NET FLOW - monitoring Sites web?
Hello all, I have one Cisco ASA 5100. We need monitor what sites a most access , and what sites and users consumed most network band. Exemple. ip source X Youtube.com X 10GB IP source X one drive X 5GB Ip source X Office365. X 2GB have this report? thanks a lot.
Traffic Report Export as CSV
I am exporting the traffic report as CSV for some period(say Monthly). In that report day wise only avg IN & OUT utilization is coming. I want Max IN & OUT utilization in my CSV. Please suggest me how to get the required. I am attaching the screenshot herewith for clearence. Image1: Traffic for Sep 2 2015 Image2: CSV for month SEP 2015 In CSV, want Max IN & OUT to be exported. Please help Thanks!
Default Dashboard Views
Hi, I have two queries regarding the default Dashboard views that we are presented with when using Manage Engine NetFlow: 1. What is the 'Top Devices by Speed' output actually telling us? It doesn't seem to be an aggregation of the traffic traversing the interfaces on the device being monitored.... 2. We have multiple 'Guest's' logging into our NetFlow Reporter all looking at their own specific network elements. I want groups of Guests to have a specific Dashboard when they log in. Problem seems
Extract current bandwidth utilisation
Our support guys use NetFlow Analyser for monitoring bandwidth utilisation (etc) but I've been tasked with extracting the usage of some of our links onto a dashboard overview screen. I have had a quick look through the MySQL database that NetFlow logs to and can see the interface speed, but current traffic seems to be held within the "raw" tables. I understand that the exact raw table name will depend upon the time we're interested in, but can someone guide me on how to combine the data held within
Attempting to uninstall unable to find Jre
Hello all! I hope this is the right place to ask. Sorry if it isn't. Let me know if there is a better place. I installed this on a test machine, I like the product, but the issue is uninstalling it from the test machine. The test machine is a Ubuntu 14.04 64bit machine. I installed Netflow Analyzer 11. It installed fine, and functions as it should. However I need to uninstall it. When I run: ./uninstaller.bin I get the following: This application requires a Java Run Time Environment (JRE)
How to use Netflow to monitor the VoIP traffic between two campuses
Hi, We have setup the netflow on our core switch to export information to our Netflow server Manage Engine. I would like to know/monitor all the VoIP traffic both direction that has been marked properly, in our case with DSCP value EF. I have configured the following on our Core switch Cisco VS-C6504E-SUP2T: flow record MBSL-FLOW match ipv4 source address match ipv4 destination address collect counter bytes collect counter packets match transport tcp flags match transport destination-port match
Manage Engine License Migration and Upgrade
Hi, I have a license for NFA9.x till March 2016 and i upgrade the Netflow Analyzer to version 11.x where i like to use the existing license. Is it possible such a way. Thanks, Ramesh
Migration Queries
Hi there, We are running NetFlow Analyzer Build 9870 with MySQL database on a 32 bit Linux server. We want to migrate this to a 64 bit Linux server prior to updating to the latest build. We have installed the 64 bit version of NFA Build 9870 on a new 64 bit virtual Linux server. This was worked OK but we have run into an issue which is preventing us from proceeding further. The new installation appears to have installed postgres as the database. Our present running system is running MySQL and
NetFlow configuration on Cisco IOS XE v
Dear All, Hope you're doing well :) I need a small help, hope someone could kindly assist ? I have a Cisco 4451X router running IOS XE Version 03.15.01.S I have configured netflow on this router as follows: +++++++ Begin ++++++++ flow record SingNet-Internet-Traffic match ipv4 protocol match ipv4 source address match ipv4 destination address match transport source-port match transport destination-port ! ! flow exporter SingNet-Internet-Traffic destination 130.24.24.166 <<<<<<<<<<<<< This IP
Multiple Link down (Link status) Profiles neeeds to be created through Net-Flow
Hai, I want to create a multiple link down alerts in Link status category for my individual WAN links and alert mails needs to be forwarded to my help desk portal mail ID to generate unique ticket for each links. If i try to create a new alert profile by default i am getting utilization category alert profile only. How can i achieve this through net-flow. Any one can quickly respond it will be great.
Adding user thorugh API
Hi, Can I add /modify users through API ? Thanks
ifindex name
Hi, I was just configured net flow on my fortigate 200d firewall successfully. netflow is enabled on single interface. ex: WAN . but i was able to see the 3 interfaces on the net-flow console. and these interface are not showing as it is. it is showing as ex: ifindex1,2 and 23. where i can set the exact bandwidth of my WAN link, so i can figure out the exact in - out traffic. Thanks and regards, JM
How does it work?
Im new to the product but the company i work for have version 9.x är its not working verry good and we need a new one, i have installed a new netflow analyzer on linux and its working fine but i don know how to get it to collect snmp trafic from our 50 riverbed devices. i have add servers IP in riverbed in one site so i get access to collect data. And i have Add the riverbed IP to "Settings - Discovery - Add Network" and type in the IP and it finds it I have also create a Credential profile with
User traffic based on Destination
Hello User traffic based of Destination takes ages to load the screen. Raw data setting kept to only 1 Day. Still the page takes too long to display. Can anyone guide me to fix it plz ? Regards Cleetus
how to make netflow run on centos startup
iam new in using linux and netflow, i want to know how to make netflow run on centos startup? can you give me a solution, thanks before
V11 install, device discovery "INPROGRESS"
I been using NetFlow for a number of years and I really appreciate the application. Today I installed V11, no migration, on the same linux server so no configuration changes on either the linux server or router. I tried adding my router IP address from the "Discovery, Add SNMP Devices" and the Status column shows "INPROGRESS" for more then 20 minutes now. I read some of the forum posting which suggested I run SnmpWalk.sh, it ran successfully without any errors. Any troubleshooting ideas?
Where can I check for updates to NFA11.0.1
Hi, I'm trying to check to see if there are any updates available for NFA 11.0.1 but I can't find any reference to version 11 on any of the download links. Can someone tell me where I should look for updates to this version of the product please. Thanks, Ben
How do I change the port of the Netflow Plug-in for OpManager
We have OpManager build 11600 installed, as well as the Netflow Plug-In both on the same server. We have configured OpManager to use an SSL certificate we generated from our internal certificate authority and that is working fine. When we go to "network" and then "netflow" it say's the page cannot be displayed. At the top of the screen it say's. "NetFlow Plug-In has not started because NetFlow Plug-In is not changed to secure mode". I have done the following per documentation: 1. stop opmanager
Automatic Interface Names
Hi, How to get the Interface Names automatically using the NetFlow Analyzer Thanks, Ramesh
ManageEngine Netflow analyzer doesn't receive mikrotik netflow traffic.
Hi, I installed trial version of Manage Engine NetFlow analyzer on windows 2008 R2 and config the Mikrotik router to send NetFlow to the NetFlow analyzer application on specified port and IP. but it didn't work and no interface showed in the NetFlow analyzer. I captured the traffic with wireshark and saw that NetFlow traffic is received on specified port. What happened and what can I do?
Rebuilding Traffic Analysis Graphs
Hi, I have a problem our client is using Netflow Analyzer and has tasked us to rebuild some of the reports. We are having a problem finding the tables from which the Traffic Analysis reports are based. We have looked everywhere in the DB but no luck. Can someone please help but listing the tables I need to check? I have attached a sample report that I'm struggling with, it's called The Top 10 switches by difference in avg utilization.
Traffic Analysis Data from Netflow Analyzer
Hi I have a problem, our client uses Netflow Analyzer I'm not sure which version but the problem is that we are trying to rebuild the Traffic Analysis Reports eg. Top 10 switches by difference in average utilization but we are struggling to find where the data is sitting in the database. I've attached a sample report below.
MSSQL Tuning for Netflow / Opmanager
Hi, Is there any sort of document or guide on configuring and tuning MSSQL for use as NFA / Opmanager Database? A lot of the install guides I have seen simply say 'Install MSSQL and use as the database'. For example, I have seen the 'Java Tuning' guide, something along those lines for MSSQL would be handy. Thanks
Map IP addresses to a name
Hi all, We are currently using build version 11001. When we run a report to show source IP addresses, we would like to be able to map these IP addresses to a friendly name. For example, if we run a report to show traffic on port 2221, the report currently shows the source IP address. We would like it to display the Customer Name or location name (a friendly name that makes it easy for a non technical user to understand.) if possible. We allocate an IP address to each of our customers, so it would
Can I setup ManageEngine Netflow Analyzer on proxmox vm ?
I try to install ManageEngine Netflow Analyzer on proxmox vm, but alway get problem. At the frst step to install it i get this notice : InstallShield WizardInitializing InstallShield Wizard…Searching for Java(tm) Virtual Machine… . Preparing Java(tm) Virtual Machine… so its vitual on virtual, can we install ManageEngine Netflow Analyzer on proxmox vm ? cause i got problem to install it on proxmox vm debian and proxmox vm centos thanks before, nice to know ManageEngine netflow
Spikes in traffic graphs
Hello, I am monitoring an interface on a cisco 3925 router. its a gig interface that is statically set to 100 meg/full duplex. The actual port speed subscribed to from the carrier is 20 megabits up/down. on our traffic graph we are getting spikes up to 100 meg or higher some times that throws off the view of the graph. From the carriers perspective they are shaping it down so theirs no way we could receive over 20 megabits at a time. Can someone help me understand why we are getting these spikes
Inbound spikes in graph
Hello, I'm monitoring a gig ethernet interface on Cisco 3925 router. On our 1 minute average traffic graph there are spikes going up to 100 megabits. I'm not sure why these are being reported because I don't believe the carrier is pushing that much traffic towards us. The interface config is below: p0_wan_r1#sh run int gig0/1 Building configuration... Current configuration : 157 bytes ! interface GigabitEthernet0/1 bandwidth 20000 no ip address duplex full speed 100 service-policy output SHAPING-PM
Unable to start Netflow server.
Hi, We are having problems while starting the Server. INFO | jvm 1 | 2015/08/26 12:30:39 | INFO | jvm 1 | 2015/08/26 12:30:39 | INFO | jvm 1 | 2015/08/26 12:30:39 | Problem while Starting Server INFO | jvm 1 | 2015/08/26 12:30:39 | System halted STATUS | wrapper | 2015/08/26 12:30:42 | <-- Wrapper Stopped WARN | wrapper | 2015/08/26 12:30:52 | Timed out waiting for wrapperServiceMain STATUS | wrapper | 2015/08/26 12:31:16 | --> Wrapper Started as Service STATUS | wrapper
Netflow Does Not Display Conversations
Hi, in the last days I have this problem with severals Interfaces (Not All) If i want to see the conversations of the last 15 Minutes or last Hour it does not Show me nothing, I can see the grafic but I can not see any conversation It just Work if i put Last 6 Hours or last day or any other big value. Do you have any idea Why can this happend? Thank you!!!
WAN Link down report from Netflow Analyzer
Hai, Is it possible to generate the WAN link down report from netflow analyzer. If possible kindly share some snapshots for the same. I wan to generate the Link UP/Down report from Netflow in Excel format.
Uninstalling NetFlow Analyzer
Hi, I want uninstall netflow analyzer, Linux version, and install it on another server, but when I give the command ./uninstaller.bin I receive: This application requires a Java Run Time Environment (JRE) to run. Searching for one on your computer was not successful. Please use the command line switch -is:javahome to specify a valid JRE. For more help use the option -is:help. Can you help me? Thanks
Audit
I want to audit my firewall but I don't know how to manipulate the firewall analyzer any hep? thank you
Only 1 SSID is visible in Netflow version 11.5, 3 SSID from WLC being enabled.
Hi ManageEngine, As we are testing with the beta release for version11.5, we can now see flows coming in but only for 1 SSID in which we enabled 3 SSID for monitoring, Appreciate any feedback coming from you. Thanks, Ryan P.
Unable to get download details by LAN IP
Hi , I am using essential (free edition) of Netflow analyzer 11.0 , with Router Mikrotik 750GL , WAN cable connected to port 1 and LAN cable connected to port 2 which goes to another switch. I am getting proper as per my requirement , upload details with proper LAN IP address (Src IP) and WAN address (Dest) e.g. Source IP 192.168.10.56 and destination IP (A.B.C.D) and upload data size. But I am facing problem for Downloading details e.g. Src IP (A.B.C.D) and it is showing my destination ip
API
Hello, I'm new to the Netflow Analyzer world and currently messing with the 30 day trial. I'm looking for a way get top X destinations for the last Y minutes on a specific device/interface using the API. Is this currently possible? An example would be outstanding :) Thank you! Ivan
Does NFA have a monthly interface utilization trend report?
I have inherited a NFA 9.8.6 implementation, am new to this particular Netflow tool, and was wondering if there is a way to build capacity planning reports that would show peak/avg utilization over a month for groups of interfaces, with 95th percentiles, weekday and business hours filters, trending from prior months, etc. When I try to add new reports it looks like the only option is one router at a time.
Error Code : 10000 - Unable to shutdown or restart the Netflow Service
Team, Unable to shutodn or restart the netflow service. am getting the below error. Pls do the needful. Check webServerPort http value : 8080 https Port : null PortCheckerUtil.getPort : serviceName :NETFLOW_LISTENER_PORT Flag : true NFAPropFile :D:\Manage Engine\NetFlow\bin\..\conf\netflow\nfa.properties PortValue is : 9996 Check for NetFlow Port with value :9996 PortCheckerUtil.checkPorts :9996 Already Server seems to be running Error Code : 10000
Install of Netflow on windows 2012 server
I have been trying to install both the 32bit and 64bit of opmanager plugin for netflow. We want to trial it and possibly purchase. We have a central/probe design, I"m trying to install it on one of the probes. After install there are no errors but it is just not listening on the ports. I have changed the port to 8888 and all sorts of different ones with no luck. Is there a trick to getting this plugin to install on 2012 server? Should I be using the 32bit or 64bit. I assume 64bit since my OS
Is there a way to view raw FNF data received by the Netflow Analyzer?
want to check the raw data as I don't see anything under the http host tab...
Netflow Alerts Profiles
Hi Can you guys please explainme how exactly the alerts works? I have configured an alert that send emails when trafics exced 90% 5 times in 10 Minutes but i see that somethimes the traffic exceed and it does not send any alert and somethimes it works fine. What is the diferencie if I configure the alert like this 90% 5 times in 10 Minutes or like this 90% 5 times in 5 Minutes The number of times that it counts when trafic exceds (In this case 5) they must be in a row? If one capture is less than
Next Page