Submit a ticketCall us

Announcing NCM 7.7
With NCM 7.7, you can examine the rules that make up an access control list for a Cisco ASA device. Then you can apply filters to display only rules that meet the specified criteria, order the rules by line number or by the hit count, and much more.
See new features and improvements.

Home > Success Center > Netflow Traffic Analyzer (NTA) > Verify Netflow traffic is received in NTA port 2055

Verify Netflow traffic is received in NTA port 2055

Table of contents
Created by Malik Haider, last modified by MindTouch on Jun 23, 2016

Views: 757 Votes: 4 Revisions: 5

Overview

This article provides steps to verify if NTA traffic is received at SolarWinds NTA port 2055 using the Wireshark tool.

Environment

All NTA versions 

Steps

Notes:

 

Filter and verify the traffics is received;

1. Install Wireshark. 
    Download Wireshark and install on your Orion Server or Kiwi Syslog Server.
    Wireshark · Download

2. Disable Windows Firewall Disabled on Orion Server or Create a Rule in Windows Firewall to allow port traffic.

3. Click > Capture >  Interfaces.

4. Select the required correct interface.

 

wireshark NTA 1.jpg

 

5. Apply required filter.

6. Change the IP in filter of Node which is sending Netflow to Orion (Cisco/Juniper/Switch/Router) and apply.

ip.src == 192.168.1.1 && udp.port == 2055

OR

udp.port == 2055

7.  Click Apply.

 

You should be able to see traffic from the Nodes like Cflow (for Cisco ), flow for Juniper, or Sflow.

If you still do not see packet, check your device or network for further troubleshooting. This will confirm Orion is not receiving any packet hitting NTA default port 2055.

 

 

NetflowT.JPG

 

Last modified
21:01, 22 Jun 2016

Tags

Classifications

Public