IP Groups - Include and Exclude
I am having trouble setting up a couple of IP groups to monitor Internal and External data. I am obviously misunderstanding something. I have set up an IP group called Internal which includes certain address ranges (our internal ones). I have then set up another IP group called External with those same ranges but excluded this time. The Internal group works fine and excludes any traffic destined for outside our company. However, the External group records nothing. Where am I going wrong and what
Netflow and HPSIM Agents
I have an issue I was hoping someone out there has seen. We have Netflow Analyzer 6.0.0SP2 running on a HP Proliant DL385 G1 running W2k3 SP2. The server was built without the normal HP Systems Insight Manager Agents installed. Upon installing version 8.11a of the Proliant Service Pack, Netflow was somehow damaged. The icons on the Start Menu disappeared but the group is still there. We also lost the icon in the system tray that shows Netflow running. The service dropped itself a couple of times
Neflow stops saving the data?
HI, I have an issue when NA seems to stop saving the data into database. For example, I can see a today-tomorrow stats but nothing in Last week report. Monthly report shows me no data after certain date. Both images are attached. Can anybody advice? Thank you, Vasia.
Report Informaiton
Was wondering if anyone knew what the report infomration refers to? In particular I have a report that lists the top 10. I understand what the top 10 applications is, but am having problems understanding SourceIN and DestinationIN. Any information would be great. Thanks. Eric
Custom Reports
I am wondering if there is a way to make custom reports or modify existing reports? For example, I would like to remove the Application, Port, Protocol and DSCP columns from the Destination In Report.
Exclude ESP_App
Hello. I'm evaluating NetFlow Analyzer 4. On all my interface enabled IPSec crypto map, and I have double calculation traffic - clear and crypto(ESP_App Application). How I can exclude ESP_App? Thanks.
Gaps in data
We are testing the application on a VM platform. After copying the harware server over to VM ware we now get intermittant gaps in data (data charts normally then stops for x minutes, then starts back up). It doesn't appear to be network related, we do not run anti virus and there are no backups to the drive it was copied to. What are possible casues of missing data? Screenshot of issue attached
Setting SNMP
HI, I have just tried to use the Netflow and I noticed the "Set SNMP" but when I configure it, it doesnt pick up anything. Regards,
NFA 7 Plus Didn't Get Flows
Cisco IOS Software, 2800 Software (C2800NM-ADVIPSERVICESK9-M), Version 12.4(10), RELEASE SOFTWARE (fc1) ip flow-export source Loopback0 ip flow-export version 5 ip flow-export destination x.x.x.x 9996 ip flow-export destination x.x.x.x 9996 I have installed NFA 7, but unable to get flows from the above mentioned router. I have Access list implemented and allow the following 155 permit tcp host Router IP host Server IP eq 9996 156 permit tcp host Server IP host Router IP eq 9996 157 permit udp host
Date and Time of Link Downtime in Alert
Hello, We have a brazilian customer that is requesting to us the following simple feature an easy to implement in hotfix or update: - Informations about time and date downtime in a Link Down Mail Alert. Thanks in advance!
Cisco 6509 and netflow analyzer
I have a 6509 running IOS with a new netflow analyzer (4010). So i have it sending flows for each of the vlan's and i see traffic accounted for locally (lets say, 192.168.1.0 - 192.168.100.0). I have 1 vlan which is connected to our firewalls, which leads out to the internet. My question is, why do i not see any of the internet traffic being tallied with netflows? For example if i have a host 192.16.8.1.20 go to 67.100.100.80, should the latter value show up somewhere?
alarm on group or IP address?
I am looking for a way to place an alarm really on any ip address that goes over a certain percentage in an application use. For instance, I am monitoring a router which has several subnets that pass through it. I have set groups for those subnets. What I would like is to receive an alarm if an IP address exceeds a certain percentage of say SMTP out use. Thanks, tk
Utilization page is not access
Hello, Now we are testing your product before buy it. And I have the trouble. I cannot see any information on utilization page. (device->interface->traffic->utilization) Only blank page in the frame. But if I am opening pdf report from this page, I can see graph. What is the problem?
snap shot and interface difference
Testing NetFlow Analyzer and have noticed there is a difference between the snapshot make speed and the interface max speed. I do have both interfaces of the router in netflow. I am curious as to why there is such a difference, 29 meg compared to 23 meg on the interface last hour. tk
ISA Server & NFA 7
How do I monitor a router behind a MS ISA 2004/2006 Firewall?
IP group graphs
Hi, I have the following problem with NFA7 SP2: When I click Troubleshoot on an IP group (network A) -> do a search on 2 rules: source network+ dest network, both same and a subnetwork of A -> in & out traffic speed = equal! But When I make a new IP group based on the subnetwork of A, the traffic speeds are different and ok! Why are the in and out speeds equal in the first method? How do I resolve this without making a new IP group? Thanks, Sven
Useful reports that come with pie charts
Can you please elaborate on how I can consolidate source, destination and other details along with the pie charts and export into pdf format? I have attempted on numerous occassions and combinations and altogether unsuccessful, I either get the pie charts with little else (and no use to me either) or I get data in a table format and _no_ pie chart, so I need pie charts along with other details and their respective timestamp(period?) to please management as most of you are aware. Thank you for you
49179 flows failed due to lack of export packet
Can anyone tell me specifically what this means. I'm showing some serious drops in interface traffic at peak times that aren't showing up on our other monitoring systems and I suspect it has something to do with missing flow exports. sh ip flow export 49179 flows failed due to lack of export packet
NBAR
Dear Sir, I am using cisco 2501 series router.Will it support for NBAR configuration.
Netflow data not match with SNMP
I tried to collect netflow data and MRTG for our new router Cisco CRS-1. but the netflow seems wrong result compare with MRTG. Please help me to verify what's problem for this issue. 1. CRS-1 sampling rate is 1000:1 2. CRS-1 is only support v9. If you need to any information please let me know.
NetFlow Analyzer Enterprise Edition 6.5 Released
Dear All We greatly appreciate your continuous support to NetFlow Analyzer Enterprise Edition. We are glad to announce the release of NetFlow Analyzer Enterprise Edition version 6.5. Following are the features available in 6.5 : 1. Fail Over - Automatic data backup and crash recovery to ensure high availability. 2. Realtime Traffic - Real time reports with graphs. Updates spontaneously as the data is received. 3. Hierarchical view - Ability to see the devices in a hierarchical manner and user permission
Interface which its name is "Device traffic"
Hello, I have an interface in my HP procurve which its name is "Device traffic", why ? Thanks. I am french so excuse me for my english.
Missing data in and out
Hi, I just installed NFA Seems great to me, although I need to play around a little. When I look at the interfaces, I can see traffic. In the in and outgoing data, everything is 0 %. Regards, WIlco
V9 flows of unknown template are received from
Hi. I have NetFlow Analyzer 7 and cisco isr 2800 with ios 12.4(20)T. Conf ios: flow exporter cs-adm destination xxx.xxx.3.2 source GigabitEthernet0/0.1 output-features dscp 63 transport udp 9996 option exporter-stats timeout 120 option interface-table timeout 120 option sampler-table timeout 120 ! ! flow monitor traf_all record netflow-original ! interface GigabitEthernet0/0.2 encapsulation dot1Q 1 native ip address eee.eee.eee.1 255.255.255.252 ip flow monitor traf_all input ip flow monitor traf_all
Not accepting RADIUS configuration
I'm trying to add a RADIUS server under advanced settings. After I enter my information and click "Update", it does nothing. If I go to another page and come back, the information is gone. If I try to add a user and enter RADIUS server information there, it also will not remember it. Is there some file I can edit and add this manually since the GUI isn't working? Thanks, -Nichole.
UTILIZATION is showing more than 100% in the graph.
Hi ., I have 10Mbps speed set on one point-to-point link , The interface type is Fastethernet (F1/0)and we have created a logical interface(F1/0.22) . On test basis i have taken a bandwidth report of last week , which shown utilization % is more than 100% in the report. Which few people are not agreeing. I have set 10mbps speed on NFA for that link. Can you pls crak the whip. Also , i tried my best to convence them that nothing wrong with NFA it is all about a characterstics of a Ethernet interface
Netflow Abnalyser:SMTP & Schedule reports
Hi., I have schedule all reports and i can see reports under Admin Operations --> Schedule--- List <view reports> . but these reports am not getting thru mail . below lines are configured: SMTP : <ip address> - IP address of smtp server configured. Port : both smtp-25 and pop3- 110 ports given , checked with both the ports. mailaddress : receipetent mail address is given. i have not configured anything on mail server. So, can you please advise how to get the generated reports in my mail box. Thanks
Integration NFA with AD
Is it possible to intgrate NFA & AD in such a way to resolve local users IP addresses into AD users? So the minimum info I need: AD_user, inbound_traffic, outbound_traffic, date.
Trying to start MySQL server failed
Hello, we have a problem starting the Netflow Analyzer. It fails to start the mysql Server: JBoss Bootstrap Environment JBOSS_HOME: /usr/local/AdventNet/NetFlow JAVA: ../jre/bin/java JAVA_OPTS: -server -Xms128m -Xmx256m -Dprogram.name=run.sh -Djboss.server.type=com.adventnet.j2ee.deployment.system.AdventNetServerImpl -Djboss.deploy.localcopy=true -Djboss.boot.library.list=log4j-boot.jar,jboss-common.jar,jboss-system.jar,AdventNetDeploymentSystem.jar,commons-logging.jar -Ddb.home=/usr/local/AdventNet/NetFlow/mysql
Report send without the attachmnet file
After upgrade to version 7 from 6, the Schedule Report that i got is without the pdf file. Thanks Ronen.
Configure Netflow on Cisco 4006 switch
Hi, I wanted to measure the traffic flowing from one server to another. Pls anyone can suggest which is the best product (OPS Manager or Netflow analyser) to do this and how. Which IOS version is supported for configuring netflow on cisco 4006. Currently my switch is having IOS version 12.1(13). Regards
Missing Data
Hi there, i've noticed since upgrading to NFA 7 that when I goto view historical data after the upgrade, it does not display. Looking at "Last Week" I get a blank graph and no output, but when I look at "Yesterday" I see it's capturing and reporting fine. Is there any way to tell if i'm loosing data or not? This is kind of critical as we bill according to this data and it's showing nothing! I will upload the latest LogZipUtil.sh output to support@netflowanalyzer.com now. Thanks Kris
Netflow Analyzer : Not reflecting data under UTILIZATION tab
Dear All., I have been testing Netflow in a test bed analyszer and production environment and currently i am facing 3 problems. 1) Flows are seen againist fw WeAN interfaces and can be seen in and out under SPEED and VOLUME tabs but no data or graph is reflecting under "UTILIZATION GRAPH" pls advise. 2) On few WAN interfaces eigher IN or OUT flows are seen after enabling flow ingress/egress under perticular interfaces. 3)On few WAN interfaces neither IN nor OUT flows are seen. "Below is the config
DNS resolving problem
Hello. I found a little problem. When I open interface and choose application tab, select any application and try to resolve DNS names I receive not all names. If I try to resolve unresolved names through nslookup from server it works perfect. Where is a problem and how it can be solved?
NetFlow Analyzer Eval Stops Working After Reboot
I downloaded NFA7 today and was testing with it. It works great right after I install it, until I reboot the machine. Then nothing shows up on any of the Interface tabs, like Traffic, Source, Destination, or Conversations. I can see that flows are still coming into the server on the All Devices section, as the Flows Received counter increments. This reboot issue happened twice on newly cloned Windows 2003 SP1 VMs, so I know it's not something else...
Can't upgrade NFA 6000 to 6001
Hi, I have NFA EE Version : 6.0.0 Build Number : 6000 I download file AdventNet_ManageEngine_NetFlow_Analyzer_5_0_0_SP-2_0 from http://manageengine.adventnet.com/products/netflow/service-packs.html but AdventNet Udate Manager don't want to update it by reason - The file that you have specified is not compatible with product. Whay ?
Netflow Relocation to Different Drive
Hi all -- Our Netflow server was recently virtualized. The standalone server it was originally configured on had nearly a TB on the system ( c: ) drive where Netflow was installed. Since the virtualization the system drive space was reduced to only 20MB and nearly immediately caused Netflow space problems. Our server management group has allocated an additional partition with more than enough space but I need to know how to move Netflow and or it's data to that disk partition. Must I perform a backup
Store & Forward?
Does the enterprise or professional version of Netflow support a "store and forward" of Netflow packets to another collector? Is this on the roadmap at all? Thanks. ---John Holmes...
Cisco 7300
We have recently upgraded one of our main routers to a 7300 with PXF processors. Is there something special about these devices I need to get done to enable Netflow information to come out successfully. I can do a 'show ip cache flow' command and it is all there. It also says it is exporting it to Netflow Analyzer. However, all I get in Netflow Analyzer is 99% 'IP App'.
Link Down Alert
Dear support, in this preconfigured profile there is an option says Also send an alert when no flow is received for 15 minutes. is there any way to reduce these 15 minutes to 3 minutes only.
Next Page