32. NetFlow version 9の一般的な設定例
flow record Rec
match ipv4 source address
match ipv4 destination address
match transport source-port
match transport destination-port
match interface input
match ipv4 tos
match ipv4 protocol
collect counter bytes long
collect counter packets long
collect timestamp sys-uptime first
collect timestamp sys-uptime last
collect transport tcp flags
flow exporter Exp
destination <ipaddr>
transport udp 9996
flow monitor Mon
record Rec
exporter Exp
interface GigabitEthernet1
ip flow monitor Mon input
ip flow monitor Mon output
ip address dhcp
ip nat outside
フロー・レコード
フロー・エクスポータ
フロー・モニター
NetFlowを適用
1. フロー測定内容と出力方法を設定 2. フローモニター
としてまとめる
3. 当該インターフェースに適用
40. LANスイッチ - 有線LAN/無線LANの可視化設定例
flow record W-Rec-1
match ipv4 protocol
match ipv4 source address
match ipv4 destination address
match transport source-port
match transport destination-port
match flow direction
match application name
match wireless ssid
collect counter bytes long
collect counter packets long
collect wireless ap mac address
collect wireless client mac address
!
flow exporter Exp
destination 10.71.154.88
source Vlan55
transport udp 9991
template data timeout 60
option usermac-table
option interface-table timeout 60
C3850-01#sh run | sec wlan
wlan NMS 1 NMS
client vlan AP-test
ip dhcp server 10.71.154.54
ip flow monitor W-Mon-1 input
ip flow monitor W-Mon-1 output
no shutdown
C3850-01#sh run int gi 1/0/1
!
interface GigabitEthernet1/0/1
switchport mode trunk
ip flow monitor Mon-1 input
ip flow monitor Mon-1 output
flow monitor W-Mon-1
exporter Exp
cache timeout inactive 60
cache timeout active 120
record W-Rec-1
1. フロー測定内容と出力方法を設定 2. フローモニター
としてまとめる
3. 当該インターフェースに適用
42. Router#sh run flow record type performance-monitor ZOHO-FLOWRECORD-MEDIA
Current configuration:
!
flow record type performance-monitor ZOHO-FLOWRECORD-MEDIA
match flow direction
match ipv4 destination address
match ipv4 protocol
match ipv4 source address
match transport destination-port
match transport rtp ssrc
match transport source-port
collect application media bytes counter
collect application media bytes rate
collect application media event
collect application media packets counter
collect application media packets rate
collect application name
collect counter bytes
collect counter bytes rate
collect counter packets
collect interface input
collect interface output
collect ipv4 dscp
collect ipv4 ttl
collect monitor event
collect routing forwarding-status
collect timestamp interval
collect transport event packet-loss counter
collect transport packets expected counter
collect transport packets lost counter
collect transport packets lost rate
collect transport rtp jitter maximum
collect transport rtp jitter mean
collect transport rtp jitter minimum
Performance Monitorによる
高度な計測設定例
NetFlowの拡張
Router#sh run flow record type performance-monitor ZOHO-FLOWRECORD-AVC
Current configuration:
!
flow record type performance-monitor ZOHO-FLOWRECORD-AVC
match application name account-on-resolution
match connection client ipv4 address
match connection server ipv4 address
match connection server transport port
match ipv4 protocol
match routing vrf input
collect application http host
collect application ssl common-name
collect connection client counter bytes long
collect connection client counter bytes network long
collect connection client counter packets long
collect connection client counter packets retransmitted
collect connection delay application sum
collect connection delay network client-to-server sum
collect connection delay network to-client sum
collect connection delay network to-server sum
collect connection delay response client-to-server sum
collect connection delay response to-server histogram late
collect connection delay response to-server sum
collect connection initiator
collect connection new-connections
collect connection server counter bytes long
collect connection server counter bytes network long
collect connection server counter packets long
collect connection server counter responses
collect connection sum-duration
collect connection transaction counter complete
collect connection transaction duration max
collect connection transaction duration min
collect connection transaction duration sum
collect interface input
collect interface output
collect ipv4 destination address
collect ipv4 dscp
collect ipv4 source address
collect ipv4 ttl
• Flow monitor, exporter, interfaceの設定は省略
• 主にルーターでサポート
UDP性能計測
TCP性能計測
DEMO6