<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Netflow on a ASA in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803292#M532741</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;asa# show run service-policy&lt;/P&gt;&lt;P&gt;service-policy global_policy global&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so it's blank.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is what the config looks like now:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt;class class-default&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export event-type all destination 192.168.1.34&lt;/P&gt;&lt;P&gt;policy-map netflow-export-policy&lt;/P&gt;&lt;P&gt;class netflow-export-class&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export event-type all destination 192.168.1.34&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Should it look like this?:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt;class class-default&lt;/P&gt;&lt;P&gt;class netflow-export-class&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export event-type all destination 192.168.1.34&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 12pt;"&gt;&lt;STRONG&gt;Never mind, I got it!&amp;nbsp; Thank you very much!&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 23 Aug 2011 18:03:51 GMT</pubDate>
    <dc:creator>jef_rat72</dc:creator>
    <dc:date>2011-08-23T18:03:51Z</dc:date>
    <item>
      <title>Netflow on a ASA</title>
      <link>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803290#M532739</link>
      <description>&lt;P&gt;5505 ASA, 8.2(1)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;We can not get it to report Netflow to the collection agent at 192.168.1.34.&amp;nbsp; Here is the commands I've entered:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;asa# show run | i flow&lt;/P&gt;&lt;P&gt;access-list netflow-export extended permit ip any any&lt;/P&gt;&lt;P&gt;flow-export destination inside 192.168.1.34 2055&lt;/P&gt;&lt;P&gt;flow-export template timeout-rate 1&lt;/P&gt;&lt;P&gt;flow-export delay flow-create 60&lt;/P&gt;&lt;P&gt;class-map netflow-export-class&lt;/P&gt;&lt;P&gt;match access-list netflow-export&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export event-type all destination 192.168.1.34&lt;/P&gt;&lt;P&gt;policy-map netflow-export-policy&lt;/P&gt;&lt;P&gt;class netflow-export-class&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export event-type all destination 192.168.1.34&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any ideas?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 21:15:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803290#M532739</guid>
      <dc:creator>jef_rat72</dc:creator>
      <dc:date>2019-03-11T21:15:58Z</dc:date>
    </item>
    <item>
      <title>Netflow on a ASA</title>
      <link>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803291#M532740</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The policy map needs to be applied globally, otherwise it wont work. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Would you please do a show run service-policy? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Doc &lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-wiki-small" href="https://community.cisco.com/docs/DOC-6113"&gt;https://supportforums.cisco.com/docs/DOC-6113&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Aug 2011 17:57:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803291#M532740</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-08-23T17:57:13Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow on a ASA</title>
      <link>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803292#M532741</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;asa# show run service-policy&lt;/P&gt;&lt;P&gt;service-policy global_policy global&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;so it's blank.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is what the config looks like now:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt;class class-default&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export event-type all destination 192.168.1.34&lt;/P&gt;&lt;P&gt;policy-map netflow-export-policy&lt;/P&gt;&lt;P&gt;class netflow-export-class&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export event-type all destination 192.168.1.34&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Should it look like this?:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt;class class-default&lt;/P&gt;&lt;P&gt;class netflow-export-class&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export event-type all destination 192.168.1.34&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; &lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 12pt;"&gt;&lt;STRONG&gt;Never mind, I got it!&amp;nbsp; Thank you very much!&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Aug 2011 18:03:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803292#M532741</guid>
      <dc:creator>jef_rat72</dc:creator>
      <dc:date>2011-08-23T18:03:51Z</dc:date>
    </item>
    <item>
      <title>Netflow on a ASA</title>
      <link>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803293#M532742</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now the config looks completely different from what you posted.... &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do the following... &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;access-list netflow-export extended permit ip any any&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export destination inside 192.168.1.34 2055&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; flow-export template timeout-rate 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map netflow-export-class&lt;/P&gt;&lt;P&gt;&amp;nbsp; match access-list netflow-export&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt; no class class-default&lt;/P&gt;&lt;P&gt;&amp;nbsp; class netflow-export-class&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; flow-export event-type all destination 192.168.1.34&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If After this it does not work, please do the following... &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;capture test interface inside match udp any any eq 2055&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Wait for 2 seconds and then download them on pcap format &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are located on the inside the way to do this would be as follows &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;http 0 0 inside &lt;/P&gt;&lt;P&gt;http server enable &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Open a web browser and do the following &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="https://"&gt;https://&lt;/A&gt;&lt;SPAN&gt;&lt;INSIDE_IP_FW&gt;&lt;/INSIDE_IP_FW&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Aug 2011 18:15:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803293#M532742</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-08-23T18:15:09Z</dc:date>
    </item>
    <item>
      <title>Netflow on a ASA</title>
      <link>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803294#M532743</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Oooook! &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Nice &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Aug 2011 18:15:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803294#M532743</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-08-23T18:15:53Z</dc:date>
    </item>
    <item>
      <title>Re: Netflow on a ASA</title>
      <link>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803295#M532744</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;to clarify the trick was cleaning up my global_policy&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So going from:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt;class class-default&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export event-type all destination 192.168.1.34&lt;/P&gt;&lt;P&gt;policy-map netflow-export-policy&lt;/P&gt;&lt;P&gt;class netflow-export-class&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export event-type all destination 192.168.1.34&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map global_policy&lt;/P&gt;&lt;P&gt;class class-default&lt;/P&gt;&lt;P&gt;class netflow-export-class&lt;/P&gt;&lt;P&gt;&amp;nbsp; flow-export event-type all destination 192.168.1.34&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Aug 2011 18:18:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803295#M532744</guid>
      <dc:creator>jef_rat72</dc:creator>
      <dc:date>2011-08-23T18:18:41Z</dc:date>
    </item>
    <item>
      <title>Netflow on a ASA</title>
      <link>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803296#M532745</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yup, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Nice work. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mike &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Aug 2011 18:21:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/netflow-on-a-asa/m-p/1803296#M532745</guid>
      <dc:creator>Maykol Rojas</dc:creator>
      <dc:date>2011-08-23T18:21:11Z</dc:date>
    </item>
  </channel>
</rss>

