Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

7500 nat and netflow

Hello!

I'm running cisco 7507 and have a problem with netflow v5 and nat.

After 2-3 days Netflow engine stops collecting incoming traffic for ip addresses whis are translated.

Sh ip cache flow stops showing theese packets.

I tried debigging netflow and haven't seend any errors.

The only thing i noticed is repeating

"IPFLOW: Sending capture config message to all LC", but i think it is normal.

I'm using "ip netflow egress" and "ip netflow ingress" to collect traffic on interfaces.

On IP addresses, that is not being translated, netflow is working fine.

"Sh run" and "sh ver" are included in attachments.

Best regards,

Oleg.

1 REPLY
Silver

Re: 7500 nat and netflow

I think in your case, the way that NetFlow is implemented has it do the flow lookup and creation (NetFlow) stage prior to

the feature lookup (NAT) stage on the incoming traffic. Therefore, the NetFlow record will be created prior to NAT and you'll get the external addresses in your flow record. As a workaround, you could think about enabling NetFlow on the LAN interface(s) and collect the traffic that's being sent out to your serial interface, thereby creating flow records with internal NAT addresses. Depending on what you want to achieve and the nature of the traffic this may or may not work

Please refer the following URL for info on netflow collector.

http://www.cisco.com/univercd/cc/td/doc/cisintwk/intsolns/netflsol/nfwhite.htm#xtocid2867938

142
Views
0
Helpful
1
Replies
CreatePlease login to create content