[194899] in North American Network Operators' Group

home help back first fref pref prev next nref lref last post

Re: Proxying NetFlow traffic correctly

daemon@ATHENA.MIT.EDU (Selphie Keller)
Tue Jun 6 22:56:53 2017

X-Original-To: nanog@nanog.org
In-Reply-To: <0EC13A32-A983-40A9-99E3-576F3EA6F221@arbor.net>
From: Selphie Keller <selphie.keller@gmail.com>
Date: Tue, 6 Jun 2017 20:56:50 -0600
To: "Dobbins, Roland" <rdobbins@arbor.net>
Cc: "nanog@nanog.org" <nanog@nanog.org>
Errors-To: nanog-bounces@nanog.org

samplicate is very good, been using it for 6 years for netflow duplication
using botth the spoofing and non, depending on the sensor's needs if it
needs to retain the source ip or not.



On 6 June 2017 at 20:39, Dobbins, Roland <rdobbins@arbor.net> wrote:

>
>
> On Jun 7, 2017, at 06:32, Sami via NANOG <nanog@nanog.org<mailto:nanog@
> nanog.org>> wrote:
>
> My goal is to centralize NetFlow traffic into a single machine and then
> proxy some flows to other destinations for further analysis
>
> <https://github.com/sleinen/samplicator>
>
> Or nprobe, as was already mentioned.
>
> -----------------------------------
> Roland Dobbins <rdobbins@arbor.net<mailto:rdobbins@arbor.net>>
>

home help back first fref pref prev next nref lref last post