So I need some advice. We have our HQ in Houston, TX with remote sites world wide. in most cases we have an Orion server locally to monitor the remote sites but a couple we don't. One of those sites is West Africa, and is experiencing traffic issues. We are wanting to implement Netflow reporting out there but the site is simply too small to justify purchasing more licenses to cover it. I'd like to just point the ASA back to Houston to collect the Netflow results, but don't know how that would look.
To give you an idea, we see about 250ms latency, and only have a 1.5mb pipe for that location. I guess my question is, how much traffic is netflow going to push across the wire, and is it feasible to do this? thanks guys.
If you only export flows from the ASA you will add 1-5% traffic to the WAN link. If you add flows from other devices behind the ASA the load will incerase incrementally.