Seeing Netflow data through Orion from inside firewall
Posted on 2010-09-21
Hi all. I am rather inexperienced Orion/Netflow user. I downloaded the trial version and installed the full suite on a desktop placed outside our firewall. I collected Netflow data (v.5) just fine. However, the goal is to collect it from inside our network before the firewall. The firewall is many-to-one NATting everything. This seems to be the only difference. I had the checkpoint firewall ports opened 2055 and 9996 (I believe), 161, etc. I can add the device but it still shows "down". It shows the router (a Cisco 2821) as being a netflow source, and my router is indeed configured and set up to send to the collector.
What is happening? I have searched for days and cant' seem to find the answer. I even changed to version 9 on the router to see if that would help (I heard v9 is configured to work with NAT)....
Any help would be appreciated