- Written by Harry Dhillon
- Posted on March 18, 2026
- Updated on March 18, 2026
- 315 Views
Beginning with DMF version 8.9, the action keyword is required to add or modify actions within a managed service. This keyword is a mandatory token across all managed service submodes, providing a consistent way to define service behaviors.
- Written by Sunil Kumar
- Posted on March 18, 2026
- Updated on March 18, 2026
- 295 Views
The Rule Groups Dashboard aligns with modern DMF User Interface (UI) standards. This view maintains full functional parity with the previous version while delivering a consistent and unified user experience.
- Written by Noah Tinker
- Posted on March 13, 2026
- Updated on March 17, 2026
- 319 Views
The SHA-256 Support for SNMPv3 feature implements 256-bit encryption for SNMPv3 interactions on the DMF Controller and managed devices. Configuring the SHA-256 authentication protocol option enhances the User-based Security Model (USM) by enforcing 256-bit encryption standards.
- Written by Harry Dhillon
- Posted on May 2, 2025
- Updated on May 2, 2025
- 2983 Views
With the DANZ Monitoring Fabric (DMF) 8.7 release, a DMF Controller will allow multiple managed services to share a delivery interface with an IP address, commonly called an L3 delivery interface. These interfaces redirect the packets processed by managed services to the required tool nodes for further analysis. Sharing an L3 delivery interface is useful when applying different actions to a packet that otherwise cannot be chained together in one managed service when sending it to the same destination.
- Written by Harry Dhillon
- Posted on April 24, 2025
- Updated on April 24, 2025
- 5433 Views
With the DANZ Monitoring Fabric (DMF) 8.7 release, a DMF Controller will allow sharing of managed services utilizing L3 delivery interfaces (e.g., NetFlow, IPFIX, app ID, etc.) across multiple policies. In prior releases, DMF did not support managed service sharing because the L3 delivery interface was an optional setting in a policy configuration. However, sharing is now supported because the managed service configuration must now specify the L3 delivery interface.
- Written by Yuta Higuchi
- Posted on April 23, 2025
- Updated on April 23, 2025
- 3179 Views
This feature supports enabling and configuring SSH host key algorithms. Along with existing SSH crypto configurations, this enables Secure Shell Daemon (sshd) configurations managed by DMF not to use SHA-1-based algorithms. DMF imposes the default SSHd configuration in the absence of configured SSH host key algorithms and MACs, which will not include SHA-1 algorithms by default.
- Written by Tomasz Pazurkiewicz
- Posted on March 18, 2026
- Updated on March 18, 2026
- 309 Views
The feature exposes metrics and health status of storage devices on controllers and all managed nodes, but not switches.
- Written by Tomasz Pazurkiewicz
- Posted on September 18, 2025
- Updated on September 18, 2025
- 1711 Views
The feature exposes metrics and health status of storage devices on controllers and all managed nodes, but not switches. Metrics and health status are updated every minute and exposed through the Telemetry collector
- Written by Siddharth Karandikar
- Posted on September 18, 2025
- Updated on September 18, 2025
- 1735 Views
This feature adds support for the following IPFIX keys TCP Source Port, TCP Destination Port, UDP Source Port, UDP Destination Port
- Written by Vishrant Vasavada
- Posted on April 24, 2025
- Updated on April 24, 2025
- 3025 Views
DMF 8.7.0 provides support for Management Redundancy on an Extensible Operating System (EOS) Fixed System Chassis. It provides a method to enable redundant active/active connectivity on the management IP address for a Danz Monitoring Fabric (DMF) switch in a fixed system chassis using an out-of-band management port and a front-panel port on the switch.
- Written by Matthieu Simon
- Posted on September 19, 2025
- Updated on September 19, 2025
- 1695 Views
This document describes a new feature of Arista Analytics that can process sFlow® records containing IP packets encapsulated in additional protocol headers.
- Written by Sean McDonagh
- Posted on August 21, 2023
- Updated on April 28, 2025
- 8564 Views
Use this feature to configure Access Control Lists (ACLs) on a managed device that do not directly reflect the ACLs configured on the controller. Specifically, a user can override the user-configured ACLs on the controller (generally inherited by the managed devices) so that ACLs allowing specific types of traffic from the controller-only are pushed to managed devices.
- Written by Robert Ling
- Posted on March 18, 2026
- Updated on March 18, 2026
- 294 Views
Often, there is a need to accept IPFIX/NFv9 and NFv5 traffic arriving at ports other than the standard 4739 and 2055 ports, respectively. To address this need, DMF allows the following non-standard ports to forward traffic to their standard ports on the physical IP of the Analytics Node (AN) and the cluster's Virtual IP (VIP).
- Written by Robert Ling
- Posted on September 18, 2025
- Updated on September 18, 2025
- 1717 Views
Often, there is a need to accept IPFIX/NFv9 and NFv5 traffic arriving at ports other than the standard 4739 and 2055 ports, respectively. To address this need, DMF allows the following non-standard ports to forward traffic to their standard ports on the physical IP of the Analytics Node (AN) and the cluster's Virtual IP (VIP).
- Written by Sean McDonagh
- Posted on August 17, 2023
- Updated on August 17, 2023
- 8609 Views
The system reinstall feature allows users to reinstall EOS on an Arista switch. A system reinstall is accomplished by removing the local startup-config/zerotouch-config on the switch so the DMF controller no longer manages it. Rebooting the switch restarts the Arista native ZTP process and requests a fresh image from the controller.
- Written by Anurag Chowdhary
- Posted on March 13, 2026
- Updated on March 13, 2026
- 313 Views
The Switch-less Service Node (SN) feature enables the direct installation of managed services on a service node, eliminating the requirement for an associated policy or connected switch. This capability supports deployments that are independent of the full Network Packet Broker (NPB) switching infrastructure. Existing workflows support the direct installation of managed services, such as filtering and deduplication, on the SN.
- Written by Wilson Ng
- Posted on May 2, 2025
- Updated on May 2, 2025
- 3013 Views
On platforms with multiple FAPs (e.g., chassis), hashing parameters (hash seed, polynomial, etc.) must be synced across all the FAPs when symmetric hashing is enabled to ensure hashing behavior is consistent for any given ingress port. The fix applies to all DMF Sand platforms running EOS.
- Written by John Schimmel
- Posted on March 13, 2026
- Updated on March 13, 2026
- 320 Views
The Dapper action, derived from Brown University research, identifies TCP session issues by measuring specific connection attributes. This analysis determines whether performance degradation stems from the client, server, or network devices.
- Written by Robert Ling
- Posted on May 2, 2025
- Updated on May 5, 2025
- 3044 Views
DMF 8.7.0 introduces an updated dashboard for analyzing TCP Flows from Dapper. The DMF Analytics Node (AN) displays TCP Window, Network Loss, Zero Window, RTT vs Sender Reaction Time for flows or select Flow from TCP Health Flows.
- Written by Kiran Poola
- Posted on April 24, 2025
- Updated on April 29, 2025
- 5210 Views
The following describes LAG hashing for L2GRE and VXLAN transit traffic on Arista 7050X4 platforms: For L2GRE transit traffic, LAG hashing uses only the encapsulated (inner) packet header fields. There is no option to use underlay (outer) packet header fields. When the encapsulated packet is IP, the system uses the IP parameters configured with hash ipv4 or hash ipv6 for hashing.
- Written by Nick Wang
- Posted on April 24, 2025
- Updated on April 29, 2025
- 5402 Views
UDF is an important DMF feature that matches customized fields in packet payloads for network traffic filtering on the Arista 7050X4 Series. Only supports IPv4 traffic UDF filtering, Maximum UDFs per rule: 6 UDFs.
- Written by Robert Ling
- Posted on May 5, 2025
- Updated on May 5, 2025
- 2953 Views
DMF 8.7.0 introduces an updated dashboard for viewing tunnel traffic. The widgets display traffic distribution by tunnel type using sFlow traffic categorized by a combination of Ethernet Type, Protocol, and L4 ports. Recognized tunnels include:
- Written by Kinjal Bhattacharyya
- Posted on March 18, 2026
- Updated on March 18, 2026
- 310 Views
The Command-API (CAPI) client on the Controller utilizes port 443 for EOS connectivity.
- Written by John Schimmel
- Posted on September 22, 2025
- Updated on September 24, 2025
- 1666 Views
The Arista Service Node (SN) provides specialized packet processing within the DANZ Monitoring Fabric (DMF), which is not easily accomplished within the CPU on a switch. The SN provides a packet processing pipeline tied to a physical interface, reading packets and writing results from the same interface.
- Written by Junaid Zulfiqar
- Posted on August 18, 2023
- Updated on August 18, 2023
- 8866 Views
This document describes the usage of wildcard tunnels for VMware vCenter monitoring. The current implementation of VMware vCenter creates one tunnel interface from every ESXi host to DMF.
