[c-nsp] Netflow Question

virendra rode // virendra.rode at gmail.com
Fri May 2 15:30:56 EDT 2008


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

raa at opusnet.com wrote:
> Hi,
> 
> Can anyone tell me the difference between the interface command:
> 
> Router(config-if)# ip flow ingress
> Router(config-if)# ip flow egress
- -------------------
ip flow ingress is recommended for 12.4 and >. Then again, I have
devices w/ 12.4 code running ip route-cache flow w/o any problems. If
you wish to monitor only ONE interface then use,

ip flow ingress
ip flow egress

Each interface needs to have ip flow ingress enabled in order to be
monitored.


> 
> And 
> 
> Router(config-if)# ip route-cache flow
- ------------------
I guess it is antiquated from what I've gathered but works w/o any
problems (head scratching). route-cache flow performs ingress and
monitors traffic off all interfaces w/o enabling it individually.

there's more on the list, just look at archives.


regards,
/virendra

> 
> Thanks.  Second part to this question is anyone recommend a Netflow
> analyzer?  Either application or appliance (price is important.)  I'd like
> to get one where I can assign clients access where they only have access to
> the ports I assign them.  I'm currently using the free version of
> Scrutinizer.
> 
> Thanks all!
> 
> 
> _______________________________________________
> cisco-nsp mailing list  cisco-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/
> 
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2.2 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFIG2vwpbZvCIJx1bcRAjwQAKCpPirXqK4rokWwjL2GYGckhWK47QCgxZ3+
YtKs5+IFSFKPrlCFs2cn1iw=
=RVNF
-----END PGP SIGNATURE-----


More information about the cisco-nsp mailing list