cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
7206
Views
0
Helpful
2
Replies

Netflow configuration in ACI

Nik Noltenius
Spotlight
Spotlight

Hi folks,

 

I'm trying to configure Netflow following for ACI but somehow got stuck.
I used the official documentation...

(https://www.cisco.com/c/en/us/td/docs/switches/datacenter/aci/apic/sw/kb/b_KB_Cisco_APIC_and_NetFlow.html)

... watched the videos ...

(https://www.youtube.com/watch?v=6Yl_GelaS7g)

(https://www.youtube.com/watch?v=LQCZdf9Sux0)

... and followed the instructions on this blog ...

(https://dpitaci.wordpress.com/2017/01/23/netflow/)

... however I still seem to miss something.

 

Apparently the fabric is configured correctly and exporting stuff:

leaf102# show flow exporter
Flow exporter NetFlowTest-TN:NetFlowTest:
Destination: 10.0.124.100
VRF: NetFlowTest-TN:NetFlowTest-VRF (1)
Destination UDP Port 2055
Source: 1.1.0.102
DSCP 44
Export Version 9
Sequence number 30
Data template timeout 0 seconds
Exporter Statistics
Number of Flow Records Exported 29
Number of Templates Exported 19
Number of Export Packets Sent 31
Number of Export Bytes Sent 3036
Number of Destination Unreachable Events 0
Number of No Buffer Events 0
Number of Packets Dropped (No Route to Host) 0
Number of Packets Dropped (other) 0
Number of Packets Dropped (Output Drops) 0
Time statistics were last cleared: Never

Feature Prio: Netflow

 

Numbers are increasing, but if I connect my laptop with the IP of 10.0.124.100 configured on the port for the EPG configured for the Exporter and power up Wireshark I don't see any packets.

 

Any ideas are much appreciated!

 

Kind regards

Nik

2 Replies 2

alieson
Level 1
Level 1

Hello Nik,

 

1- Did you configure the Netflow on infra Level or Tenant level ? 

2- Monitor and exporter on the same leaf of different leaf ?

 

Hello and thank you for the reply,

 

I originally had configured both but right now I have only Tenant NetFlow "running".

The setup is pretty simple (it's a lab environment):

Host A <-> Leaf 101 <-> Spine <-> Leaf 102 <-> Host B

Both Hosts are in the same Bridge Domain (even though I tried with separate ones, too) and the BD is linked to the Monitor. The Hosts are Bare-Metal devices, so no VMM domain involved. The Exporter is connected to Leaf101 on a separate Bridge Domain.

 

Kind regards,

Nik

Save 25% on Day-2 Operations Add-On License