Interface Flapping (Spine to Superspine Interfaces) Probe

The Interface Flapping (Spine to Superspine Interfaces) probe determines if spine to superspine interfaces are flapping and raises anomalies accordingly.

Probe Overview

If the number of times that the operational state of any spine-to-superspine interface changes is greater than a specified number (Threshold) over a specified amount of time (Duration), then the interface is flapping and an anomaly is raised. Also, if the percentage of flapping interfaces exceeds the specified percentage (Max Flapping Interfaces Percentage), then an anomaly is raised for that device.

Probe Parameters

When you instantiate the predefined Interface Flapping (Spine to Superspine Interfaces) probe you can customize the above mentioned parameters or leave default values as is, as shown in the screenshot below.

Configuration interface for setting up a probe to detect interface flapping between spine and superspine devices. Threshold set to 5 flaps, max flapping interfaces at 10 percent, duration 1 minute. Create button finalizes setup.

Probe Stages

The following stages are used in the interface flapping probe for all spine to superspine interfaces:

Hierarchical flow diagram of network monitoring focusing on spine fabric interface status and flapping issues.

The sections below discuss the stages in detail.

Spine Fabric Interface Status Processor

Spine Fabric Interface Status Service Collector (Input)

We begin with the source processor (no inputs), which is a Service Collector configured to collect interface status telemetry for all spine to superspine interfaces, as shown in the screenshot below.

Configuration interface for querying spine fabric interface status in a network tool. Key components: processor "spine fab int status", graph query with system nodes, telemetry data collection, and advanced options like query expansion.

Spine Interface Status (Output)

The following screenshot is an example of the details that are collected from this processor.

Table showing network interface status for spine systems. All connections are up, with details on system ID, local and remote interfaces, remote system labels, and status update times.

Spine Fabric Interface Status History Processor

Spine Fabric Interface Status History Accumulate (Input)

For this stage, the Accumulate processor is configured for collecting spine fabric interface status history as shown in the screenshot below.

Configuration interface for processor spine fabric interface status history with inputs: input name in, stage name spine_if_status, column name value; processing details: total duration 1 minute, max samples 6; advanced settings: graph query empty, enable streaming false.

Spine Fabric Interface Status Accumulate (Output)

Table showing network spine fabric interface status. Columns include System ID, Interface, Remote Interface, Remote System Label, Count, Value, and Updated. All connections are marked as up and updated recently.

Spine Fabric Interface Flapping Processor

Spine Fabric Interface Flapping (Input)

For this stage, the Range processor is configured for collecting [spine fabric interface status history as shown in the screenshot below. The defaults are shown in the screenshot below.]

Configuration interface for monitoring spine fabric interface flapping. Highlights input source spine_fab_int_status_accumulate, anomalous range ≥ 6 for sample_count, and anomaly settings including metric logging retention of 1 day and streaming disabled.

Interface Status Flapping (Output)

Monitoring dashboard displaying network device interface status and anomaly detection. Table shows system ID, interface, remote interface, remote system label, anomaly status as No anomaly, value as false, and last updated time as 14 minutes ago. Data source labeled Real Time with Anomalies Only filter not selected.

Percentage Flapping per Device Interfaces Processor

Percentage Flapping per Device Interfaces (Input)

For this stage, the Match Percentage processor is configured for collecting [spine fabric interface status history as shown in the screenshot below. The defaults are shown in the screenshot below.]

Configuration interface for processor percentage flapping per device interfaces, showing inputs, processing, and advanced sections.

Flapping Fabric Interface Percentage (Output)

Dashboard displaying flapping_fab_int_perc metric: spine switch IDs, event count, gauge at 0 percent, last updated 21 mins ago, page 1 of 4.

System Anomalous Flapping Processor

System Anomalous Flapping (Input)

For this stage, the Range processor is configured for collecting [spine fabric interface status history as shown in the screenshot below. The defaults are shown in the screenshot below.]

Configuration interface for processor named system anomalous flapping in a monitoring system. Inputs: in, flapping_fab_int_perc, value. Anomalous range: ≥ 11. Raise anomaly: True. Anomaly metric logging: False.

System Flapping (Output)

Dashboard showing system_flapping status monitoring for spine3, spine1, spine2, and spine4. All systems indicate No anomaly with 11 percent metric. Data updated 24 minutes ago.