Fluke Computer Accessories manual Enabling Flow Detail Records on a Packeteer Device

Page 83

User’s Guide – version 3.5

NetFlow Tracker

Configuring NetFlow Input Filters for Traffic Class Reporting

IOS versions 12.2(25)S, 12.2(27)SBC and 12.3(4)T and greater support the NetFlow Input Filters feature, which can be used by NetFlow Tracker to report upon the traffic class used to route each flow.

flow-sampler-map allflows mode random one-out-of 1 exit

Create a flow sampler that exports every flow record.

policy-map netflowpolicymap class <class> netflow-sampler allflows exit

exit

Create a policy map containing NetFlow sampling actions; you must include each class that you would like information on.

interface <interface>

service-policy input netflowpolicymap

exit

Associate the policy map with an interface; you must associate the policy map with each NetFlow-enabled interface that you would like traffic class information from.

Enabling Flow Detail Records on a Packeteer Device

A Packeteer 1200, 1550, 2500, 4500, 6500, 8500, 9500, or 10000 series running PacketWise v7.0.0 or above and having 256MB or more of memory can be configured to send either NetFlow records or a similar proprietary format to NetFlow Tracker. For more information visit http://support.packeteer.com/documentation/packetguide/rc3.1/overviews/flowde tail.htm

To enable Flow Detail Records, first log in to the PacketShaper in touch mode, then open the “flow detail records” page on the “setup” tab. In one of the collector rows, enter the IP address of the NetFlow Tracker server and one of the ports configured in the Listener Ports settings page (2055 is monitored by default). Packeteer-1 is the recommended record type for use with NetFlow Tracker; Packeteer-2 is also supported but NetFlow Tracker does not use any of the extra information and thus it is wasteful of network bandwidth between the PacketShaper and the NetFlow Tracker server. You can also choose to export NetFlow v5 records; this will prevent the Traffic Classes and Identified Applications reports and filters from functioning for the device. Finally, set the value under “Enabled” to “on” and click “apply changes…”.

83

Image 83
Contents NetFlow Tracker Contents LONG-TERM Reports Appendix 2 CSV File Format Grant of Licence and Payment of Fees Software License AgreementCopyright Customer Remedies Confidential Information and Security User’s Guide version NetFlow Tracker Definitions Supplier’s Undertakings Support ServicesSupport Charges Undertakings by YouTermination Limitation of Liability and indemnityIntellectual Property Rights Miscellaneous Confidential Information and SecurityResponse Times Exceptions to Support ServicesSupport Hours Introduction What is NetFlow?What is NetFlow Tracker? Features and BenefitsUser’s Guide version NetFlow Tracker Operating System Support InstallationPre-installation Checks Minimum System RequirementsInstallation on Microsoft Windows Installation on Linux Post-installation Tasks Add listener ports Set up Snmp community stringsSet up web front-end security Configure your routers and switchesUsing NetFlow Tracker Interfaces Device traffic metersPer-AS data Working with ChartsChanging the displayed chart Chart legendZooming out View a standard chart as a pie chartView a standard chart as a tabular report ZoomingOpen the chart in a new window Alter the filter applied to a standard chartExport a chart to another application Print the chartWorking with Tabular Reports Working with Pie ChartsExamine a single row Sort a tabular reportSession Reports Report TemplatesAddress Reports Network Reports QoS ReportsOther Reports Creating Filtered ReportsInterface Reports Traffic Identification ReportsStart time Report templateSample size Source dataOut interface Time zoneSource device InterfaceSrc/dest port ProtocolSource port Dest portDest AS DiffServTraffic class Source ASFilter Editor Long-term ReportsDevices and Interfaces Per-device and Per-interface Long-term ReportsUser’s Guide version NetFlow Tracker Reports Report Format Parameters Report URL FormatGeneral Form 0026 00230024 0025True ChartPie Number256 FeaturesSections 128Time Range Parameters Week MillisHour DayCalendar-based advanced Time range will extend for this number of unitsDay1-day2/time1-time2 HHmmApplying a time-of-day mask to the time range 113 110105 100125 115120 140Daily 285300 MinuteFilter Parameters Port1-port2 NameAddr1-addr2 Port1-port2/number Port/namePort/number Port1-port2/nameCode PrecTos Prec%20tosMask Addr/maskUsername PasswordSecurity Parameters Null Management Portal Access Control ParametersSecret VPN Out VPN Refresh and Resolve All buttons, if applicable Chart scrollbarChart selection headers Filter Editor button, if applicableQuery Size Performance TuningDatabase Server Settings Disk SpeedListener Ports Configuration GuideSnmp Settings LicensingDevice List Device SettingsDevice Settings Sampled Data Scaling VPNs Security SettingsHttp//proxy/tracker1/report.jsp?portalacl= Management Portal SettingsHttp//proxy/tracker1/report1 Http//tracker1/report.jsp?portalsecret=secret&aclif=ProxyPassReverse /tracker1/ http//1.2.3.4 Using Apache as a Portal ServerRewriteEngine On RewriteRule /tracker1/.*$ http//1.2.3.4/$1 P,L,QSAReal-time Reports Report SettingsGeneral Settings Scheduled Reports Saved FiltersLong-term Reports Executive Reports Span class=repdesctextTest/span Sub-reports Nelements=5 and chartWidth=400Content User’s Guide version NetFlow Tracker DiffServ Names Hostname Resolution SettingsIP Application Names Subnet Names Database SettingsAS Names Backup Performance Counters Memory SettingsArchiving Unprocessed Flowsets NetFlow Data ReceivedTraffic Described Ignored FlowsNo In Interface AboutIp flow-export destination address Appendix 1 Device ConfigurationEnabling Netflow Export on an IOS Device Ip cefShow ip cache flow Show ip cache verbose flow Ip flow-cache timeout activeIp flow-cache timeout inactive Show ip flow exportMls aging long Ip route-cache flow infer-fieldsMls netflow Mls nde sender versionUser’s Guide version NetFlow Tracker Set mls nde address Set mls bridged-flow-statistics enable vlanlistSet mls nde enable Set system name nameEnabling Flow Detail Records on a Packeteer Device Flow-sampler-map allflows mode random one-out-of 1 exitEnabling NetFlow on an Enterasys Device Tabular report CSV format Chart CSV formatPie chart CSV format Appendix 2 CSV File FormatTabular report XML format Chart XML formatPie chart XML format Appendix 3 XML FormatAppendix 4 Third Party Software Components JspSmartUpload Quartz