12-24-2010 08:33 AM - edited 03-11-2019 12:27 PM
Hello
On ASA 5540 we are terminating 6 IPSEC tunnels and Remote Access VPN. How do I identify which Tunnel is eating more bandwidth.
Remote Access users mostly connected after working hours, so those are not my concern for now.
ISP---------Internet-Router----------ASA----------L3_Switch
Total Internet Bandwidth we got is 10MB, MRTG from ISP indicates 70% utilized.
Are there any ways to find how much each IPSEC Tunnel is consuming Bandwidth & how much each Remote Access VPN session is consuming.
Cheers
Keven
Solved! Go to Solution.
12-24-2010 10:56 PM
you can use solarwind netflow analyser!!
Also, ASA 8.2.1 has an interface bug with netflow. It would be good it you use software version 8.2.2
Thanks,
Manasi!!
12-24-2010 07:32 PM
Hey Keven,
You might wana use Netflow to identify bandwidth used by the IPSEC tunnel.
Netflow is supported on ASA version 8.2.1 onwards.
Following is the document to configure netflow on the ASA,
https://supportforums.cisco.com/docs/DOC-6114
In the above document, you can modify the access-list global_mpc as per tour requirement. (for ipsec tunnels)
Hope this helps!
Cheers,
Manasi
12-24-2010 09:37 PM
Manasi,
Any recommended Netflow collector tool for ASA.
cheers
Keven
12-24-2010 10:56 PM
you can use solarwind netflow analyser!!
Also, ASA 8.2.1 has an interface bug with netflow. It would be good it you use software version 8.2.2
Thanks,
Manasi!!
12-25-2010 08:18 AM
Thanks Manasi, will check this out.
cheers
Keven
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide