cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1063
Views
0
Helpful
2
Replies

Cisco Netflow with VRFLite

Darren Frowen
Level 1
Level 1

Hi,

Can anyone help me with the following issue. We have a Cisco 6500 running the following image;

Cisco IOS Software, s72033_rp Software (s72033_rp-IPSERVICES_WAN-M), Version 12.2(33)SXH4, RELEASE SOFTWARE (fc1)

We are attempting to configure Netflow and export to a colloector. We have the following configuration applied to the device, we can ping from within the vrf to the destination of the flow collector

ip flow-cache timeout active 1

ip flow ingress layer2-switched vlan 1,800-801,803,821-823,861-862,871,900,998,1100-1107,1121,1200,1221,1301-1302,1321-1322

mls netflow interface

mls flow ip interface-full

ip flow-export version 5

ip flow-cache timeout active 1
ip flow ingress layer2-switched vlan 1,800-801,803,821-823,861-862,871,900,998,1100-1107,1121,1200,1221,1301-1302,1321-1322
mls netflow interface
mls flow ip interface-full

ip flow-export source Loopback0
ip flow-export version 5
ip flow-export destination [ip-address] 9996 vrf [vrf-name]

gbdrse01#ping vrf [vrf-name]  [ip-address] source l0

Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to [ip-address], timeout is 2 seconds:
Packet sent with a source address of [loopback0]

!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 12/12/16 ms

however we do not receive the flows on the collector. We can see the flow for both hardware and software but cannot see them at the collowctor.

Any help or sample configurations that work for Netflow and vrf lite would be appreciated.

Regards

2 Replies 2

Jerry Ye
Cisco Employee
Cisco Employee

It is not supported. The command allows you to configure vrf as destionation is a bug. This is issue has been tracked under the following enhancement request:

CSCsh99774 - http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&bugId=CSCsh99774

HTH,

jerry

Edison Ortiz
Hall of Fame
Hall of Fame
Review Cisco Networking for a $25 gift card