch Events to see network events. Choose Onboard CloudWatch Insights to enable viewing network events.
-
(Optional) Metrics and events use the default time set up in the CloudWatch Events event. To set a custom time frame, choose Custom and then choose a Relative or Absolute time, and then choose if you want to see that date range in UTC or the edge location's Local time zone.
Choose Add to dashboard to add this metric to your CloudWatch dashboard. For more information about using CloudWatch dashboards, see Using Amazon CloudWatch Dashboards in the Amazon CloudWatch User Guide.
Note
The Add to dashboard option only works if your registered transit gateway is in the US West (Oregon) Region.
Topology tree
The Topology tree page shows a logical diagram of your transit gateways.
To view a transit gateway topology tree
Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/
. -
Under Connectivity choose Global Networks.
-
On the Global networks page, choose the global network ID.
In the navigation pane, choose Transit Gateway networks.
The Transit gateways page opens, showing a list of your transit gateways.
Choose the ID of the transit gateway you want to see more information about.
-
Choose the Topology tree tab.
-
By default, the Topology tree page displays all Sites, Devices, and Customer Gateways of your transit gateway and the logical relationships between them. You can filter the network tree to show specific resources types only to view information about the specific resource it represents. The line colors represent the state of the relationships between AWS and the on-premises resources.
-
In the Topology tree, choose a resource. The resource details display in the right pane.
-
If your global network is part of a multi-account environment, you can choose a Resource ID from a member account and view details about that attachment.
Viewing details about a member's resources prompts you to switch Network Manager console roles to the member account where the resource is located.
Note
Switching roles logs you out of the current account and into the delegated administrator account associated with the attachment.
To view resource details in a member account
-
When choosing a link to a member account, you're prompted to switch console roles:
-
The following values populate the Switch Role screen. Keep the following values:
-
Account — The account ID for the member account that the resource is associated with.
-
Role —
IAMRoleForAWSNetworkManagerCrossAccountResourceAccess
is the required IAM role for accessing resources across multiple accounts.
-
-
Choose Switch Role.
You're logged out of your current account and into that member account. A new tab opens showing the details of the resource. For example, if you choose a VPC resource, the VPC resource page opens for the member account that owns the resource.
-
Depending on the delegated permission level assigned to the delegated administrators and the management account when trusted access was enabled, you can either view information (read-only permission) about the resource or add/modify (administrator permission) the resource.
-
To return to the original member account, choose one of the following:
-
On your current tab, choose the browser Back button. On the Switch Role login screen, enter the Account ID of the account you want, and then choose Switch Role.
-
If you haven't closed it, choose the tab for the account you've just logged out of, and then choose Reload.
-
Events
Track your transit gateway events using CloudWatch Events that delivers a near-real-time stream of system events that describe changes in your resources. Using simple rules that you can quickly set up, you can match events and route them to one or more target functions or streams. For more information about CloudWatch Events, see the Amazon CloudWatch Events User Guide.
To track transit gateway events
Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/
. -
Under Connectivity, choose Global Networks.
-
On the Global networks page, choose the global network ID.
In the navigation pane, choose Transit Gateway network.
The Overview page opens by default, showing information about your transit gateways.
-
Choose the Events tab.
The Events section updates with the CloudWatch transit events that occurred during the time frame.
(Optional) Metrics and events use the default time set up in the CloudWatch Events event. To set a custom time frame, choose Custom and then choose a Relative or Absolute time, and then choose if you want to see that date range in UTC or the edge location's Local time zone.
Choose Add to dashboard to add this metric to your CloudWatch dashboard. For more information about using CloudWatch dashboards, see Using Amazon CloudWatch Dashboards in the Amazon CloudWatch User Guide.
Note
The Add to dashboard option only works if your registered transit gateway is in the US West (Oregon) Region.
Monitoring
You can monitor your transit gateways using Amazon CloudWatch which collects raw data and processes it into readable, near-real-time metrics. These statistics are kept for 15 months, so that you can access historical information and gain a better perspective on how your network is performing. You can also set alarms that watch for certain thresholds, and send notifications or take actions when those thresholds are met. For more information, see the Amazon CloudWatch Events User Guide.
On the monitoring page you can view usage metrics for your transit gateways, filtering by specific transit gateways.
To view transit monitoring details
Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/
. -
Under Connectivity choose Global Networks.
-
On the Global networks page, choose the global network ID.
In the navigation pane, choose Transit Gateway networks.
The Transit gateways page opens, showing a list of your transit gateways.
Choose the ID of the transit gateway you want to see more information about.
-
Choose the Monitoring tab.
-
If you want to choose a different transit gateway to monitor, choose that transit gateway from the dropdown list.
-
(Optional) Metrics and events use the default time set up in the CloudWatch Events event. To set a custom time frame, choose Custom and then choose a Relative or Absolute time, and then choose if you want to see that date range in UTC or the edge location's Local time zone.
Choose Add to dashboard to add this metric to your CloudWatch dashboard. For more information about using CloudWatch dashboards, see Using Amazon CloudWatch Dashboards in the Amazon CloudWatch User Guide.
Note
The Add to dashboard option only works if your registered transit gateway is in the US West (Oregon) Region.
-
The page updates the following transit gateway monitors:
-
Bytes in
-
Bytes out
-
Bytes dropped – black hole
-
Bytes dropped – no route
-
Packets in
-
Packets out
-
Packets dropped – black hole
-
Packets dropped – no route
-
-
(Optional) Choose Add to dashboard to add this metric to your CloudWatch dashboard. For more information about using CloudWatch dashboards, see Using Amazon CloudWatch Dashboards in the Amazon CloudWatchUser Guide.
Note
The Add to dashboard option only works if your registered transit gateway is in the US West (Oregon) Region.
On-premises associations
The On-premises page displays information about your on-premises devices for this transit gateway. On this page you can associate or disassociate any of your devices..
To view on-premises associations
Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/
. -
Under Connectivity choose Global Networks.
-
On the Global networks page, choose the global network ID.
In the navigation pane, choose Transit Gateway networks.
The Transit gateways page opens, showing a list of your transit gateways.
Choose the ID of the transit gateway you want to see more information about.
-
Choose the On-premises associations tab.
-
The Transit Gateway on-premises association page displays the Customer gateway, Device, Link, and State of the transit gateway.
To associate a device
-
Choose the Customer gateway you want to associate a device with.
-
Choose Associate.
-
On the Edit on-premises association page, choose the Device and optional Link for the association.
-
Choose Edit on-premises association.
To disassociate an on-premises device
-
Choose the Customer gateway you want to disassociate.
-
Choose Disassociate.
Connect peer associations
The Connect peer associations page displays information about your Connect peers for this transit gateway. You can also disassociate any of your devices.
To access Connect peer associations
Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/
. -
Under Connectivity choose Global Networks.
-
On the Global networks page, choose the global network ID.
In the navigation pane, choose Transit Gateway networks.
The Transit gateways page opens, showing a list of your transit gateways.
Choose the ID of the transit gateway you want to see more information about.
-
Choose the Connect peer associations tab.
-
The Connect peer associations page displays the Connect peer, Device, Link, and State of the transit gateway.
To disassociate a Connect peer device
-
Choose the Connect peer you want to disassociate.
-
Choose Disassociate.
Tags
The Tags page displays the tags associated with the transit gateway. You can edit any of your transit gateway tags.
Note
Editing transit gateway tags is done through the Amazon Virtual Private Cloud console at console.aws.amazon.com/vpc/home
To view and edit transit gateway tags
Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/
. -
Under Connectivity choose Global Networks.
-
On the Global networks page, choose the global network ID.
In the navigation pane, choose Transit Gateway networks.
The Transit gateways page opens, showing a list of your transit gateways.
Choose the ID of the transit gateway you want to see more information about.
-
Choose the Tags tab.
-
A list of the transit gateway key-value tags displays.
-
To add, edit, or delete any tags, choose Edit tags to open the Amazon Virtual Private Cloud console at console.aws.amazon.com/vpc/home
. See Add or edit tags for a transit gateway in the AWS Transit Gateway User Guide for the steps to add or edit transit gateway tags.