Configuring NetFlow-lite
|
|
|
- Annabelle Norton
- 9 years ago
- Views:
Transcription
1 CHAPTER 55 Note NetFlow-lite is only supported on Catalyst 4948E Ethernet Switch. This chapter describes how to configure NetFlow-lite on the Catalyst 4948E switch. NetFlow-lite provides traffic monitoring capabilities similar to those provided through NetFlow. Note For complete syntax and usage information for the switch commands used in this chapter, first look at the Cisco Catalyst 4500 Series Switch Reference and related publications at this location: If the command is not found in the Catalyst 4500 Reference, it will be found in the larger Cisco IOS library. Refer to the Cisco IOS Reference and related publications at this location: Note VLAN monitors are not supported in Cisco IOS Release 15.0(2)SG. Note Refer to the NetFlow Solutions Guide for more detailed information on Netflow usage and management. The following topics are included: About NetFlow Packet Sampling, page 55-2 Feature Interaction, page 55-2 Configuring NetFlow Packet Sampling, page 55-2 Display s, page 55-8 Clear s, page
2 About NetFlow Packet Sampling Chapter 55 About NetFlow Packet Sampling The Netflow-lite feature is based on ingress packet sampling at a monitoring point that can be an interface on the switch. By exporting NetFlow sampled packets, it provides visibility into traffic that is switched through the device. The rate at which input packets are sampled is configurable and a wide range of sampling rates are supported. The sampled packets can be exported with Netflow V9 or IPFIX format. Feature Interaction Feature interactions exists on three levels: System-wide Restrictions WCCP output redirect is not supported when NetFlow-lite is configured on any interface. monitor on any interface causes Layer 3 Deny ACLs to not generate ICMP unreachable packets. Enabling Netflow-lite monitoring reduces the available TCAM usage and packet forwarding bandwidth. Interface-level Restrictions NetFlow-lite monitoring and ingress QoS policy cannot coexist on the same interface. QoS policy takes precedence over NetFlow-lite monitoring. NetFlow-lite monitoring and the WCCP Exclude feature cannot coexist on the same interface. NetFlow-lite and SPAN cannot coexist on the same interface. NetFlow-lite takes precedence over SPAN. Monitor-level Restrictions Port channel with an aggregate bandwidth exceeding 20 Gigabit support the highest sampling rate of 1 in 64; those with an aggregate bandwidth exceeding 40 Gigabit support 1 in 128. When running PIM bidirectional mode, NetFlow-lite monitoring for multicast packets does not work when the RP or DF and any of the receivers are on the same VLAN. Configuring NetFlow Packet Sampling To configure the NetFlow-lite feature, complete the tasks in these sections: Configuring Information about the External Collector, page 55-3 Configuring Sampling Parameters, page 55-4 Activating Sampling on an Interface or VLAN, page
3 Chapter 55 Configuring NetFlow Packet Sampling Configuring Information about the External Collector To configure the external collector, perform this task: Step 1 Switch# config terminal Enters configuration mode Step 2 Switch(config)# netflow-lite exporter exporter Defines an exporter and to enter NetFlow-lite exporter submode Step 3 Switch(config-netflow-lite-exporter)# destination Specifies a destination address source-address Step 4 Switch(config-netflow-lite-exporter)# source Specifies a source Layer 3 interface source-address Step 5 Switch(config-netflow-lite-exporter)# vrf Specifies a VRF label source-address Step 6 Switch(config-netflow-lite-exporter)# transport udp Specifies a UDP transport destination port destination-port Step 7 Switch(config-netflow-lite-exporter)# ttl ttl-value Specifies a ttl value Step 8 Switch(config-netflow-lite-exporter)# cos cos-value Specifies a cos value Step 9 Switch(config-netflow-lite-exporter)# dscp dscp-value Specifies a dscp value Step 10 Step 11 Step 12 Switch(config-netflow-lite-exporter)# template data timeout timeout Switch(config-netflow-lite-exporter)# options {sampler-table interface-table} timeout timeout Switch(config-netflow-lite-exporter)# export-protocol {netflow-v9 ipfix} Specifies a template data timeout Specifies an options timeout Specifies the export protocol Step 13 Switch(config-netflow-lite-exporter)# exit Returns to global configuration mode Step 14 Switch(config)# exit Returns to EXEC mode Step 15 Switch# show netflow-lite exporter exporter Displays the exporter configuration Example This example shows how configure the external collector and to verify the exporter configuration: Switch# config terminal Switch(config)# netflow-lite exporter exporter1 Switch(config-netflow-lite-exporter)# destination Switch(config-netflow-lite-exporter)# source Switch(config-netflow-lite-exporter)# transport udp 8188 Switch(config-netflow-lite-exporter)# ttl 128 Switch(config-netflow-lite-exporter)# cos 7 Switch(config-netflow-lite-exporter)# dscp 32 Switch(config-netflow-lite-exporter)# template data timeout 1 Switch(config-netflow-lite-exporter)# options sampler-table timeout 1 Switch(config-netflow-lite-exporter)# options interface-table timeout 1 Switch(config-netflow-lite-exporter)# export-protocol netflow-v9 Switch(config-netflow-lite-exporter)# exit Switch(config)# exit Switch# show netflow-lite exporter exporter1 Netflow-lite Exporter exporter1: Network Protocol Configuration: Destination IP address: Source IP Address:
4 Configuring NetFlow Packet Sampling Chapter 55 VRF label: none DSCP: 0x20 TTL: 128 COS: 7 Transport Protocol Configuration: Transport Protocol: UDP Source Port: Destination Port: 8188 Destination Ports to Load-share: 1 Export Protocol Configuration: Export Protocol: netflow-v9 Template data timeout: 1800 Options sampler-table timeout: 1800 Options interface-table timeout: 1800 Exporter Statistics: Packets Exported: 56 Usage Guidelines The collector's IP address and UDP port can be specified. Optionally a vrf label can be provided in which the collector is reachable. The exporter agent's address is specified as the source interface. We support either IPFIX or Netflow V9 export. The exporter's name can be specified when activating sampling at a monitor. This can be done in interface or VLAN mode. If no exporter is specified for a sampling instance, then no samples are exported. The exporter submode also allows you to specify the refresh frequency for the NetFlow templates. Metadata about the NetFlow packet sampling process like sampler configuration parameters and SNMP interface table mapping can also be exported periodically to the collector. Mandatory parameters for a minimal exporter configuration are the destination address of the collector, the source Layer 3 interface, and the UDP destination port of the collector. The VRF label is ignored if the collector's address is IPv6. The default global routing table is used to route the IPv6 export packets to the collector. The CoS CLI option is used to set the CoS value of VLAN tags for packet samples exported by fpga alone. Configuring Sampling Parameters This task configures packet and counter sampling parameters as reusable named entities. To configure the NetFlow cache and enable switched IP flow collection, perform this task: Step 1 Switch# config terminal Enters configuration mode. Step 2 Switch(config)# netflow-lite sampler sampler Configure packet sampling parameters as a reusable named entity and to enter NetFlow-lite sampler submode. Step 3 Switch(config-netflow-lite-sampler)# packet-rate rate Specifies the specify a packet sampling rate in NetFlow-lite sampler submode. Step 4 Switch(config-netflow-lite-sampler)# packet-section size size Specifies a sampled header size in NetFlow-lite submode. 55-4
5 Chapter 55 Configuring NetFlow Packet Sampling Step 5 Switch(config-netflow-lite-sampler)# packet-offset offset Specifies a starting packet offset in NetFlow-lite submode. Step 6 Switch(config-netflow-lite-sampler)# exit Exits NetFlow-lite sampler submode. Step 7 Switch(config)# exit Exits global configuration mode. Step 8 Switch# show netflow-lite sampler sampler Displays information about a sampler. Example This example shows how to configure sampling parameters and to display the sampler configuration: Switch# config terminal Switch(config)# netflow-lite sampler sampler1 Switch(config-netflow-lite-sampler)# packet-rate 32 Switch(config-netflow-lite-sampler)# packet-section size 128 Switch(config-netflow-lite-sampler)# packet-offset 16 Switch(config-netflow-lite-sampler)# exit Switch(config)# exit Switch# Switch# show netflow-lite sampler sampler1 Netflow-lite Sampler sampler1: Id : 1 Packet Sampling rate: 1 out of 32 Packet Section Size: 64 bytes Packet offset: 16 bytes You can verify your settings with the show netflow-lite sampler privileged EXEC command Usage Guidelines The packet sampling rate can range from 32 to 2^15 in powers of 2. To troubleshoot two 1 Gigabit ports, a rate of 1 is allowed. This is equivalent to rx span only. It cannot be configured on 10 Gigabit ports because the bandwidth demand for export will be too high. Mandatory parameters are packet rate. A maximum of 2 x 1Gigabit ports can be configured with 1-in-1 sampling. The best packet sampling rate that can be configured on any 1 Gigabit or 10 Gigabit port is 1-in-32. Packet sampling rates can be configured in powers of 2 (like 1-in-64 and 1-in-128). You can update a sampler at a target interface, but you cannot remove or unconfigure mandatory parameters. All mandatory parameters must be present to validate a sampler. Any unspecified non-mandatory parameters take on default values. Activating Sampling on an Interface or VLAN This task defines a monitor instance on an interface or VLAN, identifying the sampler and exporter to use. 55-5
6 Configuring NetFlow Packet Sampling Chapter 55 To activate sampling on an interface, perform this task: Step 1 Switch# config terminal Enters configuration mode. Step 2 Switch(config)# interface interface-id Enters interface configuration mode. Step 3 Switch(config-if)# netflow-lite monitor monitor Defines a monitor instance on an interface and enters NetFlow-lite monitor submode. Step 4 Switch(config-netflow-lite-monitor)# sampler sampler Activates sampling on an interface in NetFlow-lite monitor submode. Step 5 Step 6 Switch(config-netflow-lite-monitor)# exporter exporter Switch(config-netflow-lite-monitor)# average-packet-size size Assigns an exporter in NetFlow-lite monitor submode Specifies the average packet size at the observation point in NetFlow-lite monitor submode. Step 7 Switch(config-netflow-lite-monitor)# exit Exits NetFlow-lite monitor submode. Step 8 Switch(config)# exit Exits global configuration mode. Step 9 Switch# show netflow-lite monitor monitor interface interface-name Displays information about a particular packet or per data source stats. To activate sampling on an interface, perform this task: Step 1 Switch# config terminal Enters configuration mode. Step 2 Switch(config)# vlan config 2 Enters interface configuration mode. Step 3 Step 4 Step 5 Examples Switch(config-vlan-config)# netflow-lite monitor monitor Switch(config-netflow-lite-monitor)# average-packet-size size Switch(config-netflow-lite-monitor)# exporter exporter The following example shows how to configure a monitor on a port interface Gigabit 1/3: Switch# config terminal Switch(config)# int GigabitEthernet1/3 Switch(config-if)# netflow-lite monitor 1 Switch(config-netflow-lite-monitor)# sampler sampler1 Switch(config-netflow-lite-monitor)# average-packet-size 128 Defines a monitor instance on an interface and enters NetFlow-lite monitor submode. Specifies the average packet size at the observation point in NetFlow-lite monitor submode. Assigns an exporter in NetFlow-lite monitor submode. Step 6 Switch(config-netflow-lite-monitor)# sampler sampler Activates sampling on an interface in NetFlow-lite monitor submode. Step 7 Switch(config-netflow-lite-monitor)# exit Exits NetFlow-lite monitor submode Step 8 Switch(config)# exit Exits global configuration mode. Step 9 Switch# show netflow-lite monitor monitor vlan vlan Displays information about a particular packet or per data source stats. 55-6
7 Chapter 55 Configuring NetFlow Packet Sampling Switch(config-netflow-lite-monitor)# exporter exporter1 Switch(config-netflow-lite-monitor)# exit Switch(config-if)# exit Switch(config)# exit Switch(config)# Switch# show netflow-lite monitor 1 interface gi1/3 Interface GigabitEthernet1/3: Netflow-lite Monitor-1: Active: TRUE Sampler: sampler1 Exporter: exporter1 Average Packet Size: 0 Statistics: Packets exported: 0 Packets observed: 0 Packets dropped: 0 Average Packet Size observed: 64 Average Packet Size used: 64 Similarly, you can configure a monitor on a VLAN in VLAN config mode: Switch# config terminal Switch(config)# vlan config 2 Switch(config-vlan-config)# netflow-lite monitor 1 Switch(config-netflow-lite-monitor)# average-packet-size 128 Switch(config-netflow-lite-monitor)# exporter exporter1 Switch(config-netflow-lite-monitor)# sampler sampler1 Switch(config-netflow-lite-monitor)# exit Switch(config-vlan-config)# exit Switch(config)# Switch# show netflow-lite monitor 1 vlan 2 VlanID-2: Netflow-lite Monitor-1: Active: TRUE Sampler: sampler1 Exporter: exporter1 Average Packet Size: 0 Statistics: Packets exported: 0 Packets observed: 0 Packets dropped: 0 Average Packet Size observed: 64 Average Packet Size used: 64 You can verify your settings with the show policy-map privileged EXEC command. Usage Guidelines Only a single packet sampling instance is supported on a monitor. These commands are entered under the physical port interface mode, port channel interface, or config vlan mode. Monitor is not supported on other interfaces. If the physical port is a member of a port channel, applying the monitor to the port has no effect. Instead, the monitor must be applied to the port channel. When configuring a monitor, the mandatory parameters are sampler and exporter. If no exporter is associated with a monitor, no samples are exported. If no sampler is specified, no input packet sampling occurs for that target interface. The packet sampling mechanism tries to achieve random 1-in-N sampling. The accuracy of the algorithm is dependent on the size of the packets arriving at a given interface. To tune the relative accuracy of the algorithm, use the average-packet-size parameter. The whole system supports a maximum of 200 monitors. 55-7
8 Display s Chapter 55 The system automatically determines the average packet size at an interface based on observation of input traffic and uses that value in rate DBL sampling. Valid range of packet sizes that can be used by the algorithm is bytes. A value of 0 is taken to mean that automatic determination of average packet size is desired. The sampler and exporter must be valid for packet sampling. If any mandatory parameters are missing, a warning message indicating that sampler or exporter is invalid is displayed. Display s To view the configured value of the minimum mask, use the following commands for each aggregation scheme, as needed: Switch# show netflow-lite sampler sampler_name Switch# show netflow-lite monitor monitor interface interface_name Switch# show netflow-lite monitor monitor vlan vlan_id Switch# show netflow-lite exporter exporter_nsme Displays information about a sampler. The following commands display information about a particular packet and per monitor stats. The interface can be either a physical port or a VLAN. They display the following packet sampling statistics: Total # of packet (samples) exported Total # of packet (samples) dropped due to lack of local resources Total# of packets seen at the monitor Displays information about the collector and global stats. The following example shows how to displays information about a sampler: Switch# show netflow-lite sampler low-rate Netflow-lite Sampler low-rate: Description: Sampler Sampling rate: 1 out of 256 Packet Section Size: 64 bytes Packet offset: 0 bytes The following example shows how to display information about a particular packet and per monitor stats on a physical port: Switch# show netflow-lite monitor 1 interface gi1/3 Interface GigabitEthernet1/3: Netflow-lite Monitor-1: Active: TRUE Sampler: sampler1 Exporter: exporter1 Average Packet Size: 0 Statistics: Packets exported: 0 Packets observed: 0 Packets dropped:
9 Chapter 55 Clear s Average Packet Size observed: 64 Average Packet Size used: 64 The following example shows how to display information about a particular packet and per monitor stats on a VLAN: Switch# show netflow-lite monitor 1 vlan 2 VlanID-2: Netflow-lite Monitor-1: Active: TRUE Sampler: sampler1 Exporter: exporter1 Average Packet Size: 0 Statistics: Packets exported: 0 Packets observed: 0 Packets dropped: 0 Average Packet Size observed: 64 Average Packet Size used: 64 The following example shows how to display the total number of export packets sent: Switch# show netflow-lite e1 Netflow-lite Exporter e1: Description: Exporter Network Protocol Configuration: Destination IP address: VRF label: cisc Source IP Address: DSCP: 0x1 TTL: 30 COS: 1 Transport Protocol Configuration: Transport Protocol: UDP Destination Port: 1234 Source Port: Export Protocol Configuration: Export Protocol: netflow-v9 Exporter Statistics: Export packets sent: 36 Clear s To clear statistics of a packet sampler at a monitor, use the following commands, as needed: Switch# clear netflow-lite monitor monitor_id statistics interface interface name Switch# clear netflow-lite monitor monitor_id statistics vlan vlan_id Switch# clear netflow-lite exporter exporter_ name statistics Clear the statistics of a packet sampler at a datasource Clear the collector statistics 55-9
10 Clear s Chapter
Configuring NetFlow. Information About NetFlow. NetFlow Overview. Send document comments to [email protected]. CHAPTER
CHAPTER 16 This chapter describes how to configure the NetFlow feature on Cisco NX-OS devices. This chapter includes the following sections: Information About NetFlow, page 16-1 Licensing Requirements
Configuring Flexible NetFlow
CHAPTER 62 Note Flexible NetFlow is only supported on Supervisor Engine 7-E, Supervisor Engine 7L-E, and Catalyst 4500X. Flow is defined as a unique set of key fields attributes, which might include fields
Configuring NetFlow. Information About NetFlow. NetFlow Overview. Send document comments to [email protected]. CHAPTER
CHAPTER 19 This chapter describes how to configure the NetFlow feature on Cisco NX-OS devices. This chapter includes the following sections: Information About NetFlow, page 19-1 Licensing Requirements
Configuring NetFlow. Information About NetFlow. Send document comments to [email protected]. CHAPTER
CHAPTER 11 Use this chapter to configure NetFlow to characterize IP traffic based on its source, destination, timing, and application information, to assess network availability and performance. This chapter
NetFlow-Lite offers network administrators and engineers the following capabilities:
Solution Overview Cisco NetFlow-Lite Introduction As networks become more complex and organizations enable more applications, traffic patterns become more diverse and unpredictable. Organizations require
Configuring DHCP Snooping
CHAPTER 19 This chapter describes how to configure Dynamic Host Configuration Protocol (DHCP) snooping on Catalyst 4500 series switches. It provides guidelines, procedures, and configuration examples.
Configuring NetFlow on Cisco ASR 9000 Series Aggregation Services Router
Configuring NetFlow on Cisco ASR 9000 Series Aggregation Services Router This module describes the configuration of NetFlow on the Cisco ASR 9000 Series Aggregation Services Router. A NetFlow flow is a
Introduction to Cisco IOS Flexible NetFlow
Introduction to Cisco IOS Flexible NetFlow Last updated: September 2008 The next-generation in flow technology allowing optimization of the network infrastructure, reducing operation costs, improving capacity
Easy Performance Monitor
First Published: July 30, 2013 The chapter describes how to configure (ezpm) for Application Visibility and Control (AVC). Finding Feature Information Your software release may not support all the features
Easy Performance Monitor
The chapter describes how to configure (ezpm) for Application Visibility and Control (AVC). Finding Feature Information, page 1 Information About, page 2 How to Configure, page 4 Verifying Configuration,
Enabling NetFlow and NetFlow Data Export (NDE) on Cisco Catalyst Switches
Enabling NetFlow and NetFlow Data Export (NDE) on Cisco Catalyst Switches Revised 2/1/2007 Introduction...2 Requirements...2 Catalyst 4500 Series...2 Enabling NetFlow...2 Configuring a NetFlow Destination...3
NetFlow/IPFIX Various Thoughts
NetFlow/IPFIX Various Thoughts Paul Aitken & Benoit Claise 3 rd NMRG Workshop on NetFlow/IPFIX Usage in Network Management, July 2010 1 B #1 Application Visibility Business Case NetFlow (L3/L4) DPI Application
How-To Configure NetFlow v5 & v9 on Cisco Routers
How-To Configure NetFlow v5 & v9 on Cisco Routers Share: Visibility into the network is an indispensable tool for network administrators. Network visibility can be achieved through daily troubleshooting,
SolarWinds Technical Reference
SolarWinds Technical Reference Configuring Devices for Flow Collection Introduction... 3 Cisco... 3 Cisco Catalyst 3560/3750... 4 Cisco Catalyst 4500... 7 Cisco Catalyst 6500... 9 Cisco Nexus 7000/7010...
Easy Performance Monitor
The chapter describes how to configure (ezpm) for Application Visibility and Control (AVC). Finding Feature Information, page 1 Information About, page 1 How to Configure, page 3 Configuration Examples
Configuring NetFlow on Cisco IOS XR Software
Configuring NetFlow on Cisco IOS XR Software A NetFlow flow is a unidirectional sequence of packets that arrive on a single interface ( subinterface), and have the same values f key fields. NetFlow is
NetStream (Integrated) Technology White Paper HUAWEI TECHNOLOGIES CO., LTD. Issue 01. Date 2012-9-6
(Integrated) Technology White Paper Issue 01 Date 2012-9-6 HUAWEI TECHNOLOGIES CO., LTD. 2012. All rights reserved. No part of this document may be reproduced or transmitted in any form or by any means
Cisco IOS Flexible NetFlow Command Reference
Americas Headquarters Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA http://www.cisco.com Tel: 408 526-4000 800 553-NETS (6387) Fax: 408 527-0883 THE SPECIFICATIONS AND INFORMATION
Catalyst 6500/6000 Switches NetFlow Configuration and Troubleshooting
Catalyst 6500/6000 Switches NetFlow Configuration and Troubleshooting Document ID: 70974 Introduction Prerequisites Requirements Components Used Conventions Background Information Configure Network Diagram
AutoQoS. Prerequisites for AutoQoS CHAPTER
CHAPTER 63 Prerequisites for, page 63-1 Restrictions for, page 63-2 Information About, page 63-2 Default Settings for, page 63-4 How to Configure, page 63-4 For complete syntax and usage information for
NetFlow Subinterface Support
NetFlow Subinterface Support Feature History Release Modification 12.2(14)S This feature was introduced. 12.2(15)T This feature was integrated into Cisco IOS Release 12.2 T. This document describes the
Configuring QoS and Per Port Per VLAN QoS
27 CHAPTER This chapter describes how to configure quality of service (QoS) by using automatic QoS (auto-qos) commands or by using standard QoS commands on a Catalyst 45 series switch. It also describes
SolarWinds Technical Reference
SolarWinds Technical Reference Configuring Devices for Flow Collection Introduction... 3 Cisco... 3 Cisco Catalyst 3560/3750... 4 Cisco Catalyst 4500... 7 Cisco Catalyst 6500... 9 Cisco Nexus 7000/7010...
How To Mirror On An Ipfix On An Rspan Vlan On A Pc Or Mac Or Ipfix (Networking) On A Network On A Pnet 2.2.2 (Netnet) On An Uniden (Netlan
Content Content CHAPTER 1 MIRROR CONFIGURATION... 1-1 1.1 INTRODUCTION TO MIRROR... 1-1 1.2 MIRROR CONFIGURATION TASK LIST... 1-1 1.3 MIRROR EXAMPLES... 1-2 1.4 DEVICE MIRROR TROUBLESHOOTING... 1-3 CHAPTER
Configuring DHCP Snooping and IP Source Guard
CHAPTER 19 This chapter describes how to configure Dynamic Host Configuration Protocol (DHCP) snooping and IP Source Guard on Catalyst 4500 series switches. It provides guidelines, procedures, and configuration
Cisco IOS Flexible NetFlow Technology
Cisco IOS Flexible NetFlow Technology Last Updated: December 2008 The Challenge: The ability to characterize IP traffic and understand the origin, the traffic destination, the time of day, the application
NetFlow v9 Export Format
NetFlow v9 Export Format With this release, NetFlow can export data in NetFlow v9 (version 9) export format. This format is flexible and extensible, which provides the versatility needed to support new
Cisco Performance Monitor Commands
1 action (policy react and policy inline react) Cisco Performance Monitor Commands action (policy react and policy inline react) To configure which applications which will receive an alarm or notification,
NetFlow Aggregation. Feature Overview. Aggregation Cache Schemes
NetFlow Aggregation This document describes the Cisco IOS NetFlow Aggregation feature, which allows Cisco NetFlow users to summarize NetFlow export data on an IOS router before the data is exported to
Traffic Mirroring Commands on the Cisco IOS XR Software
Traffic Mirroring Commands on the Cisco IOS XR Software This module describes the commands used to configure and monitor traffic mirroring. acl, page 2 clear monitor-session counters, page 4 destination
Configuring EtherChannels
25 CHAPTER This chapter describes how to configure EtherChannel interfaces. For complete syntax and usage information for the commands used in this chapter, refer to the Catalyst 2950 Desktop Switch Command
Configuring Auto-QoS
Finding Feature Information, page 1 Prerequisites for Auto-QoS, page 1 Restrictions for Auto-QoS, page 2 Information About, page 3 How to Configure Auto-QoS, page 5 Monitoring Auto-QoS, page 9 Configuration
IPV6 流 量 分 析 探 讨 北 京 大 学 计 算 中 心 周 昌 令
IPV6 流 量 分 析 探 讨 北 京 大 学 计 算 中 心 周 昌 令 1 内 容 流 量 分 析 简 介 IPv6 下 的 新 问 题 和 挑 战 协 议 格 式 变 更 用 户 行 为 特 征 变 更 安 全 问 题 演 化 流 量 导 出 手 段 变 化 设 备 参 考 配 置 流 量 工 具 总 结 2 流 量 分 析 简 介 流 量 分 析 目 标 who, what, where,
Configuring NetFlow Secure Event Logging (NSEL)
75 CHAPTER This chapter describes how to configure NSEL, a security logging mechanism that is built on NetFlow Version 9 technology, and how to handle events and syslog messages through NSEL. The chapter
Tue Apr 19 11:03:19 PDT 2005 by Andrew Gristina thanks to Luca Deri and the ntop team
Tue Apr 19 11:03:19 PDT 2005 by Andrew Gristina thanks to Luca Deri and the ntop team This document specifically addresses a subset of interesting netflow export situations to an ntop netflow collector
SolarWinds Technical Reference
SolarWinds Technical Reference Enabling NetFlow and NetFlow Data Export (NDE) on Cisco Catalyst Switches Introduction... 3 Requirements... 3 Catalyst 4500 Series... 3 Enabling NetFlow... 3 Configuring
Lab 4.1.2 Characterizing Network Applications
Lab 4.1.2 Characterizing Network Applications Objective Device Designation Device Name Address Subnet Mask Discovery Server Business Services 172.17.1.1 255.255.0.0 R1 FC-CPE-1 Fa0/1 172.17.0.1 Fa0/0 10.0.0.1
Configuring IP SLA Service Performance Testing
9 CHAPTER Configuring IP SLA Service Perfmance Testing First Published: July 2013 Last Updated: November 2013 This chapter describes how to configure the ITU-T Y.1564 Ethernet service perfmance test methodology
Configuring LLDP, LLDP-MED, and Location Service
27 CHAPTER Configuring LLDP, LLDP-MED, and Location Service This chapter describes how to configure the Link Layer Discovery Protocol (LLDP), LLDP Media Endpoint Discovery (LLDP-MED), and Location Service
Configuring SNMP and using the NetFlow MIB to Monitor NetFlow Data
Configuring SNMP and using the NetFlow MIB to Monitor NetFlow Data NetFlow is a technology that provides highly granular per-flow statistics on traffic in a Cisco router. The NetFlow MIB feature provides
NetFlow Configuration Guide, Cisco IOS Release 12.2SR
NetFlow Configuration Guide, Cisco IOS Release 12.2SR Americas Headquarters Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA http://www.cisco.com Tel: 408 526-4000 800 553-NETS (6387)
Flow Monitor for WhatsUp Gold v16.1 User Guide
Flow Monitor for WhatsUp Gold v16.1 User Guide Contents Table of Contents Flow Monitor Overview Welcome to WhatsUp Gold Flow Monitor... 1 What is Flow Monitor?... 2 How does Flow Monitor work?... 2 System
Traffic Mirroring Commands on the Cisco ASR 9000 Series Router
Traffic Mirroring Commands on the Cisco ASR 9000 Series Router This module describes the commands used to configure and monitor traffic mirroring. acl, page 2 clear monitor-session counters, page 4 destination
Configuring a Load-Balancing Scheme
Configuring a Load-Balancing Scheme Finding Feature Information Configuring a Load-Balancing Scheme Last Updated: August 15, 2011 This module contains information about Cisco Express Forwarding and describes
Configuring the Firewall Management Interface
Configuring the Firewall Management Interface The firewall management interface can be configured under each firewall context to provide a virtualized management interface (see Figure 7). The management
Flow Monitor for WhatsUp Gold v16.2 User Guide
Flow Monitor for WhatsUp Gold v16.2 User Guide Contents Table of Contents Flow Monitor Overview Welcome to WhatsUp Gold Flow Monitor... 1 What is Flow Monitor?... 2 How does Flow Monitor work?... 2 System
Monitoring Traffic Interception
CHAPTER 2 This chapter describes how to use traffic interception to monitor your WAAS devices and contains the following sections: Verifying WCCPv2 Interception, page 2-1 Verifying Inline Interception,
Configuring a Load-Balancing Scheme
This module contains information about Cisco Express Forwarding and describes the tasks for configuring a load-balancing scheme for Cisco Express Forwarding traffic. Load-balancing allows you to optimize
ICND2 NetFlow. Question 1. What are the benefit of using Netflow? (Choose three) A. Network, Application & User Monitoring. B.
ICND2 NetFlow Question 1 What are the benefit of using Netflow? (Choose three) A. Network, Application & User Monitoring B. Network Planning C. Security Analysis D. Accounting/Billing Answer: A C D NetFlow
Getting Started with Configuring Cisco IOS NetFlow and NetFlow Data Export
Getting Started with Configuring Cisco IOS NetFlow and NetFlow Data Export Last Updated: November 28, 2011 This module contains the minimum amount of information about and instructions necessary for configuring
Configuring QoS. Understanding QoS CHAPTER
24 CHAPTER This chapter describes how to configure quality of service (QoS) by using standard QoS commands. With QoS, you can give preferential treatment to certain types of traffic at the expense of others.
NetFlow Configuration Guide, Cisco IOS Release 15M&T
Americas Headquarters Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA http://www.cisco.com Tel: 408 526-4000 800 553-NETS (6387) Fax: 408 527-0883 THE SPECIFICATIONS AND INFORMATION
Cisco IOS NetFlow Version 9 Flow-Record Format
Cisco IOS NetFlow Version 9 Flow-Record Format Last updated: February 007 Overview Cisco IOS NetFlow services provide network administrators with access to information concerning IP flows within their
Cisco IOS NetFlow Version 9 Flow-Record Format
White Paper Cisco IOS NetFlow Version 9 Flow-Record Format Last updated: May 0 Overview Cisco IOS NetFlow services provide network administrators with access to information concerning IP flows within their
Configuring Quality of Service
CHAPTER 37 QoS functionality on Supervisor Engine 6-E, Supervisor Engine 6L-E, Catalyst 49M, and Catalyst 4948E are equivalent. This chapter describes how to configure quality of service (QoS) by using
Configuring NetFlow Data Export (NDE)
49 CHAPTER Prerequisites for NDE, page 49-1 Restrictions for NDE, page 49-1 Information about NDE, page 49-2 Default Settings for NDE, page 49-11 How to Configure NDE, page 49-11 Note For complete syntax
WhatsUpGold. v15.0. Flow Monitor User Guide
WhatsUpGold v15.0 Flow Monitor User Guide Contents CHAPTER 1 Flow Monitor Overview Welcome to WhatsUp Gold Flow Monitor... 1 What is Flow Monitor?... 2 How does Flow Monitor work?... 2 System requirements...
NetFlow Configuration Guide, Cisco IOS Release 12.4
NetFlow Configuration Guide, Cisco IOS Release 12.4 Americas Headquarters Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA http://www.cisco.com Tel: 408 526-4000 800 553-NETS (6387)
http://www.cisco.com/en/us/products//hw/switches/ps4324/index.html http://www.cisco.com/en/us/products/ps6350/index.html
CHAPTER 54 Supervisor Engine 6-E and Catalyst 4900M chassis do not support Netflow; it is only supported on Supervisor Engine IV, Supervisor Engine V, Supervisor Engine V-10GE, or WS-F4531. This chapter
Configuring Port Security
32 CHAPTER This chapter describes how to configure port security on Catalyst 4500 series switches. It provides guidelines, procedures, and configuration examples. Note For complete syntax and usage information
Configuring Network Security with ACLs
CHAPTER 46 This chapter describes how to use access control lists (ACLs) to configure network security on the Catalyst 4500 series switches. The Catalyst 4500 series switch supports time-based ACLs. For
Configuring NetFlow Secure Event Logging (NSEL)
73 CHAPTER This chapter describes how to configure NSEL, a security logging mechanism that is built on NetFlow Version 9 technology, and how to handle events and syslog messages through NSEL. The chapter
Network Monitoring and Management NetFlow Overview
Network Monitoring and Management NetFlow Overview These materials are licensed under the Creative Commons Attribution-Noncommercial 3.0 Unported license (http://creativecommons.org/licenses/by-nc/3.0/)
Firewall Load Balancing
CHAPTER 6 This chapter describes the (FWLB) feature. It includes the following sections: FWLB Overview, page 6-1 FWLB Features, page 6-2 FWLB Configuration Tasks, page 6-3 Monitoring and Maintaining FWLB,
Configuring NetFlow Switching
Configuring NetFlow Switching This chapter describes how to configure NetFlow switching. For a complete description of NetFlow commands used in this chapter, refer to the Cisco IOS Switching s chapter
Integrated Traffic Monitoring
61202880L1-29.1F November 2009 Configuration Guide This configuration guide describes integrated traffic monitoring (ITM) and its use on ADTRAN Operating System (AOS) products. Including an overview of
Network Configuration Example
Network Configuration Example Configuring Multiple Port Mirroring Sessions on EX4200 Switches Published: 2014-04-09 Juniper Networks, Inc. 1194 North Mathilda Avenue Sunnyvale, California 94089 USA 408-745-2000
Cisco - Catalyst 2950 Series Switches Quality of Service (QoS) FAQ
Page 1 of 8 Catalyst 2950 Series Switches Quality of Service (QoS) FAQ Document ID: 46523 TAC Notice: What's C han g i n g o n T A C We b H el p u s h el p y ou. Questions Introduction What is the software
Configuring Local SPAN and ERSPAN
CHAPTER 9 This chapter describes how to configure the Local and ER Ethernet switched port analyzer (SPAN) feature to monitor traffic and includes the following topics: Information About SPAN and ERSPAN,
Configuring a Load-Balancing Scheme
Configuring a Load-Balancing Scheme Last Updated: October 5, 2011 This module contains information about Cisco Express Forwarding and describes the tasks for configuring a load-balancing scheme for Cisco
Configuring Static and Dynamic NAT Translation
This chapter contains the following sections: Network Address Translation Overview, page 1 Information About Static NAT, page 2 Dynamic NAT Overview, page 3 Timeout Mechanisms, page 4 NAT Inside and Outside
Configuring MAC ACLs
Send document comments to [email protected] 12 CHAPTER This chapter describes how to configure MAC access lists (ACLs) on NX-OS devices. This chapter includes the following sections: Information
Quality of Service (QoS): Managing Bandwidth More Effectively on the Series 2600/2600-PWR and Series 2800 Switches
6 Quality of Service (QoS): Managing Bandwidth More Effectively on the Series 2600/2600-PWR and Series 2800 Switches Contents Introduction................................................... 6-3 Terminology................................................
Flow-Based per Port-Channel Load Balancing
The feature allows different flows of traffic over a Gigabit EtherChannel (GEC) interface to be identified based on the packet header and then mapped to the different member links of the port channel.
Configuring Quality of Service
CHAPTER 33 This chapter describes how to configure quality of service (QoS) with either automatic QoS (auto-qos) commands or standard QoS commands on a switch running Supervisor Engine 7-E. It describes
Configuring Denial of Service Protection
24 CHAPTER This chapter contains information on how to protect your system against Denial of Service (DoS) attacks. The information covered in this chapter is unique to the Catalyst 6500 series switches,
Cisco NetFlow Generation Appliance (NGA) 3140
Q&A Cisco NetFlow Generation Appliance (NGA) 3140 General Overview Q. What is Cisco NetFlow Generation Appliance (NGA) 3140? A. Cisco NetFlow Generation Appliance 3140 is purpose-built, high-performance
Flow Analysis Versus Packet Analysis. What Should You Choose?
Flow Analysis Versus Packet Analysis. What Should You Choose? www.netfort.com Flow analysis can help to determine traffic statistics overall, but it falls short when you need to analyse a specific conversation
NetFlow The De Facto Standard for Traffic Analytics
NetFlow The De Facto Standard for Traffic Analytics A Webinar on NetFlow and its uses in Enterprise Networks for Bandwidth and Traffic Analytics Don Thomas Jacob Technical Marketing Engineer ManageEngine
Chapter 7 Configuring Trunk Groups and Dynamic Link Aggregation
Chapter 7 Configuring Trunk Groups and Dynamic Link Aggregation This chapter describes how to configure trunk groups and 802.3ad link aggregation. Trunk groups are manually-configured aggregate links containing
Introduction to Netflow
Introduction to Netflow Mike Jager Network Startup Resource Center [email protected] These materials are licensed under the Creative Commons Attribution-NonCommercial 4.0 International license (http://creativecommons.org/licenses/by-nc/4.0/)
Monitoring Network Traffic Using SPAN
22 CHAPTER This chapter describes the switched port analyzer (SPAN) features provided in switches in the Cisco MDS 9000 Family. It includes the following sections: About SPAN, page 22-2 SPAN Sources, page
Cisco Catalyst 4948E NetFlow- lite
Cisco Catalyst 4948E NetFlow- lite Applica6on Visibility in Data Center Why Applica+on Visibility in Data Center Efficient Opera+on What applica6ons are consuming bandwidth Who is using them When they
Configuring the Switch with the CLI-Based Setup Program
APPENDIX D Configuring the Switch with the CLI-Based Setup Program This appendix provides a command-line interface (CLI)-based setup procedure for a standalone switch. For product overview information,
Network Management & Monitoring
Network Management & Monitoring NetFlow Overview These materials are licensed under the Creative Commons Attribution-Noncommercial 3.0 Unported license (http://creativecommons.org/licenses/by-nc/3.0/)
Cisco ASA and NetFlow Using ASA NetFlow with LiveAction Flow Software
LiveAction Application Note Cisco ASA and NetFlow Using ASA NetFlow with LiveAction Flow Software January 2013 http://www.actionpacked.com Table of Contents 1. Introduction... 1 2. ASA NetFlow Security
Network Agent Quick Start
Network Agent Quick Start Topic 50500 Network Agent Quick Start Updated 17-Sep-2013 Applies To: Web Filter, Web Security, Web Security Gateway, and Web Security Gateway Anywhere, v7.7 and 7.8 Websense
Appendix A Remote Network Monitoring
Appendix A Remote Network Monitoring This appendix describes the remote monitoring features available on HP products: Remote Monitoring (RMON) statistics All HP products support RMON statistics on the
Troubleshooting Bundles and Load Balancing
CHAPTER 5 This chapter explains the procedures for troubleshooting link bundles and load balancing on the Cisco ASR 9000 Aggregation Services Router. A link bundle is a group of ports that are bundled
Firewall Stateful Inspection of ICMP
The feature categorizes Internet Control Management Protocol Version 4 (ICMPv4) messages as either malicious or benign. The firewall uses stateful inspection to trust benign ICMPv4 messages that are generated
VOICE VLAN SUPPORT IN THE DELL POWERCONNECT 6200
VOICE VLAN SUPPORT IN THE DELL POWERCONNECT 6200 CONTENTS INTRODUCTION 3 REQUIREMENTS 3 USING VOICE VLAN 3 INTERACTION WITH LLDP-MED 4 VOICE VLAN CONFIGURATION 4 CLI CONFIGURATION 4 WEB CONFIGURATION 8
Configuring Auto Policy-Based Routing
This chapter describes how to configure the Auto Policy-Based Routing (PBR) feature on the Citrix NetScaler Application Delivery Controller (ADC) appliance to ensure that return traffic from the real server
Configuring Network Address Translation
CHAPTER5 Configuring Network Address Translation The information in this chapter applies to both the ACE module and the ACE appliance unless otherwise noted. This chapter contains the following major sections
LiveAction Application Note
LiveAction Application Note Layer 2 Monitoring and Host Location Using LiveAction to monitor and identify inter-/intra-switch VLAN configurations, and locating workstations within the network infrastructure.
Chapter 4 Rate Limiting
Chapter 4 Rate Limiting HP s rate limiting enables you to control the amount of bandwidth specific Ethernet traffic uses on specific interfaces, by limiting the amount of data the interface receives or
Enabling Remote Access to the ACE
CHAPTER 2 This chapter describes how to configure remote access to the Cisco Application Control Engine (ACE) module by establishing a remote connection by using the Secure Shell (SSH) or Telnet protocols.
Overview of Network Traffic Analysis
Overview of Network Traffic Analysis Network Traffic Analysis identifies which users or applications are generating traffic on your network and how much network bandwidth they are consuming. For example,
QoS: Color-Aware Policer
QoS: Color-Aware Policer First Published: August 26, 2003 Last Updated: February 28, 2006 The QoS: Color-Aware Policer enables a color-aware method of traffic policing. This feature allows you to police
IBM. Tivoli. Netcool Performance Manager. Cisco Class-Based QoS 2.2.0.0 Technology Pack. User Guide. Document Revision R2E1
Tivoli Netcool Performance Manager Document Revision R2E1 IBM Cisco Class-Based QoS 2.2.0.0 Technology Pack User Guide Note Before using this information and the product it supports, read the information
