Solved

Cisco Netflow: not supported on my device

Posted on 2014-02-10
4
862 Views
Last Modified: 2014-02-25
I am fairly new to Cisco and was wanting to use Netflow on our network to diagnose network issues.

We currently have Cisco Catalyst 2960 switches, which do not support Netflow.

If we purchase one Cisco switch that does support Netflow, will we then be able to track network traffic across all of our switches? or do all of our switches need to support Netflow?
0
Comment
Question by:AVIVOL
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
  • 2
4 Comments
 
LVL 12

Expert Comment

by:Infamus
ID: 39848963
What information do you want out of netflow?

Wan traffic or LAN traffic? or All of them?

How is your network setup?  Are access switches connected to the core switches?
0
 

Author Comment

by:AVIVOL
ID: 39849107
What information do you want out of netflow?

We are experiencing an issue currently where someone/something is causing the link between two office to use its maximum bandwidth, we would like to find the cause of this traffic. We'd like to trace traffic volume (or top n traffic volume) back to specific users/ports out on the floor/rack.

Also we would like to get a better understanding of what general traffic is on our network. (where it is coming from, where it is going, what type of traffic it is etc.)

Wan traffic or LAN traffic? or All of them?

Both.

How is your network setup?  Are access switches connected to the core switches?

Yes, all access switches are connected to the core switches.
Core switches are: Cisco 2960s
Access switches are: Cisco 2960
0
 
LVL 7

Accepted Solution

by:
unfragmented earned 500 total points
ID: 39849517
I'd say a much cheaper way to do this as a one-off is with a span port (supported on the 2960) on the switch connected to a decent PC running wireshark or similar.  If you really want "netflow" then you can probably buy a software netflow probe to put on the PC, that will export "netflow" data for your netflow collector to work with.

Otherwise you will be spending $$$ on netflow capable switches (in the Cisco camp, think 3850 or 3750X with NF module as a minimum).

To answer your question, one netflow switch as one of your cores would do the job, as that will intercept all traffic between offices.  Netflow will show you source and destination IP which you can trace to a port, even if the port is on an access switch.
0
 
LVL 12

Expert Comment

by:Infamus
ID: 39850480
You can purchase a layer 3 switch that supports the netflow and monitor the interface which connects to another site. Then you can use netflow software to see the traffic.

You can also span the interface and use wireshard as unfragmented mentioned.
0

Featured Post

Surfing Is Meant To Be Done Outdoors

Featuring its rugged IP67 compliant exterior and delivering broad, fast, and reliable Wi-Fi coverage, the AP322 is the ideal solution for the outdoors. Manage this AP with either a Firebox as a gateway controller, or with the Wi-Fi Cloud for an expanded set of management features

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
Stack 2x HP ProCurve 5406zl Switches 9 18
VoIP Polycom Phones not working 30 50
802.1x and RDP Issues 6 80
Layer 3 switch recommendation 15 60
Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
Use of TCL script on Cisco devices:  - create file and merge it with running configuration to apply configuration changes
Get a first impression of how PRTG looks and learn how it works.   This video is a short introduction to PRTG, as an initial overview or as a quick start for new PRTG users.
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question