Exclude IP-networks or conversations

Exclude IP-networks or conversations

Hallo,

we are evaluating the NetFlowanalyzer V5.

The problem / feature request:

Our customers are connected with two routers (E1 or E3-connections). Every router has two interfaces with different Subnets
for example:

Customer A (IP-Range 10.1.0.0/16)
Router 1:
Int Fe1 => 10.1.1.2/24
Int Fe2 => 10.1.2.2/24
Router 2
Int Fe1 => 10.1.1.3/24
Int Fe2 => 10.1.2.3/24

HSRP-address: 10.1.x.1

Customer B (IP-Range 10.2.0.0/16)
Router 1:
Int Fe1 => 10.2.1.2/24
Int Fe2 => 10.2.2.2/24
Router 2
Int Fe1 => 10.2.1.3/24
Int Fe2 => 10.2.2.3/24

HSRP-address: 10.2.x.1

and so on (200 Customes)

Networks in our DataCenter.

10.100.x.x
192.x.x.x
172.x.x.x
5.x..x.x
....
and so on

We are using MPLS to connect the routers in the branch so we cannot use the serial Interfaces (IOS-Limitation). Depend on this limitation we use the Lan-Interfaces (FE1 and FE2) for netflow.

I want only see the Traffic from the customer to the DC (and return) but not the traffic in the customer network (10.1.1.0 => 10.1.2.0).

For expample:

Config Customer A:
10.1.0.0/16 <> any AND NOT 10.1.1.0/24 <> 10.1.2.0/24

Config Customer B:
10.2.0.0/16 <> any AND NOT 10.2.1.0/24 <> 10.2.2.0/24

Thanks

Tom





















































                New to ADSelfService Plus?