для Cisco Cisco ASA 5550 Adaptive Security Appliance
26
Cisco ASA NetFlow Implementation Guide
Enable NetFlow (ASDM)
Step 2
To add a service policy rule, perform the following steps:
a.
Click Add to display the Add Service Policy Rule Wizard. See the firewall configuration guide for
more information about service policy rules.
more information about service policy rules.
b.
Click the Global - applies to all interfaces radio button to apply the rule to the global policy. Click
Next.
Next.
c.
Check the Source and Destination IP Address (uses ACL) check box or the Any traffic check box
as traffic match criteria, or click the Use class-default as traffic class radio button. Click Next to
continue to the Rule Actions screen.
as traffic match criteria, or click the Use class-default as traffic class radio button. Click Next to
continue to the Rule Actions screen.
Note
NetFlow actions are available only for global service policy rules and are applicable only to the
class-default traffic class and to traffic classes with traffic match criteria of “Source and
Destination IP Address (uses ACL)” or “Any traffic.”
class-default traffic class and to traffic classes with traffic match criteria of “Source and
Destination IP Address (uses ACL)” or “Any traffic.”
Step 3
Click the NetFlow tab in the Rule Actions screen.
Step 4
Click Add to display the Add Flow Event dialog box and specify flow events, then perform the
following steps:
following steps:
a.
Choose the flow event type from the drop-down list. Available events are created, torn down, denied,
updated, or all.
updated, or all.
Note
The flow-update event is not available in Version 9.0(1). It is available in Versions 8.4(5),
and 9.1(2) and later.
and 9.1(2) and later.
b.
Choose collectors to which you want events sent by checking the corresponding check boxes in the
Send column.
Send column.
c.
Click Manage to display the Manage NetFlow Collectors dialog box, in which you can add, edit
or delete collectors, or configure other NetFlow settings (for example, syslog messages). Click OK
to close the Manage NetFlow Collectors dialog box and return to the Add Flow Event dialog box.
See
or delete collectors, or configure other NetFlow settings (for example, syslog messages). Click OK
to close the Manage NetFlow Collectors dialog box and return to the Add Flow Event dialog box.
See
of
for more information about configuring collectors.
Step 5
Click OK to close the Add Flow Event dialog box and return to the NetFlow tab.
Step 6
Click Finish to exit the wizard.
Step 7
To edit a NetFlow service policy rule, perform the following steps:
a.
Select it in the Service Policy Rules table, and click Edit.
b.
Click the Rule Actions tab, then click the NetFlow tab.