• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 2236
  • Last Modified:

Cisco ASA 5510 and NetFlow Analyzer

Just downloaded a Trial Version of Solaris Orion with the Netflow Module Analyzer..  Is there a way i can monitor traffic that is going through my Ethernet0/0 outside interface of my ASA 5510 Cisco Firewall?
ciscoasa# show version
 
Cisco Adaptive Security Appliance Software Version 7.2(1)24
Device Manager Version 5.2(1)54
 
Compiled on Wed 18-Oct-06 15:46 by builders
System image file is "disk0:/asa721-24-k8.bin"
Config file at boot was "startup-config"
 
ciscoasa up 35 days 2 hours
 
Hardware:   ASA5510-K8, 256 MB RAM, CPU Pentium 4 Celeron 1600 MHz
Internal ATA Compact Flash, 256MB

Open in new window

0
maxalarie
Asked:
maxalarie
2 Solutions
 
Kamran ArshadIT AssociateCommented:
Hi,

I guess only the ASA 5580 support the netflow as it had the latest IOS version. You can check out the PAQ;

http://www.experts-exchange.com/Hardware/Networking_Hardware/Routers/Q_23179300.html

There is a workaround of using Nprobe;

www.ntop.org/nProbe.html 

0
 
ngravattCommented:
use this tool.  its free and works great.  

http://www.plixer.com/
0
 
jakemichaelwilsonCommented:
Thank you ngravatt.  
Scrutinizer is free and it support NetFlow from the Cisco ASA Firewall:
http://www.plixer.com/products/netflow-sflow/free-netflow-scrutinizer.php

Here is how to configure it:
http://www.plixer.com/blog/netflow/netflow-security-event-logging-with-the-cisco-asa/ 

Mike
0
Question has a verified solution.

Are you are experiencing a similar issue? Get a personalized answer when you ask a related question.

Have a better answer? Share it in a comment.

Join & Write a Comment

Featured Post

Free Tool: SSL Checker

Scans your site and returns information about your SSL implementation and certificate. Helpful for debugging and validating your SSL configuration.

One of a set of tools we are providing to everyone as a way of saying thank you for being a part of the community.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now