<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA 5525 Flow Export in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5525-flow-export/m-p/2912522#M156376</link>
    <description>&lt;P&gt;Hello&lt;/P&gt;
&lt;P&gt;is there any one have idea regarding the netflow for ASA5525 as i have ASA 5525 and cannot suddenly stop working and i don`t know the reason behind this ,&lt;/P&gt;
&lt;P&gt;i`m using PRTG as flow collector &amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;flow-export destination inside 10.88.1.250 2055&lt;BR /&gt;flow-export destination inside 10.88.1.46 2049&lt;BR /&gt;flow-export template timeout-rate 5&lt;BR /&gt;flow-export delay flow-create 60&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;access-list netflow-export extended permit ip any any&lt;/P&gt;
&lt;P&gt;class-map netflow-export-class&lt;BR /&gt; match access-list netflow-export&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;policy-map global_policy&lt;BR /&gt; class netflow-export-class&lt;BR /&gt; flow-export event-type all destination 10.88.1.250&lt;/P&gt;
&lt;P&gt;snmp-server host inside 10.88.1.250 poll community POL version 2c&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;policy-map global_policy&lt;BR /&gt; class inspection_default&lt;BR /&gt; inspect dns preset_dns_map&lt;BR /&gt; inspect ftp&lt;BR /&gt; inspect h323 h225&lt;BR /&gt; inspect h323 ras&lt;BR /&gt; inspect rsh&lt;BR /&gt; inspect rtsp&lt;BR /&gt; inspect sqlnet&lt;BR /&gt; inspect sunrpc&lt;BR /&gt; inspect xdmcp&lt;BR /&gt; inspect netbios&lt;BR /&gt; inspect tftp&lt;BR /&gt; inspect ip-options&lt;BR /&gt; inspect icmp&lt;BR /&gt; inspect sip&lt;BR /&gt; inspect http&lt;BR /&gt; class my-ips-class&lt;BR /&gt; ips promiscuous fail-open&lt;BR /&gt; class Bandwidth-limitation&lt;BR /&gt; police input 4000000&lt;BR /&gt; police output 4000000&lt;BR /&gt; class CONNS&lt;BR /&gt; set connection conn-max 1000&lt;BR /&gt; set connection timeout idle 0:02:00&lt;BR /&gt; class netflow-export-class&lt;BR /&gt; flow-export event-type all destination 10.88.1.250 10.88.1.46 10.88.1.47&lt;BR /&gt; class class-default&lt;BR /&gt; user-statistics accounting&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;ASA# show flow-export counters&lt;/P&gt;
&lt;P&gt;destination: Inside 10.88.1.250 2055&lt;BR /&gt; Statistics:&lt;BR /&gt; packets sent 640643&lt;BR /&gt; Errors:&lt;BR /&gt; block allocation failure 0&lt;BR /&gt; invalid interface 0&lt;BR /&gt; template send failure 0&lt;BR /&gt; no route to collector 0&lt;BR /&gt; source port allocation failure 0&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;ASA# show access-list netflow-export&lt;BR /&gt;access-list netflow-export; 1 elements; name hash: 0xb99f2324&lt;BR /&gt;access-list netflow-export line 1 extended permit ip any any (hitcnt=8704165) 0x1e5d5025&lt;/P&gt;</description>
    <pubDate>Tue, 12 Mar 2019 08:00:33 GMT</pubDate>
    <dc:creator>Amr Ibrahim Ali Henedi</dc:creator>
    <dc:date>2019-03-12T08:00:33Z</dc:date>
    <item>
      <title>ASA 5525 Flow Export</title>
      <link>https://community.cisco.com/t5/network-security/asa-5525-flow-export/m-p/2912522#M156376</link>
      <description>&lt;P&gt;Hello&lt;/P&gt;
&lt;P&gt;is there any one have idea regarding the netflow for ASA5525 as i have ASA 5525 and cannot suddenly stop working and i don`t know the reason behind this ,&lt;/P&gt;
&lt;P&gt;i`m using PRTG as flow collector &amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;flow-export destination inside 10.88.1.250 2055&lt;BR /&gt;flow-export destination inside 10.88.1.46 2049&lt;BR /&gt;flow-export template timeout-rate 5&lt;BR /&gt;flow-export delay flow-create 60&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;access-list netflow-export extended permit ip any any&lt;/P&gt;
&lt;P&gt;class-map netflow-export-class&lt;BR /&gt; match access-list netflow-export&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;policy-map global_policy&lt;BR /&gt; class netflow-export-class&lt;BR /&gt; flow-export event-type all destination 10.88.1.250&lt;/P&gt;
&lt;P&gt;snmp-server host inside 10.88.1.250 poll community POL version 2c&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;policy-map global_policy&lt;BR /&gt; class inspection_default&lt;BR /&gt; inspect dns preset_dns_map&lt;BR /&gt; inspect ftp&lt;BR /&gt; inspect h323 h225&lt;BR /&gt; inspect h323 ras&lt;BR /&gt; inspect rsh&lt;BR /&gt; inspect rtsp&lt;BR /&gt; inspect sqlnet&lt;BR /&gt; inspect sunrpc&lt;BR /&gt; inspect xdmcp&lt;BR /&gt; inspect netbios&lt;BR /&gt; inspect tftp&lt;BR /&gt; inspect ip-options&lt;BR /&gt; inspect icmp&lt;BR /&gt; inspect sip&lt;BR /&gt; inspect http&lt;BR /&gt; class my-ips-class&lt;BR /&gt; ips promiscuous fail-open&lt;BR /&gt; class Bandwidth-limitation&lt;BR /&gt; police input 4000000&lt;BR /&gt; police output 4000000&lt;BR /&gt; class CONNS&lt;BR /&gt; set connection conn-max 1000&lt;BR /&gt; set connection timeout idle 0:02:00&lt;BR /&gt; class netflow-export-class&lt;BR /&gt; flow-export event-type all destination 10.88.1.250 10.88.1.46 10.88.1.47&lt;BR /&gt; class class-default&lt;BR /&gt; user-statistics accounting&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;ASA# show flow-export counters&lt;/P&gt;
&lt;P&gt;destination: Inside 10.88.1.250 2055&lt;BR /&gt; Statistics:&lt;BR /&gt; packets sent 640643&lt;BR /&gt; Errors:&lt;BR /&gt; block allocation failure 0&lt;BR /&gt; invalid interface 0&lt;BR /&gt; template send failure 0&lt;BR /&gt; no route to collector 0&lt;BR /&gt; source port allocation failure 0&lt;/P&gt;
&lt;P&gt;&lt;BR /&gt;ASA# show access-list netflow-export&lt;BR /&gt;access-list netflow-export; 1 elements; name hash: 0xb99f2324&lt;BR /&gt;access-list netflow-export line 1 extended permit ip any any (hitcnt=8704165) 0x1e5d5025&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 08:00:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5525-flow-export/m-p/2912522#M156376</guid>
      <dc:creator>Amr Ibrahim Ali Henedi</dc:creator>
      <dc:date>2019-03-12T08:00:33Z</dc:date>
    </item>
    <item>
      <title>Any chance there is a</title>
      <link>https://community.cisco.com/t5/network-security/asa-5525-flow-export/m-p/2912523#M156378</link>
      <description>&lt;P&gt;Any chance there is a software firewall on the PRTG probe (such as Windows firewall)? &amp;nbsp;I've been caught by Windows Firewall before re-enabling itself after a reboot.&lt;/P&gt;</description>
      <pubDate>Sun, 10 Jul 2016 21:04:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5525-flow-export/m-p/2912523#M156378</guid>
      <dc:creator>Philip D'Ath</dc:creator>
      <dc:date>2016-07-10T21:04:11Z</dc:date>
    </item>
    <item>
      <title>Thanks Philip but i already</title>
      <link>https://community.cisco.com/t5/network-security/asa-5525-flow-export/m-p/2912524#M156380</link>
      <description>&lt;P&gt;Thanks Philip but i already disabled the firewall from the windows but the same issue .&lt;/P&gt;
&lt;P&gt;also i installed windows without any software , antivirus and firewall and tried many PRTG version but the same results.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Jul 2016 07:17:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5525-flow-export/m-p/2912524#M156380</guid>
      <dc:creator>Amr Ibrahim Ali Henedi</dc:creator>
      <dc:date>2016-07-11T07:17:16Z</dc:date>
    </item>
  </channel>
</rss>

