Aggregator filtering sets filters for all received flows on application level in order to filter unnecessary flows from processing.

NetFlow users can view and NetFlow administrator can add, edit, delete or reorder aggregator filters.

To configure aggregator filtering, go to  > Settings > NetFlow Settings > Aggregator Filtering tab.

You are able to accept or reject any traffic coming via:

 

      • Source IP
      • Destination IP
      • Source port
      • Destination port
  • Protocol
  • Exporter IP
  • Interface in
  • Interface out

 

 

NetVizura NetFlow Aggregator Filtering

 

Note that filters are executed in their order. Default filter is always applied last.

If you add filters, you can have two filter strategies:

  • Set default filter to reject all flows and create specific filters that explicitly accept certain flows
  • Set default filter to accept all flows and create specific filters that explicitly reject certain flows

In case Exporter IP is used to create a filter and that netflow exporter changes its export IP address, you will have to manually updated the filter.

 

  • No labels