<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA 5510(8.46)-NetFlow in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227430#M346958</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Anukalp,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco jumped around a bit in the different firmware releases on how the NSEL is exported. It is best explained in this post on &lt;A href="http://www.plixer.com/blog/cisco-advanced-reporting/cisco-asa-netflow/"&gt;Cisco ASA NetFlow : Bidirectional Support Added&lt;/A&gt;.&amp;nbsp; I hope this helps, please vote on my reply if it does. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jake&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 06 Jul 2013 11:52:29 GMT</pubDate>
    <dc:creator>jakewilson</dc:creator>
    <dc:date>2013-07-06T11:52:29Z</dc:date>
    <item>
      <title>ASA 5510(8.46)-NetFlow</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227427#M346946</link>
      <description>&lt;P&gt;I have recently upgraded our ASA to version 8.4(6) but after upgradation i have noticed that Netflow stats are not showing in our tool. I have rediscovered device in tool but still problem persist. I dont know whether issue is with config. ASA config was converted after reload from previous 8.2 version.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Below is config after upgradation OS.&lt;/P&gt;&lt;P&gt;============================================&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list flow_export_acl extended permit ip host 10.110.151.11 host 10.110.151.51&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;flow-export destination inside 10.110.151.11 9996&lt;/P&gt;&lt;P&gt;flow-export template timeout-rate 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt;class inspection_default&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect ftp&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 h225&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect h323 ras&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect skinny&lt;/P&gt;&lt;P&gt;&amp;nbsp; inspect icmp&lt;/P&gt;&lt;P&gt;class class-default&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export event-type all destination 10.110.151.11&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 02:07:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227427#M346946</guid>
      <dc:creator>Anukalp S</dc:creator>
      <dc:date>2019-03-12T02:07:50Z</dc:date>
    </item>
    <item>
      <title>ASA 5510(8.46)-NetFlow</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227428#M346951</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Anukalp,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I do not see any match statement in your class map. You should match the access-list "flow_export_acl you created.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you post the config proir to upgrade?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 05 Jul 2013 20:02:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227428#M346951</guid>
      <dc:creator>smetieh001</dc:creator>
      <dc:date>2013-07-05T20:02:33Z</dc:date>
    </item>
    <item>
      <title>ASA 5510(8.46)-NetFlow</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227429#M346955</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi..&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Before upgradation config was below..&lt;/P&gt;&lt;P&gt;=========================================&lt;/P&gt;&lt;P&gt;snmp-server host inside 10.110.151.11 community *****&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;flow-export destination inside 10.110.151.11 9996&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt;class inspection_default&lt;/P&gt;&lt;P&gt;inspect ftp&lt;/P&gt;&lt;P&gt;inspect h323 h225&lt;/P&gt;&lt;P&gt;inspect h323 ras&lt;/P&gt;&lt;P&gt;inspect skinny&lt;/P&gt;&lt;P&gt;inspect icmp&lt;/P&gt;&lt;P&gt;class class-default&lt;/P&gt;&lt;P&gt;flow-export event-type all destination 10.110.151.11&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 05 Jul 2013 20:17:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227429#M346955</guid>
      <dc:creator>Anukalp S</dc:creator>
      <dc:date>2013-07-05T20:17:58Z</dc:date>
    </item>
    <item>
      <title>ASA 5510(8.46)-NetFlow</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227430#M346958</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Anukalp,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco jumped around a bit in the different firmware releases on how the NSEL is exported. It is best explained in this post on &lt;A href="http://www.plixer.com/blog/cisco-advanced-reporting/cisco-asa-netflow/"&gt;Cisco ASA NetFlow : Bidirectional Support Added&lt;/A&gt;.&amp;nbsp; I hope this helps, please vote on my reply if it does. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Jake&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 06 Jul 2013 11:52:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227430#M346958</guid>
      <dc:creator>jakewilson</dc:creator>
      <dc:date>2013-07-06T11:52:29Z</dc:date>
    </item>
    <item>
      <title>ASA 5510(8.46)-NetFlow</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227431#M346961</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Can you tell me pls how could how could i enable bidirectional support.&lt;/P&gt;&lt;P&gt;Also if netflow in ASA ver 8.4(6) is unidirectional then would it not work.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 07 Jul 2013 10:28:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227431#M346961</guid>
      <dc:creator>Anukalp S</dc:creator>
      <dc:date>2013-07-07T10:28:14Z</dc:date>
    </item>
    <item>
      <title>Re: ASA 5510(8.46)-NetFlow</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227432#M346964</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Anukalp.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Exactly, on that version you could only use unidirectional,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;How to enable it? I am not 100% sure but I think is the only method it supports so it will be on by default,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There is no command for it on the command reference so it's just the mode you have on this version &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Remember to rate all of the helpful posts. &lt;BR /&gt; &lt;BR /&gt;For this community that's as important as a thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 07 Jul 2013 16:50:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227432#M346964</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2013-07-07T16:50:17Z</dc:date>
    </item>
    <item>
      <title>ASA 5510(8.46)-NetFlow</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227433#M346966</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi jcarvaja,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have nothing to do with unidirectional or bidirectional. My issue is that NetFlow collector is showing traffic of ASA. It was working fine on version 8.2(5). After upgradation it to 8.4(6) my netflow collector stops displaying data. I have mentioned config above of netflow in ASA of both version 8.2(5) &amp;amp; 8.4(6).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I just need to know if there is any changes in 8.4(6) which need to configure so that my netflow collector start displaying traffic.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 08 Jul 2013 07:11:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227433#M346966</guid>
      <dc:creator>Anukalp S</dc:creator>
      <dc:date>2013-07-08T07:11:47Z</dc:date>
    </item>
    <item>
      <title>ASA 5510(8.46)-NetFlow</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227434#M346968</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hello Anukalp.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is what you asked:&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; &lt;/STRONG&gt;&lt;/P&gt;&lt;DIV&gt;&lt;P&gt;&lt;STRONG&gt;Can you tell me pls how could how could i enable bidirectional support.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Also if netflow in ASA ver 8.4(6) is unidirectional then would it not work.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That is all related to bidirectional, unidirectional flow &lt;SPAN __jive_emoticon_name="grin"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you share the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show run class class-default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show service-policy&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;clear flow-export counters&lt;/P&gt;&lt;P&gt;show flow-export counters&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/DIV&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Remember to rate all of the helpful posts. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For this community that's as important as a thanks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Remember to rate all of the helpful posts. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For this community that's as important as a thanks.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 08 Jul 2013 16:24:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227434#M346968</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2013-07-08T16:24:33Z</dc:date>
    </item>
    <item>
      <title>ASA 5510(8.46)-NetFlow</title>
      <link>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227435#M346969</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Consider downloading the &lt;A href="http://www.plixer.com/Whitepapers/cisco-asa-guide-to-nsel-and-cyber-threat-detection.html"&gt;Cisco ASA Guide to NetFlow Security Event Logging and Cyber Threat Detection&lt;/A&gt;. It should help.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 11 Jul 2013 13:33:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-5510-8-46-netflow/m-p/2227435#M346969</guid>
      <dc:creator>jakewilson</dc:creator>
      <dc:date>2013-07-11T13:33:39Z</dc:date>
    </item>
  </channel>
</rss>

