Is there a way to Pre-Filter or drop traffic on the NTA? Good example will be to drop the tunneling between the WLCs and APs?
We are doing a 30 day demo of NTA. We are hoping to use it to see what kind of traffic that is being used on the wireless and see why our Cisco Nexus 9504 are suffering some random CPU spikes. (The spiking issue seems to be resolved with an upgrade of the OS on the Nexus and optimization of our Aruba Wireless Controllers to limit broadcast and multicast traffic). We are forced to use SFlow due to the Nexus line card limitations so we cannot just monitor the wireless client VLAN so we are monitoring the uplinks to the WLCs which includes a bunch of unwanted WLC to AP traffic which is encapsulated. I do not care what is in the encapsulation because we are seeing the wireless client VLAN entering/exiting the same interface.
Maybe we are trying to leverage NTA incorrectly. If we were to monitor the uplinks going to the internet firewall then we would not see any broadcast or multicast traffic on the wireless client VLAN because the SVI is on the Nexus.