Benefits of using Cisco Netflow than Syslogs in ASA Firewall
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-05-2010 10:36 AM - edited 03-11-2019 10:18 AM
Hi,
With the introduction of Netflow functionality in ASA firewall version 8.2, most of the network monitoring tools that use syslogs are catching up with netflow. I'm wondering on the benefit of using Cisco Netflow than Syslog in ASA firewalls with network monitoring tools.
Netflow provides traffic(flow create and delete) and denied event information alone. Syslog provides traffic, denied, virus, VPN, admin and many more events.
So do anyone know the merits of switching to netflow protocol from syslog.
Thanks
Senthil
- Labels:
-
NGFW Firewalls
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
03-05-2010 01:17 PM
I think they are two complementory services. I would hate to go through syslogs to view my traffic flows, yet that's all Netflow does. I use them both and for me they both provide different critical services.
