<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Netflow on Asa in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/netflow-on-asa/m-p/4445817#M1082773</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1202150"&gt;@sv7&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Most of the cisco netflow documentation on the internet and provided here is quite dated, hardware performance has increased considerably since some of those cisco guides were created. We've no idea about your network infrastructure, nor the load on your existing hardware. There will be some performance impact, but if your ASA is running at 5% CPU, then enabling netflow, another 5-15% (if that) CPU load increase isn't going to make a difference to the overall performance.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.google.co.uk/search?q=netflow+impact+performance&amp;amp;source=hp&amp;amp;ei=l1EOYYPlHtuI1fAPrfSEmAY&amp;amp;iflsig=AINFCbYAAAAAYQ5fp5O57F2Fwptj_xKSNvySPrA83LoT&amp;amp;oq=netflow+impact+performance&amp;amp;gs_lcp=Cgdnd3Mtd2l6EAMyBggAEBYQHjIGCAAQFhAeMgYIABAWEB4yBggAEBYQHlD4AVj4AWCuCGgAcAB4AIABhAGIAYQBkgEDMC4xmAEAoAECoAEB&amp;amp;sclient=gws-wiz&amp;amp;ved=0ahUKEwjDjPjjy57yAhVbRBUIHS06AWMQ4dUDCAg&amp;amp;uact=5" target="_self"&gt;Here&lt;/A&gt; is a link with a load of information on netflow performance, read through. &lt;A href="https://www.thesecurityblogger.com/five-myths-about-netflow/" target="_self"&gt;Here&lt;/A&gt; is another.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you think enabling netflow is going to be a problem, you can avoid a performance hit by not enabling netflow.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You need to determine the current load on your ASA and use your judgment before enabling.&lt;/P&gt;</description>
    <pubDate>Sat, 07 Aug 2021 09:36:36 GMT</pubDate>
    <dc:creator>Rob Ingram</dc:creator>
    <dc:date>2021-08-07T09:36:36Z</dc:date>
    <item>
      <title>Netflow on Asa</title>
      <link>https://community.cisco.com/t5/network-security/netflow-on-asa/m-p/4445511#M1082760</link>
      <description>&lt;P&gt;Hello All,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Need to configure Netflow on Cisco FTD 2130 running ASA image. Could anyone guide me is it any hardware or software limitation i need to look to configure netflow on my device or i can follow any ASA command guide to configure netflow&lt;/P&gt;</description>
      <pubDate>Fri, 06 Aug 2021 13:25:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/netflow-on-asa/m-p/4445511#M1082760</guid>
      <dc:creator>sv7</dc:creator>
      <dc:date>2021-08-06T13:25:01Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow on Asa</title>
      <link>https://community.cisco.com/t5/network-security/netflow-on-asa/m-p/4445513#M1082761</link>
      <description>&lt;P&gt;If you running ASA code on Firepower, you follow same ASA command&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;below guide help you :&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/security/asa/special/netflow/asa_netflow.html" target="_blank" rel="noopener"&gt;https://www.cisco.com/c/en/us/td/docs/security/asa/special/netflow/asa_netflow.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;we use NPM below guide help me :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://support.solarwinds.com/SuccessCenter/s/article/NetFlow-Configuration-Example-Cisco-ASA?language=en_US" target="_blank"&gt;https://support.solarwinds.com/SuccessCenter/s/article/NetFlow-Configuration-Example-Cisco-ASA?language=en_US&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 06 Aug 2021 13:29:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/netflow-on-asa/m-p/4445513#M1082761</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-08-06T13:29:24Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow on Asa</title>
      <link>https://community.cisco.com/t5/network-security/netflow-on-asa/m-p/4445515#M1082762</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1202150"&gt;@sv7&lt;/a&gt; this information can be found by checking the cisco docs or using google.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;E.g.&lt;/P&gt;
&lt;P&gt;&lt;A href="https://community.cisco.com/t5/security-documents/netflow-on-asa/ta-p/3119176#toc-hId--1895058384" target="_blank"&gt;https://community.cisco.com/t5/security-documents/netflow-on-asa/ta-p/3119176#toc-hId--1895058384&lt;/A&gt;&lt;/P&gt;
&lt;H2 id="toc-hId--1895058384"&gt;&lt;SPAN&gt;&lt;STRONG&gt;Limitations&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/H2&gt;
&lt;UL&gt;
&lt;LI&gt;Template refresh records can only be sent based on time intervals, not based on number of data records.&lt;/LI&gt;
&lt;LI&gt;NetFlow records can not be seen live on the ASA as data is collected.&lt;/LI&gt;
&lt;LI&gt;NetFlow has a significant performance impact, but it should not be any worse than normal syslog operations of the same information. There will be an uptick in memory but it should also be minimal. NetFlow configured with overlapping syslogs can cause a significant performance hit.&lt;/LI&gt;
&lt;/UL&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 06 Aug 2021 13:32:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/netflow-on-asa/m-p/4445515#M1082762</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-08-06T13:32:08Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow on Asa</title>
      <link>https://community.cisco.com/t5/network-security/netflow-on-asa/m-p/4445810#M1082772</link>
      <description>&lt;P&gt;Hello Rob,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thank you for your reply.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could you please put more light on below sentence.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;NetFlow has a significant performance impact, but it should not be any worse than normal syslog operations of the same information. There will be an uptick in memory but it should also be minimal. NetFlow configured with overlapping syslogs can cause a significant performance hit.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Would my asa reboot or anything that would cause network interruption in my organisation ?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Also What can I do to prevent or avoid such performance hit&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 07 Aug 2021 09:18:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/netflow-on-asa/m-p/4445810#M1082772</guid>
      <dc:creator>sv7</dc:creator>
      <dc:date>2021-08-07T09:18:19Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow on Asa</title>
      <link>https://community.cisco.com/t5/network-security/netflow-on-asa/m-p/4445817#M1082773</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1202150"&gt;@sv7&lt;/a&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Most of the cisco netflow documentation on the internet and provided here is quite dated, hardware performance has increased considerably since some of those cisco guides were created. We've no idea about your network infrastructure, nor the load on your existing hardware. There will be some performance impact, but if your ASA is running at 5% CPU, then enabling netflow, another 5-15% (if that) CPU load increase isn't going to make a difference to the overall performance.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.google.co.uk/search?q=netflow+impact+performance&amp;amp;source=hp&amp;amp;ei=l1EOYYPlHtuI1fAPrfSEmAY&amp;amp;iflsig=AINFCbYAAAAAYQ5fp5O57F2Fwptj_xKSNvySPrA83LoT&amp;amp;oq=netflow+impact+performance&amp;amp;gs_lcp=Cgdnd3Mtd2l6EAMyBggAEBYQHjIGCAAQFhAeMgYIABAWEB4yBggAEBYQHlD4AVj4AWCuCGgAcAB4AIABhAGIAYQBkgEDMC4xmAEAoAECoAEB&amp;amp;sclient=gws-wiz&amp;amp;ved=0ahUKEwjDjPjjy57yAhVbRBUIHS06AWMQ4dUDCAg&amp;amp;uact=5" target="_self"&gt;Here&lt;/A&gt; is a link with a load of information on netflow performance, read through. &lt;A href="https://www.thesecurityblogger.com/five-myths-about-netflow/" target="_self"&gt;Here&lt;/A&gt; is another.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;If you think enabling netflow is going to be a problem, you can avoid a performance hit by not enabling netflow.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;You need to determine the current load on your ASA and use your judgment before enabling.&lt;/P&gt;</description>
      <pubDate>Sat, 07 Aug 2021 09:36:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/netflow-on-asa/m-p/4445817#M1082773</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-08-07T09:36:36Z</dc:date>
    </item>
  </channel>
</rss>

