Prime Infrastructure 2.0 and User Tracking
Hello
I'm having a look at getting wired User Tracking working on Prime 2.0. I checked that it is supported in the following link:
http://www.cisco.com/en/US/prod/collateral/netmgtsw/ps6504/ps6528/ps12239/guide_c07-729089.html
I'm having a problem getting dynamic user tracking working for wired non-802.1x clients. The switches are configured for mac-notification traps and the config works fine for LMS.
Another LMS User Tracking feature I'd link to get working in Prime 2.0 is CUCM intergartion where Prime would pull IP Phone extensions/names etc from CUCM.
Are either of these User Tracking features supported in Prime 2.0 (or at least roadmapped) or should I stick with LMS 4?
Thanks
Andy
I am gettng good non-802.1x wired user tracking info. see the screenshot below (click to expand).
I don't have a CM so I can't comment on that bit.
Row 1 in the screenshot, for example, is confirmed with the following CLI output:
User_Access#sh run int fa1/0/41
Building configuration...
Current configuration : 177 bytes
interface FastEthernet1/0/41
description user access
switchport access vlan 10
switchport mode access
snmp trap mac-notification change added
spanning-tree portfast
end
User_Access#sh mac address-table | i 1/0/41
10 000f.b58e.3732 DYNAMIC Fa1/0/41
User_Access#sh inv
NAME: "1", DESCR: "WS-C3750-48P"
PID: WS-C3750-48PS-S , VID: V10 , SN: FDO1425X2M9
User_Access#sh ver | i bin
System image file is "flash:/c3750-ipservicesk9-mz.122-55.SE5.bin"
User_Access#
Similar Messages
-
Cisco Prime Infrastructure 1.2 and Aironet 1250 + VSS issues
Hi,
I am new to the NCS implementations and configurations. I have one very specific case with Cisco Prime Infrastructure 1.2 and autonomnous APs and several issues with Cisco VSS on 6500 switches.
So here is the version from Prime:
NCS/admin# show version
Cisco Application Deployment Engine OS Release: 2.0
ADE-OS Build Version: 2.0.1.038
ADE-OS System Architecture: x86_64
Copyright (c) 2005-2010 by Cisco Systems, Inc.
All rights reserved.
Hostname: NCS
Version information of installed applications
Cisco Prime Network Control System
Version : 1.2.1.012
IOS version on our APs (which are autonomnous) is:
AP-N-1>show ver
Cisco IOS Software, C1250 Software (C1250-K9W7-M), Version 12.4(25d)JA1, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2011 by Cisco Systems, Inc.
Compiled Thu 11-Aug-11 03:23 by prod_rel_team
Well the issue what we have now is that access point has been added but its not recognized by the NCS prime. I have tried all three versions of SNMP but I get the same result. The SNMP configuration is valid since I use the same for my switching infrastructure. When I enter "debug snmp packets" and "terminal monitor" I can see the SNMP communication between Prime and Aironet 1250 which is standalone.
When I switch to Lifecycle theme and go to Operate > Device Monitor Center I see all devices I have added. The Aironet 1250 is reachable but under collection status I get Managed with Warnings. When I hover over with my mouse I get "None available".
I have successfully added my switching infrastructure in total, which is operating perfectly for Catalyst 2960/3650/3750/4500 series but for 6500 under VSS I have some warnings. The device is recognized by the system which is excellent and all is operational. I get the following errors under Collection Status:
feature_sensor
SNMP request timed out
feature_powerSupplyFanStatus-6k
SNMP request timed out
IdentityCapability
The device is unreachable.
feature_flashdevice
SNMP request timed out
sam_ipsla_feature
The device is unreachable.
What can be done to resolve these issues ? I have attached a screenshot of this particular issue. The affected access point is 172.16.165.241.
Predrag PetrovicHi rajeeshp,
Currently I am not allowed to upgrade it because of internal procedures involved in upgrading a specific piece of software (obtaining permissions from various departments). Is it free to upgrade from 1.2 to 1.3 or there is a specific charge for that.
Predrag Petrovic -
Prime Infrastructure 2.0 Importing user-defined group rules
Dears,
I'm looking for a way to import rules to put devices in a user defined group.
I can see how I can create groups and rules manually, but not how I could export or import those rules.
Is this possible, or on the roadmap?
Cheers,
MichelIn the Cisco Prime Infrastructure 2.0 Deployment Guide under LMS 4.2 Data Migration there is a way to import settings from a "special" backup made from LMS.
This should allow for importing userdefined groups.
Does anyone have tried this yet?
Cheers,
Michel -
Cisco Prime Infrastructure 2.0 and IPAM Solution
Hello everyone,
I'm student in a big company and my manager gave me a mission to study an IPAM solution.
In 3 month, we will use Cisco Prime Infrastructure 2.0
I turn to you cause I saw on this doc (link below) that CP Infrastructure 2.0 includes an IPAM Solution.
http://www.cisco.com/en/US/prod/collateral/netmgtsw/ps6491/ps11433/ps11480/ps11609/c45_658846_02_prime_aag.pdf
This IPAM Solution, is it just a repository to manage IP Adresse and DNS ?
Is it possible to write on DNS bind with IPAM of CP Infrastructure 2.0 ?
Thank you for your attention,
Cordially Vincent MaliquePas de problème Vincent.
The Network Registrar product is usually seen only in very large enterprises or service providers as it is designed to sale up to serving hundreds of thousands of addresses.
In smaller organizations looking to move beyond the spreadsheet method of keeping track of subnets, I have seen people have success with IPPlan (open source). Those wishing more functions and a supported product often go with SolarWinds IP Address Manager (IPAM) product. -
LMS 3.2 and user tracking problem
rme 4.3.1
cm5.2.1
cv 6.1.9
dfm 3.2.0
ipm 4.2.0
portal 1.2.0
cs 3.3.0
cwasst 1.2.0
running on windows server 2008.
This was a clean bulid, and we imported all pertinent data from our old lms 2.6 server. This was in september 2010. Everything worked as expected and continues to work except for......
We are in an upgrade cycle for our 4500s. We are upgrading from 12.2.50-sg4 to 12.2.50-sg8, and also upgrading rommon to 12.2.31r-sga4.
It appears that user tracking is not working anymore for the upgraded 4500s. UT still runs, and works perfectly for all other devices, including the 4500s that have not been upgraded yet. I know this sounds goofy, but it really does seem to be the common denominator. I've checked the windows updates, package updates, etc in trying to figure out what made this happen. It really does all come back to upgrading to the above version. All aspects of this server are running great and as expected, it's just that UT for the upgraded 4500s isn't working anymore. I do run the logbackup script weekly (past experience has taught me to do this), and try and keep up with any patches or package updates, etc.
If anyone has seen something similar or can suggest anything, I'd appreciate it. I think I am going to have to open a case on this. Thanks - chrisMichel,
Indeed, it looks like that is the problem. I guess I was focused in on CW rather than the whole picture. But yes, indeed, if I walk the mac table for a vlan on a 4500 that has not been upgraded it works. If I do the same on an upgraded one, I get nothing.
The cautious optimism is that we do have a sup6 at our DR location that is running 12.2.53-sg1 and this test works on that switch. So as long as that
version isn't deferred, we'll test that on one of the older sups to verify.
So thanks for the help, I appreciate it - chris -
Prime Infrastructure 2.0 and Nexus 5548, SSH credentials fail
Hi,
I'm having problem getting the Prime Infrastructure 2.0 to login with SSH to a Nexus 5548 to do an inventory. I get "Wrong Telnet/SSH credentials". But when I use the same credentials from another SSH-client it works fine. I also tested to SSH from the console of the Prime-server and that also works fine.
Any ideas???
Regards,
Stefan LindkvistI have PI 2.0 working against Nexus 5k's in two different installations. See below for an example (click to enlarge).
Have you put in an entry in both the login and enable fields (even though they are not separately required when logging in directly)? -
LMS 4.0.1 and User tracking with SNMP v3
Hi! (again )
I've another problem with our new LMS 4.0.1.
We manage our devices with SNMP v3 but the user tracking don't want to work flawlessly.
I've attached an example from our SNMP configuration. Basicly it's the same in our devices.
1st the problem was that no matter what I did the User tracking didn't want to find any host. I left it and worked on something else. After 2 weeks suddenly appeard couple of thousand end host.
As earlier (LMS 2.6 or 3.2 with snmp v2) it is the same that LMS cannot differentiate normal end host and IP Phones although we have several thousand from both. But this is only one problem.
The other is that there are switches with the same IOS and SNMP configuration and from one I get the UT data and from another one I didn't get anything. Only from some 4506 (aprox. 12-15) and 6506 (2) works and we have 20+ 4506 and 10+ 6506. Not to mention the other switches (couple of houndred 2960 and 3750).
I'll be grateful if somebody could advice what to do.
Thanks
GaborUnderstanding Debugger Utility
The utility displays a report on the reasons why User Tracking failed to discover end hosts on specific ports.
In many cases, User Tracking may not perform as expected. This may be because of problems in other LMS applications. For instance LMS Server may have devices that are not discovered or inadequate VLAN discovery in Topology Services.
You can run the utility to troubleshoot problems, or provide the report and log generated by the utility when you contact TAC for help in diagnosing problems.
The debugger utility uses the data collected by LMS Server and reports the reasons for the missing ports in User Tracking.
This tool also has an SNMP component embedded which runs an SNMP query for the table as a part of verification for SNMP failure. For example, SNMP bugs in Catalyst operating system because of which User Tracking may fail to discover devices.
This generates an Action Report that you can use to analyze the data.
The Debugger Utility:
1. Checks the switch ports in a sequential order.
2. Reports violation of basic rules for each of the missing ports such as link ports and trunk ports.
3. Checks for SNMP retrieval of data, if the ports pass the validity check.
4. Generates an Action Report suggesting possible remedial actions to retrieve the valid missing ports.
Using Debugger Utility
The Debugger Utility is available at $NMSROOT/campus/bin/ (where $NMSROOT is the directory where you have installed CiscoWorks).
To run the Debugger Utility, run the command:
utdebug -switch switch-ip -port port1[,port2 ...] [-export filename]
where,
switch is the switch to which the end hosts are connected.
ports are the ports on the switch which have missing end hosts User Tracking.
-export filename specifies that the debug messages be stored in the file specified. If this option is not used, the messages are displayed on the console.
For example,
utdebug -switch 10.29.6.12 -port 5/12
utdebug -switch 10.29.100.10 -port Fa0/10
utdebug -switch 10.29.6.14 -port Gi6
Pretty sure you will find this and perhaps more in the build in help of LMS
Cheers,
Michel -
Cisco Prime Infrastructure 2.0 and Cisco ASA
Hello,
We've recently installed trial version of Cisco Prime Infrastructure 2.0 Express. We hoped that it already supports Cisco ASA 55xx series (especially 5505, we have pretty amount of them). But we had some problems with PI and asa durind the exploitation process.
First, I've added ASA to PI, and Inventory Collection Status is Completed, but I can't see CPU and RAM utilization graphs. Inventory.logs are non-informative.
Also, config backup is success, but when I try to watch the backuped configuration at Configuration Archive PI says "Failed to fetch raw configuration". And so on.
ASA version is 5505, image is 9.1(2).
So, I have a question: is it possible to manage ASAs with PI 2.0?
UPD: I've just tried to upgrade asa to 9.1(4), and behavior of the equipment is quite the same. Seems we shall wait for 9.2 to be released.Have you downloaded and applied the latest Device Pack updates?
PI enhanced ASA support after the initial 2.0 release and the Device Packs incorporate that change.
The README file for Device Packs explains how to install them. (A bug currently does not allow the direct download in PI so you need to follow the method for installation from local storage after you manually download. Here is a link to the download location. -
WLC 5508, Prime Infrastructure, 7921 phones and QoS
Hi everybody!
I have deployed about 50 wireless cisco phones int the network with 27 APs with the WLC 5508.
I'm trying to investigate phones behaviour (I have some loss of audio).
And I use Prime Infrastructure for monitoring.
I run the Voice Diagnostic on the selected two phones.
and in the Charts I see the next:
1. for one phone "Downlink AC Queue Usage" shows all the traffic of "voice packets". but "Uplink AC Queue Usage" shows all the traffic of the "Best efforts packets".
2. for the second phone "Downlink AC Queue Usage" shows all the traffic of "Best efforts packets". and "Uplink AC Queue Usage" shows all the traffic of the "Video packets".
that is strange, very strange. the WLAN of these phones uses platinum QoS. none of other WLANs uses "gold" QoS.
does this mean I have a QoS misconfiguration?
where may the failure be? WLC? switches? router?
please, any suggestions...I noticed few misconfigurations as per your response
1. Are you configured AP as FlexConnect ? If not AP connected switchport should be configured as ACCESS port & trust DSCP. If it is configured as FlexConnect, then you can configure switchport as turnk & in that case you have to trust CoS using "mls qos trusct cos" command.
2. WLC connected trunk ports always to be configured to trust CoS not DSCP. Otherwise WLC set QoS value ignored by your switch.
3. If you WLAN is set for Platinum then you have to configure Platinum QoS profile for 802.1p & set value as 6.
I would suggest you to verify QoS value preserve across you switch network. You have to take some wireshark packet caputres (as shown in my reference link) and make sure your voice packet DSCP goes into rest of your network as EF. You need to do this for upstream & downstream (from 7921 perspective) traffic. Here is the traffic flow if AP connected to switchport 1 & WLC connnected to switchport 2.
7921 <-> AP <-> Switch port 1 <-> Switchport 2 <-> WLC <-> Switchport2 <-> Rest of your network
Once you do this, then you can go to Prime & check those charts to reflect QoS values correctly. Otherwise you do not know where these QoS value get stripped/or modified in your network.
HTH
Rasika
**** Pls rate all useful responses **** -
Cisco Prime Infrastructure EoL/EoS and PSIRT reports
Hi
does PI 2.0 support these reports?
I have a trial version of 2.0, but can't seem to find these reports. In the release notes, it says these are supported?
New Features and Enhancements
•Support for End-of-Sale/End-of-Life Lifecycle Management reports for hardware, software and modules.
•Support for PSIRT reports detailing devices impacted by Cisco security advisories.
Any idea how to run these reports?
Thanks for your helpHi There,
I'm not sure if we are talking about the same thing, but we are running Prime Infrastructure 2.0. (2.0 (2.0.0.0.294))
You have to enable compliance from the settings (restart) and if you look under Report / Report Launch Pad, in the menu on the left is Device, click on there and you will see EOX ...... I've only had a quick look at the reports, but looks to work.
HTH
Simon -
Cisco Prime Infrastructure 2.0 and ASA 55xx platform
Hello,
We recently upgraded to Prime Infrastructure 2.0 with the hope being able to manage our ASA's from PRIME (and complete an LMS migration).
When I attempt to add ASA's to prime i get the following collection errors:
Unable to collect processor and RAM information. Processor and RAM information. Unexpected error. See the log file inventory.log for details.
In the logfile I get the following XML parsing error on the MIB:
<palError>
<deviceId>6284310032</deviceId>
<code>VALIDATION_ERROR</code>
<message>Failed to validate output XML: cvc-maxInclusive-valid: Value '3484331296' is not facet-valid with respect to maxInclusive '2147483647' for type 'int'.</message>
<result>
<result xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:noNamespaceSchemaLocation="/CISCO-MEMORY-POOL-MIB/xmp-im-file-system-module.xsd">
<xmp-im-file-system-module>
<MemoryPoolStatistics>
<memoryPoolIndex>1</memoryPoolIndex>
<free>4294967295</free>
<largestFree>4294967295</largestFree>
<used>3484331296</used>
</MemoryPoolStatistics>
To me it seems that the ASA returns a value that is bigger then int32 and thus causes an overflow? Any clues? Workarounds to add an ASA to Prime without checking these MIB'S?
Regards,
MarcelThe X series (all with 64-bit SMP images) are not currently supported by PI 2.0. We can hope for a device update in the coming months to remedy that situation.
If you click on the arrow next to the help icon in the top right of your PI and choose "Device Level Support" you will see:
Cisco ASA-5500 Series Adaptive Security Appliances
Features :
Topology
LLDP Neighbor Discovery
CDP Neighbor Discovery
Configuration
Configuration Archive
Software Image Management
Monitoring
Device Availability
Reachability
Inventory
Physical
System - Memory Pools
Interfaces - IP
Interfaces - Ethernet
Device Type
SYSOIDS
S/W Version
Software
Cisco ASA-5510 Adaptive Security Appliance
OID:1.3.6.1.4.1.9.1.669
OID:1.3.6.1.4.1.9.12.3.1.3.447
Cisco ASA-5510 Adaptive Security Appliance Security Context
OID:1.3.6.1.4.1.9.1.773
Cisco ASA-5520 Adaptive Security Appliance
OID:1.3.6.1.4.1.9.1.670
OID:1.3.6.1.4.1.9.12.3.1.3.448
Cisco ASA-5520 Adaptive Security Appliance Security Context
OID:1.3.6.1.4.1.9.1.671
Cisco ASA-5540 Adaptive Security Appliance
OID:1.3.6.1.4.1.9.1.672
OID:1.3.6.1.4.1.9.12.3.1.3.449
Cisco ASA-5540 Adaptive Security Appliance Security Context
OID:1.3.6.1.4.1.9.1.673
Cisco ASA-5560 Adaptive Security Appliance
OID:1.3.6.1.4.1.9.12.3.1.3.454
Cisco ASA-5550 Adaptive Security Appliance
OID:1.3.6.1.4.1.9.1.753
Cisco ASA-5550 Adaptive Security Appliance Security Context
OID:1.3.6.1.4.1.9.1.763
Cisco ASA-5505 Adaptive Security Appliance
OID:1.3.6.1.4.1.9.1.745
OID:1.3.6.1.4.1.9.12.3.1.3.560
Cisco ASA-5580 Adaptive Security Appliance
OID:1.3.6.1.4.1.9.1.914
Cisco ASA-5585 Adaptive Security Appliance
OID:1.3.6.1.4.1.9.1.1194
OID:1.3.6.1.4.1.9.1.1195
OID:1.3.6.1.4.1.9.1.1196
OID:1.3.6.1.4.1.9.1.1197
Cisco ASA-5585 Adaptive Security Appliance Security Context
OID:1.3.6.1.4.1.9.1.1198
OID:1.3.6.1.4.1.9.1.1199
OID:1.3.6.1.4.1.9.1.1200
OID:1.3.6.1.4.1.9.1.1201
Cisco ASA-5585 Adaptive Security Appliance System Context
OID:1.3.6.1.4.1.9.1.1202
OID:1.3.6.1.4.1.9.1.1203
OID:1.3.6.1.4.1.9.1.1204
OID:1.3.6.1.4.1.9.1.1205
Cisco ASA-5580 Adaptive Security Appliance Security Context
OID:1.3.6.1.4.1.9.1.915
Cisco ASA-5580 Adaptive Security Appliance System Context
OID:1.3.6.1.4.1.9.1.916 -
Cisco Prime Infrastructure 2.0 and ASA 55xx platform problem
Hello,
We recently upgraded to Prime Infrastructure 2.0 with the hope being able to manage our ASA's from PRIME (and complete an LMS migration).
When I attempt to add ASA's to prime i get the following collection errors:
Unable to collect processor and RAM information. Processor and RAM information. Unexpected error. See the log file inventory.log for details.
In the logfile I get the following XML parsing error on the MIB:
<palError>
<deviceId>6284310032</deviceId>
<code>VALIDATION_ERROR</code>
<message>Failed to validate output XML: cvc-maxInclusive-valid: Value '3484331296' is not facet-valid with respect to maxInclusive '2147483647' for type 'int'.</message>
<result>
<result xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xsi:noNamespaceSchemaLocation="/CISCO-MEMORY-POOL-MIB/xmp-im-file-system-module.xsd">
<xmp-im-file-system-module>
<MemoryPoolStatistics>
<memoryPoolIndex>1</memoryPoolIndex>
<free>4294967295</free>
<largestFree>4294967295</largestFree>
<used>3484331296</used>
</MemoryPoolStatistics>
To me it seems that the ASA returns a value that is bigger then int32 and thus causes an overflow? Any clues? Workarounds to add an ASA to Prime without checking these MIB'S?
Regards,
MarcelHi,
does anyone happen to know if that problem is fixed? My currently setup looks like this:
1. Cisco Prime Infrastructure 2.1 with updated device pack.
2. Assurance license
3. ASA5510 which has enabled netflow. Netflow is being sent to Cisco Prime 2.1
I do receive netflow raw data within Cisco Prime 2.1 but any graphical display of netflow data is not working. Does anybody has an idea where the problem is? Could it be that the graphical data is only displayed when sending netflow 1, netflow 5 or netflow 7?
regards
Maurus -
Prime Infrastructure 2.0 and add a WLC device
Hi,
One question regarding to add a device / WLC Controller into NCS 2.0. I done this in the past with NCS 1.3 without problems
but now I don´t know why but if I add a device into the NCS 2.0 I get the the message CLI Failure / timeout.
I doublechecked all on the controller but I don´t see any failure . For my understanding I have to add a user under"Local Managmeent User " and then add this credentials into the Telnet/SSH Parameters on the NCS 2.0 .
Thanks for help.Hi Scott,
Upto 7.3 config guide it was documented we have to reboot WLC when we configuring SNMP v3 which is wrong. (here is 7.3 config guide link for reference). May be older version (prior to 7.0) had that requirement, not too sure about it
http://www.cisco.com/en/US/docs/wireless/controller/7.3/configuration/guide/b_wlc-cg_chapter_0100.html#d16741e4514a1635
From 7.4 onwards config guide does not talk about it all. I deleted the default SNMPv3 user & create a new user in 7.4 & add it to prime without rebooting WLC.
Once you configureed a SNMPv3 user on a WLC, I do no think you can edit/change the password. You have to delete the user & recreate it with modified username/password.Then re-add the WLC to prime
The behaviour you mentioned is with any of later codes of WLC ?
Rasika -
CiscoWorks LMS 4.0.1 and user tracking utility 2.0.
Hello.
We are using UTU 2.0 on more computers. For one of these we are unable to obtain results from search.
How can I debug UTU?
Thanks.
Regards.
AndreaUTU uses the same ports as a browser would to connect to LMS. 1741 and 443 depending on what is configured on the LMS side.
You should test from that computer if the used port is open .
Cheers,
Michel -
Ask the Expert: Cisco Prime Infrastructure - Implementation and Deployment
Welcome to the Cisco Support Community Ask the Expert conversation.
This Ask The expert Session will cover questions spanning Cisco Prime Infrastructure on Implementation and Deployment on Wired and Wireless. This will be more specific to Customer’s and Partners questions product covering PI on configuration, Features and Menu, Network Monitoring, Maps, Implementation, High Availability and Maintenance and t/s parts.
Monday, February 2nd, 2015 to Friday, February 13th, 2015
Dhiresh Yadav is a customer support engineer in High-Touch Technical Services (HTTS) handling supporting Wireless and Network Management based Cisco products and is based in Bangalore. His areas of expertise include Cisco Prime Infrastructure and Cisco Wireless products. He has over 7 years of industry experience working with large enterprise and service provider networks. He also holds CCNP (RS) and CCIE (DC) certifications.
Afroz Ahmad is a customer support engineer in High-Touch Technical Services (HTTS) handling supporting Wireless and Network Management based Cisco products and is based in Bangalore. His areas of expertise include Cisco NMS products like Prime Infrastructure, LMS, IP SLA and SNMP etc. He has over 7 years of industry experience working with large enterprise and service provider networks. He also holds CCNP (RS),CCIE (DC), and SCJP (Sun Certified Java Professional )
Vinod Kumar Arya is a customer support engineer in High-Touch Technical Services (HTTS) handling supporting Wireless and Network Management based Cisco products and is based in Bangalore. His areas of expertise include Cisco NMS products like Prime Infrastructure, LMS, IP SLA and SNMP etc. He has over 8 years of industry experience working with large enterprise and service provider networks. He also holds VCP 5 and RHCE certifications.
** Remember to use the rating system to let the experts know you have received an adequate response.**
Because of the volume expected during this event, the experts might not be able to answer every question. Remember that you can continue the conversation in the Network Infrastructure community, > Network Management, shortly after the event. This event lasts through February 13th 2015. Visit this forum often to view responses to your questions and those of other Cisco Support Community members.Hello Wilson,
Thanks for joining us.
1841 should just work fine for net flow . Hope you have a valid "PI Assurance license" installed on the server.
"PI Assurance license" is required for "net-flow" feature
Devices supporting Netflow in PI ::
1400, 1600, 1700 & 1800
2500, 2600 & 2800
3600, 3700, 3750 & 3800
4500 & 4700
AS5300 & 5800
7200, 7300, 7400 & 7500
Catalyst 4500 ASCI
Catalyst 5000, 6500, & 7600 ASCI
ESR 10000 ASCI
GSR 12000 ASCI
Cisco IOS Software Release Version
Supported Cisco Hardware Platforms
11.1CA, 11.1CC
Cisco 7200 and 7500 series, RSP 7200 series
12.0
Cisco 1720, 2600, 3600, 4500, 4700, AS5800
RSP 7000 and 7200 series
uBR 7200 and 7500 series
RSM series
12.0T, 12.0S
Cisco 1720, 2600, 3600, 4500, 4700, AS5800
RSP 7000 and 7200 series
uBR 7200 and 7500 series
RSM series, MGX8800RPM series, and BPx8600 series
12.0(3)T, 12.0(3)S
Cisco 1720, 2600, 3600, 4500, 4700, AS5300, AS5800
RSP 7000 and 7200 series
uBR 7200 and 7500 series
RSM series, MGX8800RPM series, and BPx8650 series
12.0(4)T
Cisco 1400, 1600, 1720, 2500, 2600, 3600, 4500,
4700, AS5300, AS5800
RSP 7000 and 7200 series
uBR 7200 and 7500 series
RSM series, MGX8800RPM series, and BPx8650 series
12.0(4)XE
Cisco 7100 series
12.0(6)S
Cisco 12000 series
NetFlow is also supported by these devices Cisco 800, 1700, 1800, 2800, 3800, 6500, 7300, 7600, 10000, CRS-1 and these Catalyst series switches: 45xx, 55xx, 6xxx.
NetFlow export is also supported on other Cisco switches when using a NetFlow Feature Card (NFFC) or NFFC II and the Route Switch Module (RSM), or Route Switch Feature Card (RSFC). However, check whether version 5 is supported, as most switches export version 7 by default.
You can check the below steps to diagnose the issue::
To verify that NetFlow is exported from a device to PI, follow the steps below:
1) Browse to Administration > Data Sources page. Check the value in column ‘Last Active Time’ for the ‘Device Data Sources’ table. If the table is empty or the value does not represent recent time, then
it is possible that the device is not exporting NetFlow or PI Assurance license is not applied / expired.
2) Login to PI console ( via SSH) as root user and run the command:
netstat –an | grep 9991 – Output of this should be like : udp 0 0 :::9991 :::*
Check the firewall settings on PI server using the command: firewall -L
1) Check the configuration on an IOS / IOS –XE device. Run the commands
a) sh running-config | inc destination
1) This should list the IP address of the PI SERVER ( along with other outputs if any)
b) sh running-config | inc 9991
1) This should list at least one entry.
c) If the above are fine, then verify that the flow monitor, flow exporter and the flow records are correctly configured on the device.
Refer to the URLs below to configure NetFlow export.
http://preview.cisco.com/en/US/docs/net_mgmt/prime/infrastructure/2.0/user/guide/setup_monitor.html#wp1056427
Thanks-
Afroz
***Ratings Encourages Contributors ****
Maybe you are looking for
-
How to deauthorize a computer , that doesn't exist anymore?
I unisnstalled windows , and for some reason when i inserted my ipod to the freshly installed windows+itunes , and logged on my account , iTunes said , that its a new computer and asked me to authorize it , and so i did. My question is: how can i dea
-
Trouble updating Mini " Playlist no longer exists"
I recently tried to update my mini but the an error msg "songs on the iPOD cannot be updated because all of the playlists no longer exist" how can i fix this?
-
Verifier and method transactions
Test Name : tests.ejb.ContainerTransactionStyle3 Test Assertion : The container transaction method must be one defined in the remote or home interface of the specified enterprise bean test Test Description : For [ module_forum_jar#forum_jar
-
Creating a thread object in ABAP
Hi, Is it possible to create a threa in ABAP function modules or in ABAP objects or in both? For example do the following in ABAP code: while(true){ if(someCheck) else terminate thread }thread sleep(1 second) regards Baran
-
Hi I created a template for catalog in InDesign using xml. It works fine with some exceptions. I tag firstname and lastname of Authors. But in the catalog only lastname is displayed. if i remove the lastname tag, it show the first name. Could you ple