Visualize AWS Cloud WAN core networks - AWS Network Manager

Visualize AWS Cloud WAN core networks

The AWS Cloud WAN console provides a dashboard where you can visualize and monitor your global network. It includes information about the resources in your global network, their geographic locations, the network topology, and the logical network associations.

Overview

On the AWS Cloud WAN console Overview page, you can view the following information:

  • Your core network resource inventory.

  • The location of core network edges and transit gateways within your global network, displayed as icons on a map. Connections are shown between resources.

  • Throughput information between core network edges.

  • The number of core network attachments per edge, shown as a stacked column chart. You can filter this chart to display specific attachment types.

Use the following legend to understand the icons on your core network map:

Icon Description

                                    The icon for edge locations.

Edge locations

The total number of edge locations in your core network. The number is shown in the Inventory section and as an icon on the map for each edge location in your core network.


                                    The icon for segments.
Segments

The total number of segments in your core network. The number is shown in the Inventory section and as an icon on the map for each section in your core network.


                                    The icon for devices.
Devices

The total number of devices in your core network. The number is shown in the Inventory section and as an icon on the map for each device in your core network.


                                    The icon for sites.
Sites

The total number of sites in your core network. The number is shown in the Inventory section and as an icon on the map for each site in your core network.

To view the core network map
  1. Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/.

  2. Under Connectivity, choose Global Networks.

  3. On the Global networks page, choose the global network ID.

  4. In the navigation pane, choose Core network.

  5. The Overview page opens by default.

  6. The Inventory section shows information about your core network: the number of Edge locations in your core network, the number of Segments, the number of Devices, and the number of Sites.

  7. The Geography section displays a world map with the locations of your resources.

  8. The Throughput section shows throughput information between the core network edges.

    • (Optional) Metrics and events use the default time set up in the CloudWatch Events event. To set a custom time frame, choose Custom and then choose a Relative or Absolute time, and then choose if you want to see that date range in UTC or the edge location's Local time zone.

      Choose Add to dashboard to add this metric to your CloudWatch dashboard. For more information about using CloudWatch dashboards, see Using Amazon CloudWatch Dashboards in the Amazon CloudWatch User Guide.

      Note

      The Add to dashboard option only works if your registered transit gateway is in the US West (Oregon) Region.

  9. The Attachment section displays information about each attachment for each core network edge location. Choose the Filter by attachment type dropdown list. By default all attachment types are chosen. Clear the check box for any attachment type that you don't want to include in the graph. You can filter by any combination of:

    • VPN

    • VPC

    • Connect

Details

The Details page provides information about your core network resources.

To view your core network details
  1. Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/.

  2. Under Connectivity, choose Global Networks.

  3. On the Global networks page, choose the global network ID.

  4. In the navigation pane, choose Core network.

  5. The Overview page opens by default.

  6. Choose the Details tab.

    The Details page shows the following information:

    • Name — The name that you gave to the core network when you created it.

    • State — The current state of the core network. Possible states are Pending, Available, Deleting, and Updating.

    • Core network ARN — The unique Amazon Resource Number (ARN) of the core network.

    • AWS account — The AWS account that's associated with the core network.

    • Description — The description given to the core network when it was created.

    • Tags — The key-value tags that were associated with the core network when it was created.

  7. (Optional) Change the core network Description. Choose Edit in the Core network details section, and then in the Description field, replace the current description with a new description. Then choose Edit core network to save your change.

  8. (Optional) Edit, remove or add Tags. In the Tags section choose Edit tags and do any of the following. When finished, choose Edit core network to return to the Details tab.

    1. Choose Add tag to add a new tag. Add Key and Value pairs to help identify this resource. You can add multiple tags.

    2. Choose Remove tag to delete any tag. You are not prompted to confirm the deletion.

    3. To edit an existing tag, enter the new Key or Value into the applicable field.

Sharing

On the Sharing page, you can view your currently shared network resources. You can also use AWS Resource Access Manager (RAM) to share a core network across accounts or across your organization in AWS organizations.

To view shared network resources
  1. Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/.

  2. Under Connectivity, choose Global Networks.

  3. On the Global networks page, choose the global network ID.

  4. In the navigation pane, choose Core network.

  5. The Overview page opens by default.

  6. Choose the Sharing tab.

    The Resource sharing page displays a list of the resources that you're currently sharing.

  7. If you want to share a network resource. See Share a core network for the steps to share a network resource.

Topology graph

On the Topology graph page, you can view a topology diagram of your core network that includes core network and transit gateway networks. It includes information about AWS Regions, core network edges, segments, VPCs, VPNs, and Connect attachments. Icons represent specific resource type and lines represent connections between resources. The line colors represent the state of the connection between AWS and the on-premises resources. You can filter the topology view to show specific segment, and exclude AWS Regions and labels that are shown.

Use the following legend to understand the icons on your core network topology graph:

Icon Description

                                    The icon for core network edges.

Core network edge

The core network edges in your network.


                                    The icon for VPC attachments.
VPC

The VPC attachments in your core network.


                                    The icon for Connect attachments.
Connect

The Connect attachments in your core network.


                                    The icon for segments.
Segment

The segments in your core network.


                                    The icon for devices.
Devices

The devices in your core network.


                                    The icon for VPN attachments.
VPN

The VPN attachments in your core network.

To view the core network topology graph
  1. Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/.

  2. Under Connectivity, choose Global Networks.

  3. On the Global networks page, choose the global network ID.

  4. In the navigation pane, choose Core network.

  5. The Overview page opens by default.

  6. Choose the Topology graph tab.

    A topological representation of your global network is displayed. Connect lines are created between your resources.

  7. (Optional) Filter the information that is displayed in the topology by making choices for any combination of the following:

    • Label — Turns resource labels on or off.

    • Segment — Turns the display segments on or off.

    • Cluster — Turns the display of a Cluster on or off.

  8. On the graph, choose any of your network resources to view details about that resource. A panel opens on the right-hand side of the graph.

    In this example, the development segment is chosen in the graph. The panel displays Details about the segment. Choose the Routes tab to view the segment routes.

    
                        AWS Cloud WAN core network topology

    Depending on the resource chosen, the following information is available in the panel:

    • Core network edgeDetails, Metrics, and Events. See AWS Cloud WAN Events and metrics for more information about the types of metrics and events that can be tracked.

    • VPC, Connect, and VPNDetails and Events.

    • SegmentDetails and Routes.

    • Device — Device Details.

Topology tree

The Topology tree page shows a logical diagram of your core network. Here you can view the network tree for your core network. By default, the page displays all resources in your core network and the logical relationships between them. You can filter the network tree to show specific on-premises resource types only. For example, the preceding image shows sites and devices, and excludes customer gateways. You can choose any of the nodes to view information about the specific resource it represents. The line colors represent the state of the relationships between AWS and the on-premises resources.

To view the topology tree
  1. Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/.

  2. Under Connectivity, choose Global Networks.

  3. On the Global networks page, choose the global network ID.

  4. In the navigation pane, choose Core network.

  5. The Overview page opens by default.

  6. Choose the Topology tree tab.

    A logical representation of your global network is displayed, along with the details of your global network configuration.

  7. (Optional) Filter the information that is displayed in the topology by making choices for any combination of the following:

    • Site — Turns the display of sites on or off.

    • Device — Turns the display of devices on or off.

    • Customer gateway — Turns the display of customer gateways on or off.

  8. On the tree, choose the label of any of your network resources to view details about that resource. A panel opens on the right-hand side of the tree.

    In this example, an edge location, us-west-1, is chosen in the tree. The panel displays Edge location details. Choose any of the tabs in the panel to view more information about that edge location.

    
                        AWS Cloud WAN topology tree

    Depending on the resource chosen, the following information is available in the panel:

    • Attachments — Attachment Details and Events. See AWS Cloud WAN Events and metrics for more information about the types of events that can be tracked.

    • DevicesDevice details.

    • SitesSite details.

    • Not associated — There is no information to return.

Logical

The Logical page shows a logical representation of the segments in your core network. You can filter by a specific source or destination segment, or by a source or destination attachment. You can view the network tree for your global network, which includes core network and transit gateway networks. By default, the page displays all resources in your global network and the logical relationships between them. You can filter the network tree to show specific on-premises resource types only. For example, the preceding image shows sites and devices, and excludes customer gateways. You can choose any of the nodes to view information about the specific resource that it represents. The line colors represent the state of the relationships between AWS and any on-premises resources.

Use the following legend to understand the icons on your core network logical graph:

Icon Description

                                    The icon for VPC attachments.
VPC

The VPC attachments in your core network.


                                    The icon for Connect attachments.
Connect

The Connect attachments in your core network.


                                    The icon for segments.
Segment

The segments in your core network.


                                    The icon for VPN attachments.
VPN

The VPN attachments in your core network.

To access the logical diagram for a core network
  1. Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/.

  2. Under Connectivity, choose Global Networks.

  3. On the Global networks page, choose the global network ID.

  4. In the navigation pane, choose Core network.

  5. The Overview page opens by default.

  6. Choose the Logical tab.

    By default, all segments and all attachments are displayed in the logical representation.

  7. (Optional) Do any of the following:

    • From the Source segment dropdown list, choose a segment from the core network.

    • From the Source attachment dropdown list, choose an attachment from the source segment.

    • From the Destination segment dropdown list, choose a destination segment from the core network.

    • From the Destination attachment dropdown list, choose an attachment from the destination segment.

    The logical graph updates based on your choices. Choose Clear to reset the page.

  8. (Optional) Filter the information that is displayed in the topology by making choices for any combination of the following:

    • Attachments — Turns the display of attachments on or off.

    • Show unassociated attachments — Turns the display of unassociated attachments on or off.

  9. On the graph, choose any of your network resources to view details about that resource. A panel opens on the right-hand side of the graph.

    In this example, a segment, segment-b, is chosen in the graph. The panel displays Segment details.

    
                        AWS Cloud WAN logical diagram for a core network.

    Depending on the resource chosen, the following information is available in the panel:

    • VPC, Connect, and VPNDetails and Events. See AWS Cloud WAN Events and metrics for more information about the types of events that can be tracked.

    • SegmentSegment details and Routes.

Routes

On the Routes page, you can search for and view core network routes. On this page, you can refine results to show routes for specific segments and edge locations.

To access core network routes
  1. Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/.

  2. Under Connectivity, choose Global Networks.

  3. On the Global networks page, choose the global network ID.

  4. In the navigation pane, choose Core network.

  5. The Overview page opens by default.

  6. Choose the Routes tab.

  7. In the Routes filter section, do the following:

    • From the Segment dropdown list, choose a core network segment to filter on.

    • From the Edge location dropdown list, choose a core network edge location to filter on.

  8. The Routes table updates to display the routes for the chosen segment and edge location and includes the following:

    • CIDR — All CIDRs used by this route.

    • Destinations — All destination addresses.

    • Route types — The type of route. This will be either PROPAGATED or STATIC.

    • Route state — The current state of a route. This will be either ACTIVE or BLACKHOLE.

Events

You can monitor your core network using CloudWatch Events, which delivers a near-real-time stream of system events that describe changes in your resources. Using simple rules that you can quickly set up, you can match events and route them to one or more target functions or streams. For more information about CloudWatch Events, see the Amazon CloudWatch Events User Guide.

Prerequisites: Before monitoring CloudWatch Events you must first onboard CloudWatch Logs Insights. This is a one-time process that needs to be completed at the account level. After this is set up for your core network, you'll be able to see event updates on this page. For more information on AWS Cloud WAN events, see AWS Cloud WAN Events and metrics.

To access core network events
  1. Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/.

  2. Under Connectivity, choose Global Networks.

  3. On the Global networks page, choose the global network ID.

  4. In the navigation pane, choose Core network.

  5. The Overview page opens by default.

  6. Choose the Events tab.

    The Events section updates with the CloudWatch events that occurred during the selected time frame.

  7. (Optional) Metrics and events use the default time set up in the CloudWatch Events event. To set a custom time frame, choose Custom and then choose a Relative or Absolute time, and then choose if you want to see that date range in UTC or the edge location's Local time zone.

    Choose Add to dashboard to add this metric to your CloudWatch dashboard. For more information about using CloudWatch dashboards, see Using Amazon CloudWatch Dashboards in the Amazon CloudWatch User Guide.

    Note

    The Add to dashboard option only works if your registered transit gateway is in the US West (Oregon) Region.

  8. In the following example, the Events section shows two events occurring within a custom 15-month time frame:

    • A change set was executed successfully for a core network policy update.

    • An edge location was added to the core network.

    
                        The Events section in the AWS Management Console.

    For a full list of tracked events, see Monitor with CloudWatch Events.

Monitoring

You can monitor your core network by using Amazon CloudWatch, which collects raw data and processes it into readable, near-real-time metrics. These statistics are kept for 15 months, so that you can access historical information and gain a better perspective on how your network is performing. You can also set alarms that watch for certain thresholds, and send notifications or take actions when those thresholds are met. For more information, see the Amazon CloudWatch Events User Guide.

On the monitoring page you can view usage metrics for your core network, filtering by specific edge locations.

To access core network monitoring details
  1. Access the Network Manager console at https://console.aws.amazon.com/networkmanager/home/.

  2. Under Connectivity, choose Global Networks.

  3. On the Global networks page, choose the global network ID.

  4. In the navigation pane, choose Core network.

  5. The Overview page opens by default.

  6. Choose the Monitoring tab.

  7. From the Core network edge dropdown list, choose the core network edge that you want to monitor.

  8. (Optional) Metrics and events use the default time set up in the CloudWatch Events event. To set a custom time frame, choose Custom and then choose a Relative or Absolute time, and then choose if you want to see that date range in UTC or the edge location's Local time zone.

    Choose Add to dashboard to add this metric to your CloudWatch dashboard. For more information about using CloudWatch dashboards, see Using Amazon CloudWatch Dashboards in the Amazon CloudWatch User Guide.

    Note

    The Add to dashboard option only works if your registered transit gateway is in the US West (Oregon) Region.

  9. The page updates the following monitors:

    • Bytes in

    • Bytes out

    • Bytes dropped – black hole

    • Bytes dropped – no route

    • Packets in

    • Packets out

    • Packets dropped – black hole

    • Packets dropped – no route