I'm new to NetFlow Traffic Analyzer. I have it setup correctly and am able to capture data traffic. Can anyone point me in the direction of a resource on how to analyze and understand what I'm seeing in NetFlow. Just a brief overview of each section - (Applications, Conversations, Domains, EndPoints, Protocols).
For instance - under the Domains section... why do I see so many different domains? Are these the domains of hosts on my LAN, or are they resulting from web-browsing domain resolving.
Thanks in advance for any assistance.