In today's rapidly changing IT environment, staying updated with the latest advancements is crucial, especially with Juniper's Mist AI releasing updates every two weeks. In this third instalment of our exploration into Mist's capabilities, we highlight some often-overlooked new features that can streamline your network management and elevate the user experience.
Read On
Simplified Operations
Juniper Mist cloud for United Arab Emirates
A Juniper Mist cloud instance is available for United Arab Emirates. This cloud instance is named EMEA 03. For additional information on EMEA 03, see Cloud Instances and Juniper Mist Firewall Ports and IP Addresses for Firewall Configuration.
Note that EMEA 03 does not support the following services and features:
Premium Analytics
Location SDK and Marvis Client
Juniper Apstra Cloud Services integration
You can now integrate Juniper Apstra Cloud Services with Juniper Mist. Juniper Apstra Cloud Services is a SaaS-based Day 2 observability platform for Data Centre managed by Apstra. It can receive, process, and perform root cause analysis of networks events from an Apstra-managed DC, thereby enabling network administrators to proactively respond to Data Centre events. It leverages the AIOps capability of Marvis to analyse the events information received from the Apstra-managed Data Centres.
When integrated with Mist, Juniper Apstra Cloud Services enables you to view the total number of Data Centre events in the Data Centre/Application category of the Marvis Actions view. Also, you can launch the Juniper Apstra Cloud Services application from the Marvis Actions page and view more detailed information about those Data Centre events by clicking the Data Centre/Application category. This way, network administrators get complete visibility into the operations of the entire enterprise network, comprising the campus, branch, and Data Centre networks.
Wired Assurance
Privacy policy acceptance on guest portal
You can now configure the guest portal with an option for users to read and accept a privacy policy, in addition to the terms of service.
Configuration involves selecting the ‘Require acceptance of Privacy Terms’ check box on the Customise Layout tab on the guest portal configuration screen, accessed from the WLAN creation page. In addition, you need to click the Privacy Terms hyperlink and add the privacy policy content.
Wired Assurance
Update to Table Capacity in Switch Insights
The Table Capacity section in Switch Insights now displays the metrics as cards.
You can click the Search Entries button under each metric to open a shell view in a new window where you can search for entries after specifying filters. You also have the option to refresh and clear the entries displayed. Clicking Refresh on the upper right of the window provides a continuous display of the entry every three seconds for a total of 30 seconds. To stop the refresh before the 30-second timer is complete, close the window or click another table. Clicking the Clear Entry button, which is available only for MAC and ARP table, clears the respective entry from the table. You also have the option to clear the buffer on the screen by clicking Clear Screen at the lower left of the window.
Clicking the Search Entries button takes you to the following page:
The following metrics are available:
MAC Address Table: Displays the percentage of the MAC address table capacity used.
ARP Table: Displays the percentage of Address Resolution Protocol (ARP) table capacity used.
Route Summary: Displays the percentage of routing table capacity used.
EVPN Database: This card is available for switches that are part of an EVPN topology. This card does not display the utilization percentage or number of entries.
Update to Switch Health SLE
We have updated the classifiers and sub-classifiers under the Switch Health SLE. The Switch Health SLE now has a new classifier called Capacity. This classifier provides insights into the switch health issues caused by issues pertaining to MAC Address table, ARP table, and Route table.
IPv6 Underlay Support for Campus Fabric
Campus fabric topologies in Mist now support IPv6 in the underlay. The following topology types support IPv6:
EVPN Multihoming
Campus Fabric Core-Distribution (ERB)
Campus Fabric IP Clos
You can enable IPv6 from the Topology tab of the Campus Fabric configuration. If you choose IPv6 in the underlay, you must additionally specify an IPv6 loopback interface subnet, which is used to autoconfigure IPv6 loopback interface on each device in the fabric.
Port mirroring in switch rules
You can configure port mirroring as part of the switch rules in the Select Switches Configuration section of a switch template at the organisation level (Organisation > Switch Templates), site level (Site > Switch Configuration), and device level. This feature allows you to dynamically apply port mirroring on switches based on the parameters such as the switch role, switch name, and switch model as specified in the rules. This feature is typically used for monitoring and troubleshooting. When port mirroring is enabled, the switch sends a copy of the network packet from the mirrored ports to the monitor port.
The rules under Select Switches Configuration take precedence over the global Port Mirroring configuration. Also, if the global port mirroring is configured, it is displayed as the “default” rule in the Select Switches configuration section and is displayed as read-only. Any modifications to be made to this port mirroring configuration needs to be done at the global level.
In the port mirroring configuration, you can specify the following:
Input: The source (an interface or network) of the traffic to be monitored. Along with the input, you can specify whether you want Mist to monitor the ingress traffic or the egress traffic for an interface. If you want both ingress and egress traffic to be monitored, add two input entries for the same interface – one with the ingress flag and the other with the egress flag.
Output: The destination interface to which you want to mirror the traffic. You cannot specify the same interface or network in both the input and output fields.
Option to clone switch rules in a switch template
You can now quickly create a switch rule entry in the Select Switches section of a switch template by cloning an existing rule. You just need to click the copy icon, name the new rule, and then click Clone.
In today’s evolving threat landscape, staying ahead of cyberattacks requires more than traditional security. Cato Networks elevates Extended Detection and Response (XDR) by integrating it into their SASE platform, delivering unified threat detection and proactive defence. Discover how this...