Usage Guidelines; Specifying An Nde Collector - Cisco WS-X6066-SLB-APC - Content Switching Module Software Manual

Catalyst 6000 series software configuration guide
Hide thumbs Also See for WS-X6066-SLB-APC - Content Switching Module:
Table of Contents

Advertisement

Configuring NDE

Usage Guidelines

If too many entries are added to the NetFlow table, follow these guidelines:

Specifying an NDE Collector

Before enabling NDE for the first time, you must specify an NDE collector and UDP port to receive the
exported statistics. The collector address and UDP port number are saved in NVRAM and are preserved
if NDE is disabled and reenabled or if the switch is power cycled.
Note
If you are using the NetFlow FlowCollector application for data collection, verify that the UDP port
number you specify is the same port number shown in the FlowCollector's nfconfig.file. This file is
located at /opt/csconfc/config/nfconfig.file in the FlowCollector application.
To specify an NDE collector, perform this task in privileged mode:
Task
Specify an NDE collector and UDP port for
data export of hardware-switched packets.
Catalyst 6000 Family Software Configuration Guide—Releases 6.3 and 6.4
15-4
Clearing the NDE Flow Filter, page 15-9
Disabling NDE, page 15-9
Removing the NDE IP Address, page 15-9
Displaying the NDE Configuration, page 15-10
Reduce the MLS aging time. Set the aging time high enough to keep the number of entries within
the 32k-flow range of the PFC. For information on how to change the MLS aging time, see the
"Specifying MLS Aging-Time Value" section on page 14-17
If there are protocols with fewer packets per flow running, reduce the MLS fast aging time. For
information on how to change the MLS fast aging time, see the
Time and Packet Threshold Values" section on page 14-18
Use the correct flow mask. Use the flow mask required to extract the kind of information you want.
A full flow mask gives more information but as the number of flows increase, the load on the
Layer 3 aging also increases. Try to use a flow mask with the minimum granularity required to get
the data you need. With a full flow mask, you might need to decrease the MLS aging time because
a full flow mask increases the number of flows per second. For information on setting the flow mask,
see the
"Setting the Minimum IP MLS Flow Mask" section on page 14-19
"Configuring MLS."
Exclude entries with fewer packets per flow. Some query protocols, like Domain Name System
(DNS), generate fewer packets per flow and can be excluded from the NetFlow table with the set
mls exclude protocol command. You can specify up to four protocol filters, but packets from
filtered protocols will go to the MSFC.
Keep specific flows from being added to the Netflow table with the set mls nde flow exclude
command.
in
Chapter 14, "Configuring MLS."
"Specifying IP MLS Fast Aging
in
Chapter 14, "Configuring MLS."
Command
set mls nde {collector_ip | collector_name}
{udp_port_number}
Chapter 15
Configuring NDE
in
Chapter 14,
78-13315-02

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents