Implementing and Operating Cisco Enterprise Network Core Technologies (ENCOR) v1.2InfrastructureMedium
A network operations team is implementing a new monitoring solution that requires detailed, real-time information about network traffic flows, including source/destination IP addresses, ports, protocols, and byte counts. The team needs to analyze bandwidth usage, identify top talkers, and detect anomalies across multiple network devices. Which technology is best suited for collecting this type of data?
- ANetFlow
- BIP SLA (IP Service Level Agreement)
- CSyslog
- DSNMP (Simple Network Management Protocol)
Show answer & explanationAnswer & explanation
Correct answer: A. NetFlow
NetFlow is specifically designed to collect IP traffic flow information, including source/destination IP addresses, ports, protocols, and byte counts. It provides detailed insights into network usage, top talkers, and traffic patterns, which is critical for the monitoring requirements described.
Why the other options are wrong
- B. IP SLA measures network performance metrics (latency, jitter, packet loss) for specific applications, not comprehensive flow data.
- C. Syslog collects event logs and messages, not granular traffic flow statistics.
- D. SNMP collects device-level metrics (CPU, memory, interface status) but not detailed flow data.
NetFlow
A Cisco technology that provides statistics on network traffic flowing through a router or switch, used for network monitoring, security analysis, and accounting.
- Collects detailed IP traffic flow records (source/destination IP, port, protocol, byte/packet counts).
- Essential for bandwidth monitoring, accounting, and anomaly detection.
- Requires a NetFlow collector to store and analyze the data.
Memory trick: Monitor Your Network: Logs, Metrics, Flows, Performance.