Datasheet

Lab Collecting and Analyzing NetFlow Data
© 2013 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public. Page 2 of 13
Background / Scenario
NetFlow is a Cisco IOS technology that provides statistics on packets flowing through a Cisco router or
multilayer switch. NetFlow enables network and security monitoring, network planning, traffic analysis, and IP
accounting. It is important not to confuse NetFlow’s purpose and results with that of packet capture hardware
and software. Packet capturing records all possible information exiting or entering a network device for later
analysis, NetFlow targets specific statistical information.
Flexible NetFlow is the latest NetFlow technology, improving on the original NetFlow by adding the capability
to customize the traffic analysis parameters. Flexible NetFlow uses the Version 9 export format. Starting with
Cisco IOS Release 15.1, many useful Flexible NetFlow commands are supported.
In this lab, you will configure NetFlow to capture both ingress (incoming) and egress (outgoing) packets. You
will use show commands to verify that NetFlow is operational and gathering statistical information. You will
also explore available options for NetFlow collection and analysis software.
Note: The routers used with CCNA hands-on labs are Cisco 1941 Integrated Services Routers (ISRs) with
Cisco IOS Release 15.2(4)M3 (universalk9 image). Other routers and Cisco IOS versions can be used.
Depending on the model and Cisco IOS version, the commands available and output produced might vary
from what is shown in the labs. Refer to the Router Interface Summary Table at the end of this lab for the
correct interface identifiers.
Note: Make sure that the routers have been erased and have no startup configurations. If you are unsure,
contact your instructor.
Instructor Note: Refer to the Instructor Lab Manual for the procedures to initialize and reload devices.
Required Resources
3 Routers (Cisco 1941 with Cisco IOS Release 15.2(4)M3 universal image or comparable)
3 PCs (Windows 7, Vista, or XP with terminal emulation program, such as Tera Term)
Console cables to configure the Cisco IOS devices via the console ports
Ethernet and serial cables as shown in the topology
Part 1: Build the Network and Configure Basic Device Settings
In Part 1, you will set up the network topology and configure basic settings on the PC hosts and routers.
Step 1: Cable the network as shown in the topology.
Step 2: Initialize and reload the routers as necessary.
Step 3: Configure basic settings for each router.
a. Disable DNS lookup.
b. Configure device names as shown in the topology.
c. Assign class as the encrypted privileged EXEC mode password.
d. Assign cisco as the console and vty passwords and enable login.
e. Encrypt the plain text passwords.
f. Configure a MOTD banner to warn users that unauthorized access is prohibited.
g. Configure logging synchronous for the console line.
h. Set the clock rate for all DCE serial interfaces at 128000.