I'm new to NetFlow Traffic Analyzer. I have it setup correctly and am able to capture data traffic. Can anyone point me in the direction of a resource on how to analyze and understand what I'm seeing in NetFlow. Just a brief overview of each section - (Applications, Conversations, Domains, EndPoints, Protocols).
For instance - under the Domains section... why do I see so many different domains? Are these the domains of hosts on my LAN, or are they resulting from web-browsing domain resolving.
Thanks in advance for any assistance.
Each resource in Orion has a help link in the top right corner that links to the appropriate documentation. That should help if you have not already read through that. Here is the link to the doc on Domains: