Hello
NetFlow has been configured on some of our remote managed routers with the destination export address as our Orion server. However, after adding the remote router to the NetFlow Analyzer we are not seeing any NetFlow data coming in.
The remote devices are a mixture of NetGates, Cisco 871 and Cisco 2811 routers. The configuration on the 2811s is as follows:
[
ip flow-export version 5
ip flow-export destination x.x.x.x 2055
ip flow-export source Loopback0
interface Serial0/0/0.100
ip flow ingress
interface Serial0/0/0
ip flow ingress
]
Some show commands display the following:
[
CNAIRPSH50001R#show ip flow export
Flow export v5 is enabled for main cache
Exporting flows to x.x.x.x (2055)
Exporting using source interface Loopback0
Version 5 flow records
40129 flows exported in 1960 udp datagrams
0 flows failed due to lack of export packet
0 export packets were sent up to process level
0 export packets were dropped due to no fib
0 export packets were dropped due to adjacency issues
0 export packets were dropped due to fragmentation failures
0 export packets were dropped due to encapsulation fixup failures
CNAIRPSH50001R#sh ip cache flow
IP packet size distribution (276910 total packets):
1-32 64 96 128 160 192 224 256 288 320 352 384 416 448 480
.000 .430 .081 .314 .026 .013 .008 .006 .003 .001 .003 .014 .001 .000 .010
512 544 576 1024 1536 2048 2560 3072 3584 4096 4608
.006 .000 .007 .020 .048 .000 .000 .000 .000 .000 .000
IP Flow Switching Cache, 278544 bytes
40 active, 4056 inactive, 20947 added
730763 ager polls, 0 flow alloc failures
Active flows timeout in 30 minutes
Inactive flows timeout in 15 seconds
IP Sub Flow Cache, 17416 bytes
40 active, 984 inactive, 20089 added, 20089 added to flow
0 alloc failures, 0 force free
1 chunk, 0 chunks added
last clearing of statistics 03:19:41
Protocol Total Flows Packets Bytes Packets Active(Sec) Idle(Sec)
-------- Flows /Sec /Flow /Pkt /Sec /Flow /Flow
TCP-Telnet 21 0.0 19 41 0.0 3.3 13.5
TCP-WWW 4 0.0 1 40 0.0 0.0 1.6
TCP-other 545 0.0 395 140 17.9 216.0 5.0
UDP-DNS 15 0.0 1 76 0.0 0.0 15.4
UDP-NTP 1284 0.1 1 76 0.1 0.0 15.4
UDP-other 14191 1.1 3 281 4.2 5.6 15.5
ICMP 4086 0.3 2 160 0.7 2.3 15.4
IP-other 2 0.0 2 68 0.0 6.0 15.7
Total: 20148 1.6 13 167 23.1 10.3 15.2
]
This WAN is an AT&T-managed MPLS circuit and the Netgate sites are DSL-based. The Cisco 871 routers are at sites with IPSEC VPN over DSL.
Any suggestions as to why none of these are working?
Thanks
Amy