Identify more than just the ingress and egress packet throughput on your ASA Firewall

Posted in ASA, NetFlow, Scrutinizer on October 15th, 2009 by scottr
identify-more-than-just-the-ingress-and-egress-packet-throughput-on-your-asa-firewall

NSEL (NetFlow Security Event Logging) is the type of NetFlow exported from an ASA Firewall. The purpose of NSEL is to track firewall events via NetFlow and to have a summary of all conversations associated with that event type.

The three most popular event types that trigger a NetFlow record are:

                                            * flow-create
                                            * flow-denied
                                            * flow-teardown

Read more »

Tags: , , , , , , , , , , , , , ,