Fluke Recording Equipment manual Introduction, What is NetFlow?, What is NetFlow Tracker?

Page 15

User’s Guide – version 3.1.3

NetFlow Tracker

Introduction

This document is the user manual for NetFlow Tracker, a software product designed to collect NetFlow information from Cisco equipment and present it in a meaningful way. This document does not provide any assistance with Cisco equipment itself. Please consult your Cisco documentation for any queries you have relating to the equipment itself. For more information on NetFlow from the Cisco website, go to http://www.cisco.com/go/netflow.

What is NetFlow?

A network flow is a sequence of packets between a given source and destination in one direction only. Cisco routers store and export information about the network flows they handle for network management purposes; high-end routers and switches use network flows to accelerate security processing. In order to distinguish flows from one another, the source and destination addresses and application (TCP/UDP) port numbers are used. The IP Type of Service byte, protocol type and the ifIndex of the input interface are also used to uniquely identify the flow to which a packet belongs.

What is NetFlow Tracker?

NetFlow Tracker provides a powerful but easy-to-use set of dynamic charts and reports to help the network administrator make sense of the NetFlow information provided by his routers. The focus is on troubleshooting and diagnostics; long-term analysis is not catered for.

Features and Benefits

Highly detailed view of network traffic without the need for costly probes.

Web-based front end allows users anywhere on the network to use the system.

Straightforward installation and configuration.

Can be installed on Windows, Linux and Solaris based servers.

Per-minute resolution.

Traffic statistics visible just minutes after the event.

Allows rapid diagnosis of network congestion and failure.

Useful when configuring QoS to examine the effect of a change in policy.

Stores one week of full information by default.

All real-time reports and charts can be filtered on any field.

Every real-time report and chart allows drilldown on each row or area.

Every real-time chart allows zooming in and drilling down on a selected time range.

Custom long-term reports and charts can be created.

Custom executive reports can be defined and easily accessed.

Every report and chart can be formatted as CSV for further processing.

15

Image 15
Contents NetFlow Tracker Grant of Licence and Payment of Fees Software License AgreementCopyright Customer Remedies Confidential Information and Security User’s Guide version NetFlow Tracker Definitions Supplier’s Undertakings Support ServicesSupport Charges Undertakings by YouLimitation of Liability and indemnity Intellectual Property RightsTermination Miscellaneous Confidential Information and SecurityExceptions to Support Services Support HoursResponse Times Contents LONG-TERM Reports Appendix 2 CSV File Format Introduction What is NetFlow?What is NetFlow Tracker? Features and BenefitsUser’s Guide version NetFlow Tracker Operating System Support InstallationPre-installation Checks Minimum System RequirementsInstallation on Microsoft Windows Installation on Solaris and Linux Post-installation Tasks Add listener ports Set up Snmp community stringsSet up web front-end security Configure your routers and switchesUsing NetFlow Tracker Interfaces Device traffic metersPer-AS data Working with ChartsChanging the displayed chart Chart legendZooming out View a standard chart as a pie chartView a standard chart as a tabular report ZoomingWorking with Pie Charts Working with Tabular Reports User’s Guide version NetFlow Tracker Report Templates Address ReportsSession Reports QoS Reports Network ReportsInterface Reports Report Template Creating Filtered ReportsTraffic Identification Reports Other ReportsEnd Time Sample SizeSource Data Start TimeOut VPN Out InterfaceIn/Out Interface VPNDiffServ Recognised ApplicationIdentified Application ToSDestination Mask Destination SubnetSource/Destination Subnet Source MaskFilter Editor Long-term ReportsDevices and Interfaces Per-device and Per-interface Long-term ReportsUser’s Guide version NetFlow Tracker Executive Reports Report URL Format General FormReport Format Parameters 0025 Chart0023 0024Heading NumberTrue False256 FeaturesSections 128Time Range Parameters Mon HourDay WeekCalendar-based advanced HHmm Applying a time-of-day mask to the time rangeDay1-day2/time1-time2 113 110105 100125 115120 140Daily 285300 MinuteFilter Parameters Name Port/namePort/number Prec TosPrec%20tos Code ByteAddr/mask Password PasswordSecurity Parameters Management Portal Access Control Parameters SecretNull Aclid specifies a permitted long-term report Features Query Size Performance TuningDatabase Server Settings Disk SpeedListener Ports Configuration GuideSnmp Settings LicensingDevice Settings Device SettingsDevice List Archiving Traffic ClassesIdentified Applications Security Settings VPNsDeleting a Device Management Portal Settings Report Settings Saved Filters Long-term ReportsExecutive Reports Span class=repdesctextTest/span Nelements=5 and chartWidth=400 ContentSub-reports User’s Guide version NetFlow Tracker Hostname Resolution Settings IP Application NamesDiffServ Names Database Settings AS NamesSubnet Names User’s Guide version NetFlow Tracker Archiving BackupPerformance Counters Memory SettingsMissed Exports Unprocessed FlowsetsInterface Scans Missed FlowsIp flow-export destination address Appendix 1 Device ConfigurationEnabling Netflow Export on an IOS Device Ip cefShow ip cache flow Show ip cache verbose flow Ip flow-cache timeout activeIp flow-cache timeout inactive Show ip flow exportMls aging long Ip route-cache flow infer-fieldsMls netflow Mls nde sender versionUser’s Guide version NetFlow Tracker Set mls nde address Set mls bridged-flow-statistics enable vlanlistSet mls nde enable Set system name nameEnabling Flow Detail Records on a Packeteer Device Flow-sampler-map allflows mode random one-out-of 1 exitEnabling NetFlow on an Enterasys Device Address Using sflowtool to Convert sFlow Records to NetFlowChart CSV format Appendix 2 CSV File FormatTabular report CSV format Appendix 3 Third Party Software Components