• Status: Solved
  • Priority: Medium
  • Security: Public
  • Views: 109
  • Last Modified:

netflow on ASA 5500 series

I have never configured netflow on the ASA and after my research, I see that you can configure netflow or NSEL. Are those the same thing? Is there any performance issue when implementing Netflow on the ASA? Any tips? Thanks
0
leblanc
Asked:
leblanc
1 Solution
 
Joey YungSenior Network EngineerCommented:
The following link provided a good reference of NSEL:

https://www.plixer.com/blog/netflow/what-is-nsel-a-deeper-look-part-1/

BTW, I never try to enable netflow which is below ASA552x model.
0
 
Michael OrtegaSales & Systems EngineerCommented:
Here's a good sample config. I'm assuming you're sending the Flow data to a host outside your organization and that the name of your outside interface is "outside".

snmp-server host outside 1.1.1.1 community SNMPNAME version 2c
snmp-server location LOCATION-NAME
snmp-server enable traps all
!
flow-export destination outside 1.1.1.1 2055
flow-export template timeout-rate 1
flow-export delay flow-create 60
!
access-list netflow-export extended permit ip any any
!
class-map netflow-export-class
 match access-list netflow-export
!
policy-map global_policy
 class inspection_default
   inspect snmp
 class netflow-export-class
  flow-export event-type all destination 1.1.1.1
0

Featured Post

[Webinar] Cloud and Mobile-First Strategy

Maybe you’ve fully adopted the cloud since the beginning. Or maybe you started with on-prem resources but are pursuing a “cloud and mobile first” strategy. Getting to that end state has its challenges. Discover how to build out a 100% cloud and mobile IT strategy in this webinar.

Tackle projects and never again get stuck behind a technical roadblock.
Join Now