Submit a ticketCall us

Announcing NCM 7.7
With NCM 7.7, you can examine the rules that make up an access control list for a Cisco ASA device. Then you can apply filters to display only rules that meet the specified criteria, order the rules by line number or by the hit count, and much more.
See new features and improvements.

Home > Success Center > Netflow Traffic Analyzer (NTA) > NTA 4.2.3 Administrator Guide > NTA reports > Customize a report to filter multicast data and group UDP data

Customize a report to filter multicast data and group UDP data

Table of contents
No headers
Created by Lori Krell_ret, last modified by Alexandra.Nerpasova on Oct 24, 2016

Views: 18 Votes: 0 Revisions: 4
  1. Create an IP Address Group for multicast traffic:

    If you want to display the new IP address group in the Top XX Address Group resource, select Enable Display in Top XX Address Group Resource.

    1. Click Settings > All Settings.
    2. Under Product Specific Settings, click NTA Settings.
    3. Under IP Address Groups, click Manage IP Address Groups.
    4. Click Add New Group.
    5. Add a Description.
    6. Select IP Range, and type 224.0.0.0 and 239.255.255.255.
    7. Click OK.
    8. Click Submit.
  1. Click Reports > All Reports.
  2. Click Manage Reports.
  1. Find and edit the report you want to modify:
    1. In the Group By list, select Report Category, and then select Historical NetFlow Reports in the list below.
    2. Select the Top 50 Endpoints box in the main reports list, and click Duplicate & Edit.
  2. Adjust the object you want to report on. Add conditions stipulating that you are only interested in the multicast traffic through the UDP port.
    1. Click Edit next to the For list.
    2. On the Add Content menu, click Advanced Selector.
    3. Add the condition defining the port for the monitored traffic.
      1. Click File:Success_Center/Reusable_content_-_InfoDev/NTA/NTA-Mindtouch-CHM/080/0A0/Add.png Add Condition to display a new branch below the Where list.
      2. Click Select Field.
      3. On the Add Column menu, under Database Column Name, select Port Number, and click Add Column.
      4. Type the port number in the last field next to Port Number.
    4. Add the condition defining that you are only interested in the traffic via IP addresses in the multicast IP address group.
      1. Click File:Success_Center/Reusable_content_-_InfoDev/NTA/NTA-Mindtouch-CHM/080/0A0/Add.png, and then Add Simple Condition.
      2. Click Select Field.
      3. In the Available Columns list, click NetFlow IP Address Group.
      4. Under Database Column Name, select IP Address Group Name, and then click Add Column.
      5. Type the name of the multicast IP address group, which you created in step 1, in the last field next to IP Address Group Name.
    5. Click Add to Layout.
  3. Edit the output table for the report:
    1. Under Content, click Edit Table.
    2. Add the Protocol column.
      1. Click File:Success_Center/Reusable_content_-_InfoDev/NTA/NTA-Mindtouch-CHM/080/0A0/Add.png to add a new column.
      2. In the Available Columns list, select NetFlow Protocol.
      3. Under Database Column Name, select Protocol Name.
      4. Click Add Column.
    3. Add interface-relevant columns that you want to see in the report.
      1. Click File:Success_Center/Reusable_content_-_InfoDev/NTA/NTA-Mindtouch-CHM/080/0A0/Add.png to add a new column.
      2. In the Orion Object list, select Interface.
      3. Select Egress Interface if you are interested in traffic leaving the node via interfaces, or Ingress Interface if you are interested in traffic coming into the node.
      4. Under Database Column Name, select appropriate columns, and then click Add Column.
    1. Define how you want to sort results. Select the column according to which you want to sort results in the Sort By list, and the direction.
    2. Under Group Results By, select Protocol Name - NetFlow Protocol.
    3. Click Submit.
  4. Complete the Edit Report wizard.
  5. On the Summary tab, click Submit.
 
Last modified
08:57, 24 Oct 2016

Tags

Classifications

Public