NetFlow and WCL5508

What is needed for the data capture NetFlow to a WLC5508?

5508 NetFlow is capable like routers?

Thanks - Phil

It is not standard Netflow, so you must have customized the flow collector which will include netflow WLC format.

Cisco first insurance, Scrutinizer work as a collector of flow. (may be a few other products too). Below to get an idea based on what I've tested sometimes back.

http://mrncciew.com/2013/02/13/who-really-support-WLC-NetFlow/

http://mrncciew.com/2013/02/12/Configuring-NetFlow-on-WLC-7-4/

HTH

Rasika

Pls note all useful responses *.

Tags: Cisco Wireless

Similar Questions

  • Cisco NetFlow and required IOS image

    Hello team Netpro-

    I am preparing the documents concerning the deployment of Netflow version 5 for about 20 sites around the world. I would like to know what IOS images can support this technology. Currently, some of our routers run the following IOS Images:

    (C7200-SPSERVICESK9-M), Version 12.4 (6) T, RELEASE SOFTWARE (fc1)

    (C2800NM-SPSERVICESK9-M), Version 12.4 (6) T, RELEASE SOFTWARE (fc1)

    (C3845-SPSERVICESK9-M), Version 12.3 (11) T10, VERSION of the SOFTWARE (fc4)

    (C3825-SPSERVICESK9-M), Version 12.4 (6) T2, RELEASE SOFTWARE (fc1)

    (C7200-IS-M), Version 12.4 (7), VERSION of the SOFTWARE (fc6)

    Don't you think that we still need an IOS update or not?

    Thank you in advance.

    Jay

    Also the information provided by the previous poster, I don't think you need to upgrade with the current images, that you have running, most SPSERVICES k9 images 12.4 versions take support netflow.

    I also suggest go on this link, and the link provided in front of me.

    http://www.Cisco.com/en/us/docs/iOS/12_4/NetFlow/configuration/guide/onf_gsg.html#wp1043332

    You can check in the search of features here in feature navigator http://tools.cisco.com/ITDIT/CFN/jsp/index.jsp

    Another simple way to check is by typing a question mark to the cli without entering the command on routers.

    example for this script very basic bellows on a router netflow put an exclamation mark without actual setting command

    interface

    IP route-cache?

    route IP cache flow

    Router (config) #ip import-export flows?

    Router (config) #ip flow-export versions?<-- should="" show="" all="" the="" versions="" supported="" 1,5,9,="">

    Router (config) #ip flow-cache timeout?

    stream of Router (config) #ip - high -?<--- for="" top="" talkers="">

    IP flow-export destination

    IP flow-export version 5

    IP flow-cache timeout active 1

    flow-cache IP 15 idle timeout

    IP high speed-flyers

    Top 10

    Sorting bytes

    (C3845-SPSERVICESK9-M), Version 12.3 (11) T10, VERSION of the SOFTWARE (fc4)< ---="" this="" one="" should="" also="" be="" able="" to="" support="">

    PLS note any useful message if it helps

    Rgds

    Jorge

  • EZVPN leak netflow and ntp to ISP

    I have a G 881 with a cellular modem from verizon with EZVPN in network Extension mode. This config is running Netflow packets directly on the cell interface. I want them to go to my IPSEC tunnel to my internal Netflow collector. Same thing is happening to NTP. Because these packages have (10.x.x.x) private IP addresses to the source field that Verizon maintains close the cell interface. I tried natting and ACL, but because these packages are generated by the router, it allows to circumvent these mechanisms.

    Does anyone have a work around for this problem.

    Have you tried your traffic NTP and Netflow how to associate a specific interface on your router? These interfaces include your field of encryption.

    Examples:

    IP flow-export Loopback0 source

    source NTP Loopback0

  • TrustSec on WS-C3850-24 t

    Hello

    I want to configure security switch-switch link. (manual mode) on a Cisco 3850 IP basis.

    But under "sap... mode-list" is the only entry: No.-encap

    I need to gcm - encrypt, but this option is not displayed.

    SW version: 03.06.00E

    SW Image: cat3k_caa-universalk9

    License level: Ipbase

    Model: WS-C3850-24 t

    What could be the problem?

    Best regards

    3850 material is able to effect, but it is not yet implemented in the software:

    It's the 3850 Q & A:

    Q. what service modules for the Cisco Catalyst 3850?
    A. There is no service for the Cisco Catalyst 3850 module. Features supported by the service module of 3750-X (including Flexible NetFlow and effect *) are natively supported by the Cisco Catalyst 3850.
    * Software support effect could be added later as part of a software update.
  • GDOI------GETVPN - GM of the router is not encrypted traffic

    Group Member (GM) router in a GDOI environment, is not having it is Netflow and Syslog traffic encrypted. Traffic comes from the loopback interface that is included in the ACL to the key server.

    All other traffic originating behind the GM router is encrypted.

    Any help?

    What debug commands could help pin point how this Netflow traffic is treated, compared to GDOI?

    Thanks in advance.

    NetFlow Traffic is not encrypted by default. There is a bug that cscef28662 filed demanding to implement this feature for netflow traffic as well.

  • GLC - T in C3KX-NM - 10G, duplex full does not

    I C3750X with C3KX-NM - 10G and have T SFP in the Groove 3 (means it is not in the SFP + slot).

    I need the value of speed & duplex hard 100/Full, but if I do the link goes down. I have the same settings on the other side, only the IOS version is different.

    I tried other speeds - 10 and 1000, but no one works with full. When I change to Auto duplex, it works fine.

    The reason why I am doing this on C3KX-NM - 10 G is because I need to use NetFlow and cannot use the copper port chassis. Currently, the ports are connected by a copper cable, but full production there will be a radio link between that requires 100 M/Full to set hard.

    I am looking for all the documents that describe this limitation, but can not find. Also the capacity of the port indicate duplex not could not be set to full:

    display interfaces g1/1/3 functions

    GigabitEthernet1/1/3

    Model: WS-C3750X - 48P

    Type: 10/100/1000BaseTX SFP

    Speed: auto 10,100,1000,10000,

    Duplex: half, full, auto

    ENCAP of trunk. type: 802. 1 q, ISL

    Trunk mode: on, off, desirable, nonegotiate

    Channel: Yes

    Removal of broadcast: percentage(0-100)

    FlowControl: rx-(off,on,desired), tx-(none)

    Fast Start: Yes

    QoS scheduling: rx-(not configurable on a per port basis),

    TX-(4q3t) (3T: two configurable values and one fixed.)

    Rewrite coS: Yes

    ToS rewrite: Yes

    UNI-DIRECTIONAL: Yes

    Food online: no

    SPAN: source/destination

    PortSecure: Yes

    Dot1x: Yes

    Any help is appreciated.

    Looks to me that you do not have the right cable and auto mdix corrects for it.  Auto mdix 'only' works as auto/auto and it will pick up the ports or auto.  You would need a crossover cable if you want to hardcode the ports.

  • ACI and Netflow

    ACI tissue can export netflow data, and if so, are there guides/examples of configuration?

    Hello!

    Please use the support forums!

    NetFlow support will be released in December/January calendar. Looking forward to some documents of configuration then!

  • IPSec tunnel and NetFlow packets

    I have a router 1841 IPSec running with an ASA. F0/0 is the source interface. I also set up NetFlow, which must be sent through the IPSec tunnel to the parser. The acl setting the IPSec interesting traffic covers addresses, source and destination of NetFlow. But NetFlow Traffic is not captured by the tunnel. When I ping the destination router, icmp traffic is picked up and goes through the tunnel. Are there ways to force NetFlow traffic to go to the tunnel?

    Thank you.

    Y at - it a route to the destination address of netflow? I have noted problems with traffic heading towards a destination that was not in the routing table is not made down a VPN.

  • ASA 5510 can be configured as bridge mode and always send Netflow information to a collector

    ASA 5510 can be configured as bridge mode and always send Netflow information to a collector?

    We have a PIX connect internal network to the internet. Because PIX does not support NetFlow, as temporary solution, we thought to a 5510 ASA between the PIX and the internet gateway and configure as a bridge so that there will be no problem routing, and the SAA can always send Netflow information to a collector.

    Can someone please advise if this is possible?

    Thank you.

    I have not tried, but as a Netflow service policy should work in routed and transparent mode. Reference.

    Why don't you just replace the Pix with the ASA in routed mode?

  • Ports required by the update ThinkVantage Retriever (TVUR) and ThinkVantage System Update (TVSU)

    I need some documetnation which details the ports that are required for the update of ThinkVantage Retriever (TVUR), ThinkVantage System Update (TVSU) and ThinkVantage ThinInstaller work properly.

    Bonus: Would be great a list of guests they link to.

    In this business environment, we do not use a proxy server, but to put the other technologies to protect our potential end-users perpetrators and themselves.  Of course, it has its drawbacks.

    One of those disadvantages is that TVSU and TVUR do not work properly (queries fail, can not download updates).  If we take this home machine run TVSU and TVUR, it works fine.  Clearly its an internal matter which should be corrected.

    However, while our security and network management team is probably pleased to add the exclsusions, they will want to know what ports are used and perhaps what specific external resources we cannot reach.

    It's probably docmented somewhere?

    Hello

    Extent of Lenovo knowledgebase article https://support.lenovo.com/us/en/documents/ht002421 :

    • Make sure that ports 443 and 80 are open on your personal firewall or company.

    but do not mention the host names or IP address ranges, you may need to make a capture of packets, similar to netflow, etc. to determine the servers at the other end.

    Kind regards

    Aryeh Goretsky

  • How to clean the monitor of NetFlow data

    Hello people.

    I activated the NetFlow monitor on some routers, it collected data since 2 months ago. I noticed that NetFlow monitor uses more space to store data, so I was wondering if there is a way to clean up this data?

    The current the NMS database is running on SQL Server 2008 R2.

    Thanks in advance for your help.

    Hello

    Run this query on your DB NEM, and it will give you the results you're looking for.

    http://communities.quest.com/docs/doc-14838

    Thank you.

  • How do I get hp netflow 2601

    How do I get hp netflow 2601

    Hello

    If the device supports SFlow, simply point the flow to the IP address of the collector agent. And make sure your 2601 is a policy where the NetFlow monitor is selected.

  • Unable to get the Netflow data in Foglight NMS

    Hello everyone I hope that there are people out there who can give me a helping hand. I recently installed Foglight NMS version 6.8.24371 and I'm trying to do declare my my Adtran Netvanta 3305 netflow traffic information. I have setup the netflows on my router for export. The router indicates he sent successfully to my foglight agent ip address. With wireshark, I checked that he has actually flows from the router with my agent machine (which is the Studio is installed as well). I've also temporarily installed Scrutinizer and I managed to collect netflow data. If I do a check condition of monitoring it shows it has collected any netflow. Any help troubleshooting this would be greatly appreciated.

    Hi Paul,.

    Is a feature of netflow in a policy where the NetFlow monitor is selected? Also, please click on the option settings, to the right of the screen. Make sure all the boxes are ticked.

    Thank you.

    Mario

  • Configuration of the net flows on ASR 901 and 902 ASR

    Hello

    Can you please confirm if the devices ASR 901 and 902 support NetFlow. We want to draw graphs of use for physical but also virtual interfaces on the routers.

    ASR 902 IOS:
    Cisco IOS XE, Version 03.13.01.S - XR support software

    ASR 903 IOS:
    Cisco IOS software, software of ASR903 (PPC_LINUX_IOSD-UNIVERSALK9_NPE-M), Version 15.4 (3) S1, VERSION of the SOFTWARE (fc3)

    ASR 901 IOS:
    Cisco IOS Software, software Version 15.4, 901 (ASR901-UNIVERSALK9-M) (3) S1, VERSION of the SOFTWARE (fc1)

    Please advise there at - it another way to do it.

    Thanks in advance,

    Best regards

    Aneesh

    Hello

    consult the data sheet it resembles that Netflow is not supported.

    http://www.Cisco.com/c/en/us/products/collateral/routers/ASR-903-series-...

    Anterov

  • Using netflow ntop configuration

    Looking for advice on getting NTOP to work.  I have installed the app, can access.  I have configured my router 2821 with Netflow by the example of configuration, using the Internet as a source and the LAN onplus as the destination interface.  I do not use the port of LUN.  My NTOP Web page does not display anything, no packages, summary, etc. are all empty.  My router shows no error when I run "sh ip flow export.  What Miss me?

    Maybe that's it... you have to 'assets' the NTOP for Netflow plugin. Once it is activated, you will see the "peripheral NetFlow in the list of devices on the 'Global Taffic statistics' page. Don't forget to set the port in NTOP configuration in 2055 as well.

    Regarding ports LAN and LUN, the LAN port is eth0 and the port of LUN is eth1. These are just generic passive listening ports, and as a general rule, only the port 'eth1' is useful, when it is connected to a mirror/span on a switch/router port. None of them are useful for NetFlow.

    Robert

Maybe you are looking for