Cisco Secure Access Help

PDF

Cisco Secure Access Help

Experience Insights Overview

Want to summarize with AI?

Log in

Provides reference information about Experience Insights Overview in Cisco Secure Access. The Overview page provides a centralized view of your network's health and performance, featuring insights into both common SaaS applications and the status of your registered endpoints.


The Overview page provides a centralized view of your network's health and performance, featuring insights into both common SaaS applications and the status of your registered endpoints.

Navigate to Experience Insights > Overview.

SaaS Applications

View the availability and performance of SaaS applications as traffic flows from the Secure Access cloud. These are common SaaS applications used by today's enterprises, based on research by Cisco.

And performance of SaaS applications as traffic flows from the Secure Access cloud. These are common SaaS applications used by today's enterprises, based on research by Cisco.

Interact with the SaaS Applications Carousel

  • In the SaaS applications drop-down menu, select a region. For more information, see Secure Access Regions.

  • Click the arrow to scroll to the right.

  • Click View all SaaS applications to navigate to the Applications page. For more information, see View SaaS Application Performance.

Endpoint Tests

View the health of your synthetic endpoints tests that monitor the connectivity from endpoints to various destinations. These tests help assess network performance and identify issues affecting user experience.

  • Tests Sources: Both Secure Access created tests and ThousandEyes created tests appear together in this carousel, providing a unified view of endpoint test health.

  • Display Order: Displays up to five applications at a time. Tests are shown in order from the worst performing (unhealthy) to healthy, allowing you to quickly focus on the worst-performing tests.

  • An endpoint is considered healthy or unhealthy based on the application score for a specific test. For more information, see Experience score.

Endpoint tests display the health of five applications at a time, ordered from the worst performing to healthiest.

Interact with the Endpoint Tests Carousel

Navigation: Clicking on a specific test widget in the carousel takes you directly to that endpoint test’s results page to see the metrics and diagnostics for that test.

Experience Score Map

The Experience score map visually represents all endpoints installed and registered to your integrated ThousandEyes account groups. For instructions on how to install and register your endpoints, see ThousandEyes Account Management in Experience Insights.

This map offers real-time insights into the geographic distribution and health status of your endpoints. An endpoint's status is determined by experience score that is calculated by Segment Thresholds: Agent, Connection, Gateway, Proxy, VPN, and Application.

Continuously monitoring endpoint health can serve as a starting point for investigating issues.

For example:

  • If a specific endpoint is consistently unhealthy, examine its hardware and network connection for issues.

  • If all endpoints in a region are unhealthy, a service outage might be the cause.

The Experience score map visually represents all endpoints installed and registered to your integrated ThousandEyes account.

Interact with the Endpoints Map

  • View Location Details: Hover over a location marker to view the number of healthy, at-risk, and unhealthy endpoints for that location.

    Note
    Endpoint locations are not the same as the location of your VPN or ZTA connection, but the geolocation of the endpoint itself. If an endpoint cannot be collected, ThousandEyes detects the public IP of the endpoint which may be based on VPN or ZTA or URC and selects the closest Secure Access region you are connected to.
  • Explore Endpoint Concentration: Click a number on the map to see the concentration of endpoints for an area. Continue zooming in on the map until you reach the exact endpoint location.

Enabling location services for the ThousandEyes endpoint agent on each endpoint ensures accurate identification and display of the endpoint, along with correct BSSID and SSID information, enabling filters and true location visualization critical for resolving end-user network issues.

For more information on how to enable location services for ThousandEyes Endpoint Agent, see Enabling Location Services for Endpoint Agent Wi-Fi Reporting for MacOS and Endpoint Agent Wi-Fi Reporting on Windows 11 (24H2) and Later for Windows.

Filters

  • All: View all running endpoint tests or select a specific test to view performance issues. The experience score is calculated based on the selected test filter. When All is selected, it reflects all tests currently running on the endpoints. When a specific test is selected, it reflects only the endpoints running that test and their connectivity to that destination.

  • All Account Groups: View all account groups or select a specific group to view the health status of the endpoints. (This option only appears when you have multiple ThousandEyes account groups selected in Account Management.)

  • Search by users or devices: Enter a first name and last name, ThousandEyes username, or device name into the search bar and press Enter to find matches. If there's an exact match, the endpoint table will update to show only that single endpoint. If your entry is not an exact match, the search will fail, and no endpoints will display in the table.

General

  • Unhealthy only: Select to view the locations where endpoints have an unhealthy experience score.

  • Location: View endpoints by country or drill down to specific cities.

  • OS type: View operating system by type and version.

Network Access

  • Gateway: View the local network gateway or the router that provides connectivity for the endpoint.

  • SSID (Service Set Identifier): View the Wi-Fi network name end users see.

  • BSSID (Basic Service Set Identifier): View the unique identifier for a specific wireless access point broadcasting for the Wi-Fi network.

Health Summary

Health Summary provides a high-level overview to see what is healthy or unhealthy in a selected location. The section shows the top five unhealthy locations for each segment. Health Summary includes the following components:

  • Endpoints: Shows the health of an endpoint based on the agent score-which is based on CPU and memory. This helps identify device specific issues.

  • Connections: Displays the health status of network connections, including wired, wireless, and cellular links. Connection health is based on metrics such as link speed and signal quality, helping identify issues with the endpoint’s network connectivity.

  • Gateways: Shows the health of gateways (local routers or network gateways) that endpoints connect through. Gateway health is assessed using metrics like packet loss, latency, and jitter measured from devices connected to the gateway, indicating the quality of the local network segment.

  • VPNs: Reflects the health of VPN connections used by endpoints. VPN health scores are derived from metrics such as VPN ping loss, latency, jitter, and error flags, aggregated across devices connected to the VPN, providing insight into VPN performance and reliability.

  • Proxies: This indicates the health of proxy servers used by endpoints. Proxy health is measured primarily using HTTP connect times and proxy-specific error codes obtained from end-to-end HTTP measurements. Additionally, latency, jitter, and loss metrics are derived from both local network (ping) and end-to-end network measurements. These combined metrics help detect proxy-related issues by reflecting the responsiveness and reliability of the proxy servers.

  • Applications: Displays the health status of monitored applications based on scheduled tests and performance metrics, allowing identification of application-level degradations affecting user experience.

Using the Experience Score Map Filters for Endpoints List

  1. Select Filters on the Experience Score Map: On the left-hand side of the Experience Score Map, choose various filters to narrow down the data based on your criteria.

  2. Choose a Component in the Health Summary Section: After setting your filters, move to the Health Summary section. Select a specific component that you want to investigate further.

  3. Click View: to see the endpoints impacted in a specific city or View All to see all cities in the selected location with the impacted endpoints for that segment. This action takes you directly to the Endpoints List page.

  4. View the Filtered Endpoints List: The Endpoints List page displays the specific endpoints affected and retains all the filters you initially selected in the Experience Score Map. You see a focused list of endpoints that match your selected criteria and component.

  5. Click on a User name: For further investigation, see historical data in the performance section of the user details page and identify which hop the user is having issues with. The selected test from the Endpoint List carries over to the Endpoint test results on the user details page.

Note
These filters are based on real-time data, and these filters cannot be saved for future use.