Backup only the configuration
I was wondering if you could create an option or a script that would just back up the configuration data. This would just backup the device list,application mapping,ip groups etc and not backup all the netflow data. Ive seen posts on the forums where people have mentioned how to drop data from the database and then do a backup but we dont want to remove our netflow data we just want to leave it intact and just backup our current list of devices and configuration. We have a large database of over
Missing Traffic details
Hi Raghu, Recently I have installed Netflow 5.5, I have following problem. In Application's IN I can see that SMTP traffic amount is around 9GB for the last one day. When I click smtp, it shows only 983MB, where does the rest gone? The reports fields are below... Application Traffic(Total: 11399.23 MB) Percentage of total traffic smtp 9069.63 MB 80% http 1885.2 MB 17% Source IP Destination IP Application Port Protocol Traffic(983.14 MB) % of Traffic 84.23.96.48 212.77.52.104 smtp 25 TCP 22.38 MB
Scheduled Reports & Feature Requests
Hi NetFlow team, I have a couple of queries regarding the scheduled reports in NetFlow 5503: 1. I need to send scheduled utilisation reports rather than bandwidth reports - is there a way to do this that I have missed? 2. I cannot seem to modify scheduled reports after they have been created. Again, is there something I am missing here? Feature Requests: I'm sure these have been requested before, a client has requested these and for completeness I will includ them: 1. LDAP authentication 2. SQL Server
How can I see single user traffic?
Hello, I've installed NFA, but I think i've configured it in a wrong way: I've been downloading hundreds Mb from Microsoft site, but all traffic from this source is seen to go to external IP address, not to my pc address; to be correct almost all traffic from outside goes to my router's external IP address. How can I configure NFA to show how many Mb I've been downloading, and from where I've been downloading it? I think it's quite strange that I cannot see it...
Migrating Netflow Analyzer to new system
is there any documentation on migrating Netflow Analyzer to a new system? thanks.
incorrect and contradictory figures int Netflow Analyzer
Hello. I'm using NFA 5002, but have noticed the same thing in the 5502 build online demo. The thing is that traffic statistics on different detail level seem to have a very big difference. In our system we have several means of controlling user traffic, including NFA and MS ISA Server log-based report generating software. Considering a period of one month, this software produced a figure of approx. 12 GB of http inbound traffic. When I made a report in NFA on the internet-facing interface and switched
Netflow appication port
Hi Netflow Team, I define a range of port for internal application (512 to 1023). But part of this range is already define for few applications. Then when I look at the applications part of netflow it show multiple application, even if it's the same. So I delete application (ie: port 577) to ensure that our application range take in account this port. But when I go back to the netflow I just loose this information it has not been added to the range that I defined. So my question is : Do this deleted
Incomplete replies on Forum - user asked to contact support
I think the value of this forum would be enhanced by some follow-up / closure to the many queries that leave us all dangling with unanswered questions . . If a query deemed to be of general value, I at least, would appreciate a thread-closing summary of the solution provided to the user. Frequently we are following the thread of a problem similiar to one we are experiencing, and it is cut off sharply with a message similar to the one below: Hi, Please let us know your contact information and convenient
comparing traffic between 2 NFA
Hi, I have the following scenario: I have a frame relay connection with my corporate headquarters, I also have one NFA in both side of my link and I'm comparing the traffic IN/OUT in the interfaces of both routers. I see there are some differences I explain you below. Standing on Traffic Tab (last hour report) on the corporate NFA I see this: Total Max Min Avg 95th Traffic IN 17.18 MB 183.01 Kbps 7.88 Kbps 38.18 Kbps 78.16 Kbps Traffic OUT 116.11 MB 622.74 Kbps 22.4 Kbps 258.03 Kbps 578.02 Kbps And
Scheduling reports
Is there a command line interface to schedule reports? I have a hundred IP groups and I want to generate reports for most of them but going through the menus is very tedious enering the same thing every time (I've just tried it and after five my will to live was seriously challenged). All I want to do is to create a daily report for an IP/Group for the previous day between certain hours (the hours would be different depending upon the timezone of the remote site being monitored). A CLI for many things
Combining two interfaces
Hi all I have routers that report IN traffic on one interface and OUT traffic on another... Is there a way to either configure IOS to report this as one interface OR to combine two interfaces into a logical one in Netflow Analyzer (5.5)? Regards, Remo
install nfa in linux rh 9 - errors
hi, I am trying to install nfa 5.5 onto linux RH9, but I am running into errors. First, I do not have an X installation on this machine, so i ran the installer with the -console option. On the output, all I get is: ./ManageEngine_NetFlowAnalyzer_5503.bin -console InstallShield Wizard Initializing InstallShield Wizard... Searching for Java(tm) Virtual Machine... . Preparing Java(tm) Virtual Machine... .................................. ................................... ...................................
NFA crashes in Linux
Hi, I have downloaded and installed a trial version of NetFlowAnalyzer_5503 for Linux. I can start server and see netflow collection is running, I can connect to it and do some management stuff such as modify admin's password, define IP groups and so on. However, most of other steps (i.e. click on just defined group name) causes server to crash and restart. I tried to search any glue in all logs available under the installation directory but I did not find anything useful. Did anyone see this problem,
Bugs in NFA 5.5
Bugs that have been reported in NFA 5.5 If you are running build number 5502 or lesser, exporting v9 flows will report large number of interfaces than the actual number. We have released a hotfix which will fix the issue. Please download the hotfix from the following URL and follow the steps below to apply it. Please do the following steps before applying the hotfix. 1. Disable V9 flow export in the router. 2. Click the License Management Link in the NetFlow Analyzer web console and delete the specific
NetFlow Analyzer
Hi, May I know is there a limitation for number of interfaces NetFlow Analyzer can handle. And may know below products are supported * Cisco GSR 12406 * Cisco 7609 * Cisco 7200 * Cisco 10000 * Catalyst 4500 Rgds, Nilanka.
Cisco Switch Monitoring
Hi, I am evaluating the NetFlow Analyzer and I found that on 3550 (IOS 12.1) it does not give protocol wise details ( HTTP - **, SMTP - **, etc) as it gives for router interfaces. How to get arround this? Rgds, Nilanka.
PC Scanning report in NFA! (suggests )
I don't know if it's a stupid question but why don't you add to NFA some report of pcs scanning the network, I mean infested pcs who are scanning the network and report also the port they are using.. something like this: --- this is a part of a report from floow-tools using netflow of a pc infested with blaster I think --- ---------------------------------------- Top inbound hosts by hosts counted ---------------------------------------- Scanner: 172.19.236.236 (172.19.236.236) 64571 hosts touched
Netflow Analyzer Install
Installing on a windows server 2003 standard box�Administrator has been changed to another username (starts with the number zero) per our security procedures�full rights to all functions, ie administrator group privileges� The error message reads: The InstalShield Engine (iKernal.exe) could not be installed. IKernel.exe could not be copied to 'C:\Program Files\Common Files\InstallShield\Engine\6\Intel32'. Make sure that you have the appropriate privileges to copy files to this folder. (0x20) I looked
netflow analyzer 5.5 nbar problem
hi to eveybody, we start using netflow analyzer yesterday, and we want to configure nbar, when i enable nbar on the interfaces from netflow analyzer , i will always have status unknown, (although nbar is configured on the interfaces from the CLI), can aybdody help about that, what conf should we do on the interfaces ( for conf of interfaces we follow help..) , which services should run on the server and what sghould i do on the netflow analyzer thank you for your replies
Netflow Fails to start / web interface
Greetings all. Compliments of the season. Hopefully not a big problem , After trying to access the web page on the specified port, the page failed to log me in using default passwords , admin - admin . I restarted the server and now the Netflow page refuses to initiliaze at all . I also had to repair the DB on opmanager , but thats another issue. Any suggestions on where to troubleshoot. Thanks in advance, Quinton.
mysql Server start fails on suse 10.1
Hello, Ive just installed V5.5 on Linux Suse 10.1 but the sql Server does not come up, any hints ? Kind regards Hermann
Win XPP Admin Password
win XP Proffessional admin password forgot how to getting in
Feature Requests
I'd like to suggest the following feature adds: Custom reports: export to pdf or schedule Scheduled reports: Run now or edit once run reports Scheduled Reports: More options, like top 10 in/out, conversation reports etc. Reports: Printing does not format properly on the page Emails: Provide a template to customize the emails sent for reports
How long traffic data stores?
How long traffic data stores in database?
User added but can't see available groups
I added a user, operator level. But I can't see available groups(not ip groups) which should be device groups to be added for the user to be able to see interfaces. What shall I do?
ESP_APP traffic
Hi When I check application utilization using Netflow Analyzer version 5, I see ESP_APP traffic consuming high bandwidth ~50%. Our setup has VPN tunner end-end using 3des and IpSec encryption. Also I could see application traffic apart from ESP_APP traffic. I would like to you "how to calculate the overall traffic "? Do I need to add ESP_APP + Application or any ESP_APP is my total traffic? Best regards Muzaffar
How to view TOS reports?
Hello. How to view TOS reports in NFA 5.5 (003)?
NetFlow service will not start successfully
I have NetFlow Analyzer 5.5 installed on a Windows 2003 server (latest updates applied), and the application will not start as a service. The splash screen appears then disappears around 50%, and this continues until the service has failed to start 5 times. I have read about this problem occurring in Windows XP, but not on a Windows server platform. If I execute startdb.bat and then run.bat, the application starts and I can use it without issue. Please let me know if you need additional information.
Netflow will not load
Hi, I re-installed Netflow Version 5.5, and when I go to start Netflow Server, it hangs on the server load screen. I have rebooted the server and re-installed the product a few times and keep getting the same problem. Any suggestions? Joe
Run as Service
I'm trying to figure out how to make the analyzer run as a service. It was orginally installed that way. Then windows freaked out and it's registry lost some information. I want to know if there's a way to restore it to running as a service without losing any previous logs or information like my registration info....
Interface names....which one is which?
The interface name in the router dashboard view don't correspond to the actual interface name. How can I tell which interface is which?
Analyzer showing 100% utilization on Fe1 continuously
Fe1 is showing 100% utilization all the time which is obviously inaccurate. What changes need to be made to get the analyzer to show the correct utilization metrics?
Nothing coming up on dashboard
I am using NFA 5.5 configured on 2600 series router running on Win XP.Everything is configured and the router output is as below: strat-rtr#sh ip flow export Flow export is enabled Exporting flows to 192.168.1.13 (9995) Exporting using source interface FastEthernet0/0 Version 5 flow records 6258759 flows exported in 253027 udp datagrams 0 flows failed due to lack of export packet 253026 export packets were sent up to process level 0 export packets were dropped due to no fib 0 export packets were
Monitoring Netflow Analyzer
I need to monitor Netflow analyzer to ensure that if we are always collecting flows. We can monitor the process, ex, but sometimes an application will be running but not responding. So I can also setup monitoring of timestamps on files, such as log files or database files. Does anyone know of a directory or file that gets updated contiuosly that we can monitor to verify that the application itself is working? Thanks
nbar supported protocals
Is there anyway to add to the supported protocals of nbar? I can add to applications and the protocal names show up but i wanted to add to the nbar database also. Is this possible?
Crashing NFA 5.5 demo on CentOS 4.2
Hi I am running the NFA 5.5 demo on CentOS 4.2. Occasionally I find that demo crashes. If I see the serverout0.txt file log, I receive the following message: [19:52:52:868]|[12-11-2006]|[SYSOUT]|[INFO]|[28]|: Error occured while executing process :: | [19:52:52:868]|[12-11-2006]|[SYSOUT]|[INFO]|[28]|: Record count of table is well below 250000| [19:52:52:868]|[12-11-2006]|[SYSOUT]|[INFO]|[28]|: at com.adventnet.netflow.utils.dm.SiblingPreProcessor.executeProcess(SiblingPreProcessor.java:73)| [19:52:52:868]|[12-11-2006]|[SYSOUT]|[INFO]|[28]|:
Link is up but no data being shown
All our routers are showing no data for in and out traffic. This started to happen from yesterday. The links are up (it has the green tick) but the there is no in or out traffic being shown, it is just sitting at 0% for all (7) of our routers... nothing has changed on the server or any of the routers at all... Please help!
Lots of Data!
Hi! I�m interested in the new version of Netflow Analyzer, I have tried the version 4 and work well with not much data (2 Internet Links of 4 Mbps each). I have one client requesting functions includes in the Netflow Analyzer software but his has one 6500 MSFC with one link of 200Mbps, my questions is .. this kind of traffic in a Xeon 2.4Ghz with HyperTreding and 30G of disk.. is ok? thz in Advance...
Netflow database backup
Is there any possible way of backing up the netflow database while the engine is online without using the BackupDB.bat method? (or getting BackupDB.bat to work correctly) BackupDB.bat does not work as the resultant zip file is 10GB in size and cannot be opened. I believe this is to do with the maximum 2GB size of zip files. Is it possible to change BackupDB.bat so that it doesn't zip up it's output? Or is it possible to query to database engine directly and write your own backup routine. We cannot
Opmanager runs slowly
I'm running Opmanager6 monitoring 20 routers, 500 switches and 100 windows/unix servers and the system runs very slowly. A top 10 switch port takes 700 secs to complete and loading device details takes minutes The current system is a P4 3Ghz +2GB RAM and I will be migrating it to a Dell 2950 2.3Ghz dual core xeon, 4GB RAM and 15000rpm SAS drives in RAID will the new spec box meet the demand and improve data retrieval times or is OPmanager not designed to collect from a lot of nodes :?
Next Page