Hello,
Some of our community folks using ME NetFlow Analyzer to monitor their Juniper firewalls SSG 500 series. It supports policy based netflow/JFlow export.
Can you share us the netflow/JFlow configuration to enable NetFlow/JFlow on these firewalls?
Thanks
Raj
Hello,
First we want to thank all our customers and prospects for their help in supporting NSEL. Last week our ManageEngine NetFlow Analyzer support team was terribly busy in handling ASA customers and prospects. Most of customers who enabled ASA - NSEL, started complaining about the interface names and indices. Actually they did not match with the statistic they have reported. We have verified the code twice about handling interface indices and SNMP get. There was no change made recently for ASA.
Fortunately one of our community folk updated our forums about the Cisco bug in NSEL with a bug ID.
http://forums.manageengine.com/#Topic/49000003577055
"There is currently an ASA bug (ID:CSCtb63825) that will give you inaccurate information. The doesn't use IfTable to store interface names, so NFA may report data for an interface that is actually sourced from a different interface. Cisco has informed me that this bug has been fixed in 8.2(12), but that the release is not available yet."
Thanks
Raj
Great News for all who were looking for monitoring NetFlow data from Cisco ASA devices. ManageEngine NetFlow Analyzer now provides preliminary support for NetFlow data from ASA
devices.
For those who have not caught up on this news, a couple of months back, Cisco released a new IOS which brings support for NetFlow capabilities to ASA devices. The NetFlow feature from ASA devices, termed as NetFlow Secure Event Logging (NSEL), is based on NetFlow version 9 flow format and can give real time bandwidth reports.
Ever since this release, we have had a huge demand to start supporting the new flow format. Working with some customers who provided packet captures from their ASA devices, our engineering team has successfully developed a patch which would provide support for these flows. The patch has to be applied on top of the latest version of NetFlow Analyzer.
This patch enables NetFlow Analyzer to report on traffic and bandwidth information using the NetFlow packets from ASA devices when exported in the same format as NetFlow version 5. We will be extending our support to the new fields in our next release.
You can find the recommended configuration for ASA NetFlow from this post in our forum. Please contact our technical support at netflowanalyzer-support@manageengine.com / +1 925 965 9435 to get more information.
Regards,
Don Thomas Jacob