Why are there so few channels built into the netflow sensor? This results in much of the traffic being cataloged as other, and makes it hard to find out bandwidth utilization. Has anyone made a more complete channel definition list they can share that contains more commonly used TCP ports for a Windows, Cisco, Vmware centric IT environment?
I see that you can save the other stream to disk and then parse the results to find out the traffic with source/dest IPs and ports but this seems rather painstaking.
Anyone have anything custom that we can copy/paste?
Add comment