Release Notes SD-WAN 8.2.0 Collector
The Release Notes for SD-WAN 8.2.0 collector are now available (release date: 2026-04-30). Contact your Technical Account Manager, Systems Engineering Team, or Support Team to plan the installation.
In SD-WAN guides if there is,
- [any reference to master] OR
- [[if a CLI command (for NMS or Kubernetes or Redis) contains master] AND/OR
- [its output contains master]], it means leader or control plane.
And, if there is any reference to slave or worker, it means follower or agent.
Browser Requirements
Minimum Resolution:1200x768 Browsers:
- Modern, standards-compliant browser
- JavaScript enabled
- Pop-up blocker disabled for hostname/IP
The following browsers are supported in the current versions of SevOne.
Browser
| Vendor | Family |
|---|---|
| Chrome | |
| Mozilla | Firefox |
Resources & Requirements
Go to the IBM SevOne Solutions Sizing Sheet GitHub repository, then download the file named SDWAN_sizing_sheet_all_vendors_8.2.0.xlsx.
| Resource | Requirement | |||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| SevOne NMS | Please refer toCompatibility Matrix below for SevOne NMS versions supported. | |||||||||||||||||||||
| Helm | v3.18.4 | |||||||||||||||||||||
| Kubernetes |
1.28.10+k3s1 (for upgrade and new provisioning) Important: If the installed Kubernetes version in your setup is not supported by SD-WAN collector you are provisioning, you will get an error message. Kubernetes must be upgraded prior to upgrading SD-WAN collector.
|
|||||||||||||||||||||
| Kernel | 4.18.0-553.87.1.el8_10 | |||||||||||||||||||||
| Ports Required | Please refer toSevOne NMS Port Number Requirements Guide > sectionSolutions Deployment. | |||||||||||||||||||||
| VMware vSphere Client | >=6.5 | |||||||||||||||||||||
| Signature Tools |
Note: The latest files can be downloaded from IBM Passport Advantage (https://www.ibm.com/software/passportadvantage/pao_download_software.html) via Passport Advantage Online. However, if you are on a legacy / flexible SevOne contract and do not have access to IBM Passport Advantage but have an active Support contract, please contact SevOne Support Team for the file.
Once you have downloaded the package, unpack the fix / install / upgrade packs to obtain the required files.
|
|||||||||||||||||||||
| Other |
Note: The latest files can be downloaded from IBM Passport Advantage (https://www.ibm.com/software/passportadvantage/pao_download_software.html) via Passport Advantage Online. However, if you are on a legacy / flexible SevOne contract and do not have access to IBM Passport Advantage but have an active Support contract, please contact SevOne Support Team for the files.
Once you have downloaded the package, unpack the fix / install / upgrade packs to obtain the required files. Aruba EdgeConnect, Cisco SD-WAN, Fortinet, Palo Alto Prisma and VeloCloud are packaged with SevOne NMS as SD-WAN plugins.
Note: The File Type details for the SD-WAN plugins are the same as those for SevOne NMS resources. Please refer to the Third-Party Packages / Resources Required section in Release Notes SevOne NMS 8.2.0.
SD-WAN Widgets
|
Facts & Limitations
The following notes are some facts and limitations that you must be aware of.
Palo Alto Rate-Limiting Behavior Palo Alto enforces a rate limit of 2 API calls per second per resource per user. Successful API responses typically complete within 1.5 - 3 seconds, but latency can increase response times to 15–20 seconds per call. Under higher site load, server-side rate limiting becomes inconsistent and can result in multiple 429 (multiple requests) errors.
Capacity Projection Lab testing shows an average processing time of 18 seconds for 6 devices. Within a 5-minute polling interval, the system can reliably support:
-
Upper bound: 120 devices (under optimal conditions)
-
Lower bound: 90 devices (when accounting for performance variances)
The vManage overall rate limit is 450 requests per second. Currently, it has an API route related to device statistics which has a much lower rate limit of 43 requests per minute (or 0.72 requests per second). These rate limits are used as default rates in the Viptela collector configuration.
For the Viptela collector, each Agent has a vManage session.
Please refer to https://developer.cisco.com/docs/sdwan/#!browsing-returned-results-sorting-results-filtering-results-and-rate-limits/understanding-pagination for details.
Collector handles the case change scenario for vManage data. Migration script removes the device / object group rules and adds new case-insensitive rules in the next run of deviceDescription / objectDescription agent.
- Collector handles the case change only and not a complete name change.
- In case of device name changes, collector does not change the actual device name in SevOne NMS. However, it keeps pushing data in the existing device.
- In case of site / tenant name changes, collector does not update the device / object group name in SevOne NMS. However, it holds all the devices / objects available in the group.
- In case of interface name changes, collector does not update the interface, interface queue, or tunnel name. However, it keeps pushing data for that object.
- Collector does not support a scenario in which the device / interface name is same with a case difference in vManage. For example, device names, abc and ABC are not allowed.
When upgrading the collector from a newly deployed SD-WAN 2.9 or SD-WAN 2.10 OVA to SD-WAN 8.2.0, please perform the steps mentioned in SD-WAN Viptela Collector Troubleshooting Guide or SD-WAN Versa Collector Troubleshooting Guide > section Upgrade Collector.
Tunnel data is coming from two different sources (sdwanB2BSlamLog and monStatsLog). Hence, the data gap might be visible in SevOne NMS.
Compatibility Matrix
| Platform / Component | Versions supported (T – Tested & S – Supported) |
|---|---|
| SevOne NMS |
8.2.0 (T & S) 8.1.0 (T & S) |
| REST API | 2.1.47 |
| Widget Version | 8.2.0 |
| SevOne Data Insight | 8.2 (T & S) |
CONTROLLERS
| Controller | Versions supported (T – Tested & S – Supported) |
|---|---|
| Aruba EdgeConnect |
|
| Cisco SD-WAN |
|
| Fortinet |
|
| Prisma (Palo Alto) |
|
| VeloCloud |
|
| Controller | Type | Versions supported (T – Tested & S – Supported) | ||
|---|---|---|---|---|
| Versa | n/a |
|
|
|
| Viptela | vManage |
|
|
|
| vEdge |
|
|||
| cEdge |
|
|||
- CPU: 4 or more
- RAM: 8GB or more
- HDD: 20GB or more
- Please refer to Release Notes SevOne Data Insight for details.
SevOne NMS
- An administrator-level account in SevOne NMS.
- User name and password for the administrator-level account.
- IP address of the PAS.
- 20k (vPAS_20K) appliance (minimum requirement).
Useful Guides
From IBM's Documentation Portal (https://www.ibm.com/docs/en/sevone-npm), please refer to SD-WAN / SevOne Data Insight guides for this release for details.
New Features / Enhancements
-
Vipetla Collector- Flow Augmentor Collector supports IPv4 and IPv6 flow monitoring over IPv4 transport. For more details refer to Flow Augmentor Collector supporting IPv4 and IPv6 flow monitoring over IPv4 transport.
-
Cisco SD-WAN Plugin is now available on SevOne Data Insight as Cisco SD-WAN Integration.
To integrate Cisco SD-WAN with SevOne Data Insight, see Cisco SDWAN Quick Start Guide and Cisco Integration. .
-
SD-WAN Fortinet is now available on SevOne Data Insight as SD-WAN Fortinet Integration.
To integrate Fortinet SD-WAN with SevOne Data Insight, see Fortinet SDWAN Quick Start Guide and Fortinet Integration.
Resolved Issues
| Component/s | Key | Release Notes |
|---|---|---|
| SDWAN Cisco Catalyst |
S1NPM-77627 |
SevOne NMS version 6.7 is no longer supported; therefore, this ticket has been cancelled. |
|
CVE |
S1NPM-118383 |
Addressed CVE-2025-53547. |
|
CVE |
S1NPM-119020 |
Addressed CVE-2025-61726 / CVE-2025-61731. |
|
CVE |
S1NPM-119026 |
Addressed CVE-2025-59681. |
|
SDWAN VeloCloud |
S1NPM-119203 |
The Advance Health Agent was updated to validate the startTime field in the device advance health response.If the startTime value is null, the agent uses the current time and continues processing the remaining devices without error.SD-WAN objects display correctly for all devices as expected. |
|
CVE |
S1NPM-119650 |
Addressed CVE-2026-0994. |
|
CVE |
S1NPM-119917 |
Addressed CVE-2025-68458 / CVE-2025-68157. |
|
CVE |
S1NPM-120015 |
Addressed CVE-2025-65637. |
|
CVE |
S1NPM-120018 |
Addressed CVE-2025-15467. |
|
CVE |
S1NPM-120321 |
Addressed CVE-2026-24051. |
10 issues
Known Issues
This section lists issues that SevOne is aware of in SD-WAN 8.2.0 release. Most of these issues were discovered during quality assurance testing and are published here to provide you with information that may be relevant when you plan your update. This list does not include feature requests or low impact issues that do not affect functionality. If you have questions, comments, or concerns, please contact us.
- The default interval for the updation of the augmenter cache is 24 hours. If a policy is changed or added on vManage, it is necessary to update the cache forcefully to augment the flows correctly. Please run the PolicyParserAgent to update the cache forcefully.
Note: Applicable to Viptela Collector only.
-
kubectl exec <COLLECTOR_POD_ID> -- ./collector-viptela -run PolicyParserAgent - To find the <COLLECTOR_POD_ID>, execute the following command.
kubectl get pods
-
- Data gaps might be seen on the graphs in SevOne NMS for indicators of the objects of type SD-WAN Device Health as they are being polled at different timestamps. For example, SevOne NMS shows the data for the following indicators related to SD-WAN Device Health object.
- memory_utilization
- disk_utilization
- cpu_utilization
When querying data for these indicators from vManage, if the data is missing for any of the indicators, then the data gap might be visible in SevOne NMS.
- If you are using SevOne NMS version < 5.7.2.23 (without the NMS-75375 hotfix), you may experience an impact on the performance of the collector. At a same time, collectors will not support tunnels > 10k.
- Widgets
- When the alternate name is enabled in SevOne Data Insight, Network Topology Widget 2.8.x / 2.9 does not show any tunnels for SD-WAN 2.6 collectors.
| Component/s | Key | Known Issues |
|---|---|---|
| SDWAN Cisco Catalyst | S1NPM-77627 | Viptela / Versa Collectors: When installing / upgrading the collector via GUI, you can proceed to theUpgrade SOA stage in the following scenarios:
|
| SDWAN Solution, SDWAN Versa, SDWAN Cisco Catalyst | S1NPM-100519 | Platform: Depending on the scale of the environment,jaeger may quickly consume its allotted memory and in turn, restart. The maximum allotted memory can be adjusted when Jaeger is enabled. |
| SDWAN Solution, SDWAN Versa | S1NPM-100816 | Versa Collector: Tunnel objects will be pinned to their respective object groups either after 24 hours or according to the discovery schedule in SevOne NMS. |
| SDWAN Viptela | S1NPM-101063 | Viptela Collector: When updating the Installer Agent, theBFD_SESSIONS cache key gets updated based on received BFDSession data. TheTunnelStatAgent parses the BFD Session data and updates the availability and transition indicators accordingly.
If BFD Session data is not found for a specific object, the following occurs:
|
| SDWAN Cisco Catalyst | S1NPM-109664 | Viptela Collector: When theNEXT_HOP_IP field is not present in a flow, the following fields will be set toUnknown.
|
| SDWAN Solution | S1NPM-112181 |
Platform: Interface statistics are not generated for the sub-interfaces; an expected behavior from Cisco. sdwan::device-interface objects for interfaces are created to provide interface statistics datapoints. Since the mapping is performed for interface objects available in SevOne NMS, the ifIndex is not renamed to interface name for the sub-interfaces in Flow Interface Manager. |
| SDWAN VeloCloud | S1NPM-112408 | VeloCloud Collector: When upgrading VeloCloud from 7.0.0 or above to version 7.1.0, theVeloCloudSDWAN-DI-OOTB-Reports.tar file is still present in the/config/collectors/sdwan/velocloud/spk directory. This is an expected behavior. |
| SDWAN Viptela | S1NPM-112547 / S1NPM-112715 |
Viptela Collector: After successful upgrade from version 7.1.0 to 7.1.x, the Viptela Summary Report in GUI displays a SevOne Data Insight migration error as shown below. Workaround: Please click on Try to load anyway to proceed with loading the report without any conflicts. |
| SDWAN Solution | S1NPM-113717 |
Platform: The MetadataAgent fails to complete metadata updates for devices/objects because its runtime exceeds the default 1hour timeout limit. As a result, the metadata is not accurately reflected in the device/object with the following error.
Workaround:
|
| SDWAN Cisco Catalyst | S1NPM-117472 |
Device and object metadata may appear incomplete in SevOne NMS, with the Viptela / Versa Metadata Agent reporting the following message: |
| SDWAN Solution | S1NPM-119023 |
DeepDiff version 6.6.1 is bundled with Ansible 9.2.0. Ansible 9.2.0 is used by Versa and Viptela. DeepDiff 6.6.1 contains a vulnerability that may allow denial-of-service (DoS) and remote code execution through Delta class pollution (CVE-2025-58367). This issue affects DeepDiff versions 5.0.0 and later, but earlier than 8.6.1. |
| SDWAN Solution | S1NPM-120406 |
Viptela / Versa: During new installation or upgrade, deployment may fail during the step that creates |
| SDWAN Solution | S1NPM-120423 |
Viptela / Versa: During a fresh installation of 8.2.0, using Graphical User Interface, configuration parameters entered in the Configuration Settings stage are not persisted. After clicking Saveor Next, the values are reset or not retained, preventing the installation from proceeding as expected. |
| SDWAN Solution | S1NPM-120887 |
Upgrading the tar library from v6.x to 7.x in the widget-server (as a vulnerability fix) may cause SD-WAN widget packages to fail uploading in SevOne Data Insight, resulting in missing SD-WAN categories and widgets in the Select a Widget panel during the Create flow. |
| SDWAN VeloCloud | S1NPM-120612 |
In some SevOne NMS environments, a subset of devices may display the status Never Activated, Offline, or Connected. This behavior is not expected. When a device remains in the Never Activated state, the QoE agent starts but does not complete the load operation (Load done is not logged). As a result, SD-WAN objects are not discovered or updated. |
| SDWAN Viptela | S1NPM-121521 |
Log files are unavailable in the current path because the log rotation path has changed. For workaround, refer to Resolve log rotation failures for Viptela Collector logs in SD-WAN Viptela Collector Troubleshooting Guide. |
16 issues
