search cancel

Tenant admins are seeing devices from other tenants in netflow NFA Console

book

Article ID: 253955

calendar_today

Updated On:

Products

CA Performance Management - Usage and Administration CA Network Flow Analysis (NetQos / NFA)

Issue/Introduction

We noticed something strange in Performance Center regarding the Netflow Analysis Integration.
Somehow, other tenant admins are able to see some, not all, devices from the other Tenant (XXX) when opening console->Netflow analysis. The XXX admin however, does not see devices from other tenants. 

Environment

Release : any

Cause

The tenant group ( assigned to User under 'Administer Groups' ) had a sub group with a bad interface rule that included devices from another tenant.

Resolution

Add a condition to that sub group to only include interfaces from that specific domain itself.

Additional Information

Use Rule condition :

'Device Item' 'is a member of' <related_group>