DX Unified Infrastructure Management

  • 1.  How to troubleshoot if no netflow information coming in NFA from router

    Posted Jun 08, 2016 01:08 AM

    Im new to CA NFA. Have to monitor network traffic in CA NFA. Team has confirmed that they have configured Netflow on router (probably its Cisco router). I have configured SNMP community string in CA NFA (9.3.3 (build50)) but nothing i can see in NFA Console under Interface tab. How can i troubleshoot wheres is the issue?

    Pls suggest.

     

    Regards,

    MP



  • 2.  Re: How to troubleshoot if no netflow information coming in NFA from router

    Posted Jun 08, 2016 09:14 AM

    The first thing I would do is use something like tcpdump or wireshark to see if flow data is being received. You will need to know that port they are sending the flows to. Once you know this it should be fairly easy to see if it's at least arriving at your harvester. If you do see the traffic arriving at your harvester, I would check if they are being processed by looking at the harvester logs.

     

    Usually if the flows are received you will see them though - so it seems an ACL or firewall is stopping them or they just haven't sent them to the correct harvester.



  • 3.  Re: How to troubleshoot if no netflow information coming in NFA from router

    Broadcom Employee
    Posted Jun 08, 2016 09:44 AM

    To followup on the last comment, here's a CA Communities doc on what to look for when running Wireshark on the Harvester to check for Netflow:

     

    Tech Tips: How to determine if a NetFlow enabled device is sending the correct fields



  • 4.  Re: How to troubleshoot if no netflow information coming in NFA from router

    Posted Jun 16, 2016 08:54 AM

    Hi Frank,

    Have used wireshark on harvester and observed that no data coming from router.

    Any idea what will be ideal netflow configuration at router side required to solve this problem?



  • 5.  Re: How to troubleshoot if no netflow information coming in NFA from router
    Best Answer

    Posted Jun 16, 2016 10:14 AM

    Hi,

    welcome in the club...

    Unfortunately, there is no "one and only" ideal netflow configuration for Cisco Routers.

    It depends at least from

    - Hardware type

    - Software type (IOS, IOS-XE, NX-OS)

    - Software Version

    There were already some discussions in the community. Maybe you'll find your ideal configuration there.

    Or you post more details about your devices. ...