cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2203
Views
0
Helpful
1
Replies

NTP & Netflow with DMVPN

bmccomb30
Level 1
Level 1

We sucessfully implemented DMVPN in our environment with EIGRP.  I have two issues that I think are related:

1) We want to use our internal NTP servers for the router

2) We want to send Netflows from the router to our internal Netflow Analyser server

It appears that this traffic is not going through the tunnel interface but straight to the Internet.  I have tried setting the NTP source to be the LAN interface, Loopback0 interface, and the tunnel interface with no luck.

Can anyone advise me how to approach this issue?

1 Reply 1

kyukim
Cisco Employee
Cisco Employee

Hi.

1. NTP is just unicast packet. If it will be routed based on source and destination. So, NTP should go through tunnel if your routing from source to destination points tunnel.

you can run "deb ntp packet" or "deb ip packet xxx det" (xxx is number ACL specifying NTP source to destination) to confirm.

2. Netflow Export over IPSEC tunnel

You need to configure "flexible netflow", not normal netflow.

http://www.cisco.com/en/US/docs/ios/fnetflow/configuration/guide/12_4t/fnf_12_4t_book.html

KK

Review Cisco Networking for a $25 gift card