cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
863
Views
0
Helpful
1
Replies

Flexible Netflow on Egress Before IPSec?

paul_murphy
Level 1
Level 1

Hello,

We would like to capture netflow data in and out of the WAN facing interface of a router, however all traffic egressing the router via the WAN interface is encrypted.

It is possible to somehow insert the netflow probe before encryption takes place?

Thanks,

Paul

1 Reply 1

paul_murphy
Level 1
Level 1

I should also point out that these devices contain WAAS modules.  I am hoping to get netflow reporting for traffic that wasn't sourced from the WAAS.

Like this:

Internal Network --  router internal nic -- WAAS -- VPN -- router external nic - WAN

                                                  ^Netflow probe

So I would like to get the netlow probe between the WAAS and VPN so that I am seeing unencrypted traffic that genuinely traversed the WAN.  Is this possible?

Thanks,

Paul