<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Not getting netflow through the firewall in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309720#M310647</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please not if my firewall team allow access "any to any" than we are getting the netflow logs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;They need the exact port number and they are even not ready to do the troubleshooting with us. that is the biggest issue for us.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 22 Oct 2013 11:24:34 GMT</pubDate>
    <dc:creator>sutharhemant90</dc:creator>
    <dc:date>2013-10-22T11:24:34Z</dc:date>
    <item>
      <title>Not getting netflow through the firewall</title>
      <link>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309714#M310641</link>
      <description>&lt;P&gt;Dear All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;From last few days i am trying to get the netflow logs from the router to my system but its not happening. here is one firewall cyberoam between router and system. can anyone tell me what exact port numbers need to be open on the firewall to get the logs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Quick responce will be appreciated.&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 02:54:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309714#M310641</guid>
      <dc:creator>sutharhemant90</dc:creator>
      <dc:date>2019-03-12T02:54:07Z</dc:date>
    </item>
    <item>
      <title>Not getting netflow through the firewall</title>
      <link>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309715#M310642</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am using Solarwind and trying to get the logs on port number 2055 and 9666.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Router-------Firewall--------System&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 21 Oct 2013 14:58:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309715#M310642</guid>
      <dc:creator>sutharhemant90</dc:creator>
      <dc:date>2013-10-21T14:58:07Z</dc:date>
    </item>
    <item>
      <title>Re: Not getting netflow through the firewall</title>
      <link>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309716#M310643</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have asked firewall team to open the port number 2055 and 9666 to my system and for bidirectional to SNMP (TCP 161,162). But still i am not getting.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 21 Oct 2013 15:01:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309716#M310643</guid>
      <dc:creator>sutharhemant90</dc:creator>
      <dc:date>2013-10-21T15:01:13Z</dc:date>
    </item>
    <item>
      <title>Re: Not getting netflow through the firewall</title>
      <link>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309717#M310644</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;could you post netflow config from your router?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;is router at least able to ping the system/NMS?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Oct 2013 07:03:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309717#M310644</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2013-10-22T07:03:09Z</dc:date>
    </item>
    <item>
      <title>Not getting netflow through the firewall</title>
      <link>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309718#M310645</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;No router is not able to ping my server becoz firewall team has allowed netflow ports on the firewall not ICMP.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface FastEthernet0/0&lt;/P&gt;&lt;P&gt; ip address 10.10.10.1 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt; ip flow ingress&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt; ip route-cache flow input&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip flow-export source FastEthernet0/0&lt;/P&gt;&lt;P&gt;ip flow-export version 5&lt;/P&gt;&lt;P&gt;ip flow-export destination 10.10.10.50 2055&lt;/P&gt;&lt;P&gt;ip flow-export destination 10.10.10.50 9666&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Should i allow ICMP from router to my server ?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Oct 2013 07:43:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309718#M310645</guid>
      <dc:creator>sutharhemant90</dc:creator>
      <dc:date>2013-10-22T07:43:20Z</dc:date>
    </item>
    <item>
      <title>Not getting netflow through the firewall</title>
      <link>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309719#M310646</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;yes, just for troubleshooting purpose. you can ask your FW team to block it again afterwards.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i just want to ensure your router knows how to get to your NMS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;could you do below and post a &lt;STRONG&gt;show ip flow export&lt;/STRONG&gt;?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip cef&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface FastEthernet0/0&lt;/P&gt;&lt;P&gt;no ip route-cache flow input&lt;/P&gt;&lt;P&gt;ip route-cache flow&lt;/P&gt;&lt;P&gt;no ip route-cache cef&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Oct 2013 08:31:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309719#M310646</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2013-10-22T08:31:19Z</dc:date>
    </item>
    <item>
      <title>Not getting netflow through the firewall</title>
      <link>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309720#M310647</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please not if my firewall team allow access "any to any" than we are getting the netflow logs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;They need the exact port number and they are even not ready to do the troubleshooting with us. that is the biggest issue for us.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Oct 2013 11:24:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309720#M310647</guid>
      <dc:creator>sutharhemant90</dc:creator>
      <dc:date>2013-10-22T11:24:34Z</dc:date>
    </item>
    <item>
      <title>Re: Not getting netflow through the firewall</title>
      <link>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309721#M310648</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;BR /&gt;&lt;BR /&gt;Did your FW team opened "UDP" ports for 161, 162, 2055 and 9666?&lt;BR /&gt;&lt;BR /&gt;Sent from Cisco Technical Support iPhone App&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Oct 2013 11:50:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309721#M310648</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2013-10-22T11:50:25Z</dc:date>
    </item>
    <item>
      <title>Not getting netflow through the firewall</title>
      <link>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309722#M310649</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, they have opened the port as mentioned below.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2055 &amp;amp; 9666 ( Source router LAN interface and destiona My server)&lt;/P&gt;&lt;P&gt;161 &amp;amp; 162 ( SNMP - Bidirection)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Oct 2013 13:55:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309722#M310649</guid>
      <dc:creator>sutharhemant90</dc:creator>
      <dc:date>2013-10-22T13:55:40Z</dc:date>
    </item>
    <item>
      <title>Re: Not getting netflow through the firewall</title>
      <link>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309723#M310650</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have encountered these kind of issues frequently - it most usually is a&amp;nbsp; case of ACLs either on the firewall or on the router itself.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If any-any allows packets to reach NTA and specific port opening does not, then your firewall team seems to be doing it wrong. Did they make sure they opened UDP 2055 and UDP 9996? And source is FastEthernet0/0 and destination is your NTA server?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards, &lt;BR /&gt;Don Thomas Jacob &lt;BR /&gt;&lt;A class="jive-link-external-small" href="http://www.solarwinds.com/netflow-traffic-analyzer.aspx"&gt;http://www.solarwinds.com/netflow-traffic-analyzer.aspx&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;NOTE: Please rate and close questions if you found any of the answers helpful.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 24 Oct 2013 08:25:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309723#M310650</guid>
      <dc:creator>Don Jacob</dc:creator>
      <dc:date>2013-10-24T08:25:24Z</dc:date>
    </item>
    <item>
      <title>Not getting netflow through the firewall</title>
      <link>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309724#M310651</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;H1 style="background-color: #ffffff; border-collapse: collapse; font-size: 24px; list-style: none; padding: 5px 0px 2px; font-weight: normal; line-height: 0.85; color: #ee6804; font-family: Arial, verdana, sans-serif;"&gt;Thaks a lot Mr. johnlloyd_13 &amp;amp; Mr. Don. Now the issue has been resolved. Port number was not correctly open in the firewall.&lt;/H1&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 24 Oct 2013 10:34:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/not-getting-netflow-through-the-firewall/m-p/2309724#M310651</guid>
      <dc:creator>sutharhemant90</dc:creator>
      <dc:date>2013-10-24T10:34:32Z</dc:date>
    </item>
  </channel>
</rss>

