Skip to main content
Under Consideration

Possibility to continue path trace with only user mode access to device

  • August 27, 2021
  • 2 replies
  • 53 views

Our SD-WAN will be managed by a third-party, and our NetBrain instance won’t have privileged access to any SD-WAN device (no matter edge router or controller, via SSH or API).

As more and more SD-WAN routers are being deployed in our environment, cross-country path traces start failing in NetBrain. In a year or so a big part of this very useful NetBrain functionality will be gone for us.

The 3rd party MSP agreed to grant us only user-mode SSH access to SD-WAN routers, meaning we’ll be able to login and do pings/traceroutes off those routers.

Would it be possible to create a solution (patch / plugin / QApp etc.) whereby if a path trace hits a device with a specific naming convention (or other defined parameters), NetBrain would switch to using traceroute command to continue path trace on that device, and once it’s able to get past those devices, switch back to normal mode of tracing?

2 replies

Forum|alt.badge.img
  • Author
  • New Participant
  • 3 replies
  • November 12, 2021

Found a workaround for this: using the Traceroute step in NetBrain’s runbook, it’s possible to turn a regular traceroute output into an end-to-end path and then use it for health checks etc.


Forum|alt.badge.img
  • Known Participant
  • 26 replies
  • December 6, 2021
Updated idea statusOpenUnder Consideration