Pardon me for comparing Orion to PRTG, but in PRTG you can add "filters" on Netflow data to separate traffic not only by port but by IP and port. Does NTA offer anything like this?
Yes in NTA, you can view the traffice by port, destination ip, source ip, a number of variables. Have you watched the demo of NTA? If not, I would reccomend it.
I've used the online demo but I haven't seen a demo video or anything.
On the online demo they have a nice graph that has the top 5 applications -- how would you go about defining an application as a matching source ip:port(s)? I'm interested in defining ip:port(s) so I can have quick and easy access to the information, and also generate reports about min/max/average traffic on those specific ip:port combos.
Thanks for your help!
You can define an application by port or group of ports, but to my knowledge there isnt a way to define an application by IP.
This would be a nice feature to add in future versions.