ASA5505 sending flow data but ME Netflow Analyzer claims "no device is currently exporting".
Hello,
I configured an ASA 5505 following the directions here:
http://forums.manageengine.com/#Topic/49000003577055
asagw# show ru | inc flow
access-list netflow-export extended permit ip any any
flow-export destination inside 76.10.144.209 9996
flow-export template timeout-rate 1
flow-export delay flow-create 60
class-map netflow-export-class
match access-list netflow-export
policy-map netflow-export-policy
class netflow-export-class
flow-export event-type all destination 76.10.144.209
and I see the net flow data reaching the server (capture done on ME NF server):
15:26:29.155635 IP (tos 0x0, ttl 255, id 38709, offset 0, flags [none], proto UDP (17), length 1040)
76.10.144.214.30245 > 76.10.144.209.9996: [udp sum ok] UDP, length 1012
when i open the capture in wireshark I see all the netflow data you would expect (image attached of packet expanded in wireshark).
yet ME continues to claim there are no netflow devices exporting data to it.
any idea what I might need to tweak? I updated the ASA OS today from 8.3 to 8.4 as a last effort, no change.
thanks!
greg
New to ADSelfService Plus?