02-19-2009 01:20 AM - edited 03-06-2019 04:07 AM
Dear
Does any one know about what is different NETFLOW and SNMP data?
Does any one know about this issue?
Thanks!
I installed netflow data collactor application but snmp traffic is small quantity than netflow data.
02-19-2009 01:55 AM
Hello,
in netflow there is information about
source/destination IP addresses, ports, interfaces, etc, but in SNMP there are interface counters. SNMP is more related to physical interface, netflow give you more information about traffic (layer 3-4 information).
Usually in SNMP you will see more traffic (if you are counting only bytes/packets), beacuse netflow table can easily oveflow. I think that in netflow there are fields bytes and packets related to packet length and in SNMP to the frame lenght. Frame is always longer than packet.
SNMP is better to see total health of the device (not only interface counter, you can see CPU state, memory info, etc.), netflow give you view on transmiting traffic, so you are able to detect onwanted traffic, attacks, etc.
Please, feel free to contact me directly.
Kind regards
Jan Nejman
Caligare, co.
02-19-2009 02:19 AM
Thanks for your reply!
Do you have a document about this issue?
Thanks for your help again!
Regards
02-19-2009 06:14 AM
Hello,
I released some information about netflow on web page http://netflow.caligare.com/ but there is not any information regarding to SNMP. Maybe can be useful to check wikipedia and find the term 'SNMP' for a short explanation.
Kind regards,
Jan Nejman
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: