NetFlow - path from Routers to Collector

Shane Ronan shane at ronan-online.com
Tue Sep 1 17:18:17 UTC 2015


Roland,

While your way may be best practice, sometimes real life gets in the way 
of best practice.

Shane

On 9/1/15 1:12 PM, Roland Dobbins wrote:
>
> On 2 Sep 2015, at 0:08, Steve Meuse wrote:
>
>> Your advice is not "one size fits all".
>
> Actually, it is.
>
> Large backbone networks have DCNs/OOBs, and that's where they export 
> their NDE.
>
>> I've done netflow over production links for two very large backbone
>> networks.
> Did you manage your routers and switches and hosts and so forth 
> in-band, too?
>
>> Over the combined 17(?) years, never saw a problem.
>
> Until you do.
>
> Running flow telemetry in-band is penny-wise and pound-foolish, for 
> networks of any size, in any circumstances.  All management-plane 
> traffic (and that's what flow telemetry is) should be segregated from 
> the production network data plane.
>
>
> -----------------------------------
> Roland Dobbins <rdobbins at arbor.net>




More information about the NANOG mailing list