Solved

Netflow Randomly Stopped Working

Posted on 2013-07-01
2
995 Views
Last Modified: 2013-07-26
I have a Cisco ASA 5515 and a 2921 ISR that I have configured to receive netflow data from.  Both devices have been working perfectly for several months.  All of a sudden, both devices stopped sending netflow packets at about the same time.  I performed an #clear ip flow stats on the 2921, and it appears to be working again.  I can find no such command for the ASA.  I rebuilt the configuration for netflow on the ASA with no success.  Does netflow fill up the cache after a while and stop sending flows?  Is there any way to configure some kind of circular logging for such data?  Is there any way to clear the cache on the ASA appliance?
0
Comment
Question by:marrj
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
2 Comments
 
LVL 17

Expert Comment

by:surbabu140977
ID: 39297140
flow-export destination inside <IP> <port>
flow-export delay flow-create 30
flow-export template timeout-rate 1

Then policy-map/class map your choice with ACL.

Please remember ASA will support only version 9. (in your collector check for version mismatch)

Most of the times it will be collector issue. Every collector won't work great with ASA. You might need to contact your collector vendor. But try using solarwinds  Orion NTA 3.5 SP2 demo for testing, if it's collecting data then problem is in the software.

Best,
0
 
LVL 17

Accepted Solution

by:
surbabu140977 earned 500 total points
ID: 39297162
Plixer also seem to support it. Test any one (solarwinds or plixer) to see if netflow data is actually coming or not. If not coming, asa is the issue, if coming- your collector is the issue.

http://www.plixer.com/blog/netflow/netflow-security-event-logging-with-the-cisco-asa/

Best,
0

Featured Post

On Demand Webinar - Networking for the Cloud Era

This webinar discusses:
-Common barriers companies experience when moving to the cloud
-How SD-WAN changes the way we look at networks
-Best practices customers should employ moving forward with cloud migration
-What happens behind the scenes of SteelConnect’s one-click button

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
help Skype for Business keeps dropping 7 97
BGP Local Preference 5 80
AS-Path BGP Attribute 7 43
patch status tool - free 9 60
Shadow IT is coming out of the shadows as more businesses are choosing cloud-based applications. It is now a multi-cloud world for most organizations. Simultaneously, most businesses have yet to consolidate with one cloud provider or define an offic…
Use of TCL script on Cisco devices:  - create file and merge it with running configuration to apply configuration changes
This video gives you a great overview about bandwidth monitoring with SNMP and WMI with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're looking for how to monitor bandwidth using netflow or packet s…
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

734 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question