<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic FlowSensor as a solution for application visibility? in Security Analytics</title>
    <link>https://community.cisco.com/t5/security-analytics/flowsensor-as-a-solution-for-application-visibility/m-p/4154219#M583</link>
    <description>&lt;P&gt;Hello everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I understand that FlowSensor can provide "additional security context" by enabling the "Export HTTP(S) Header Data", "Export Packet Payload" and "Enable VXLAN Decapsulation".&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1) Does that mean all the Stealthwatch Default Application shown in the following document? Or do I need the Endpoint Concentrator?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/c/dam/en/us/td/docs/security/stealthwatch/management_console/default_applications_definitions/SW_7_3_Default_Applications_Definitions_DV_1_0.pdf" target="_blank"&gt;https://www.cisco.com/c/dam/en/us/td/docs/security/stealthwatch/management_console/default_applications_definitions/SW_7_3_Default_Applications_Definitions_DV_1_0.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2) Must I turn off the netflow exporter for a switch if it is configured with RSPAN to forward all frames of the switch to the FlowSensor port?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Sun, 20 Sep 2020 06:39:52 GMT</pubDate>
    <dc:creator>Support ACME</dc:creator>
    <dc:date>2020-09-20T06:39:52Z</dc:date>
    <item>
      <title>FlowSensor as a solution for application visibility?</title>
      <link>https://community.cisco.com/t5/security-analytics/flowsensor-as-a-solution-for-application-visibility/m-p/4154219#M583</link>
      <description>&lt;P&gt;Hello everyone,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I understand that FlowSensor can provide "additional security context" by enabling the "Export HTTP(S) Header Data", "Export Packet Payload" and "Enable VXLAN Decapsulation".&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;1) Does that mean all the Stealthwatch Default Application shown in the following document? Or do I need the Endpoint Concentrator?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/c/dam/en/us/td/docs/security/stealthwatch/management_console/default_applications_definitions/SW_7_3_Default_Applications_Definitions_DV_1_0.pdf" target="_blank"&gt;https://www.cisco.com/c/dam/en/us/td/docs/security/stealthwatch/management_console/default_applications_definitions/SW_7_3_Default_Applications_Definitions_DV_1_0.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2) Must I turn off the netflow exporter for a switch if it is configured with RSPAN to forward all frames of the switch to the FlowSensor port?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 20 Sep 2020 06:39:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/security-analytics/flowsensor-as-a-solution-for-application-visibility/m-p/4154219#M583</guid>
      <dc:creator>Support ACME</dc:creator>
      <dc:date>2020-09-20T06:39:52Z</dc:date>
    </item>
  </channel>
</rss>

