Configuring Flow Exports on Cyberoam Firewall
For NetFlow analysis, you need to configure your devices to export flows to Site24x7 On-Premise Poller, which is the NetFlow collector. The On-Premise Poller will be listening to the particular port to receive flows. Learn how to find the port number of your On-Premise Poller.
Configure Cyberoam firewalls to export Netflow (v5) using the graphical user interface (GUI) by following the steps below:
- Log in to Cyberome Web Admin Console as an administrator with Read-Write permission for flow export configuration.
- To configure NetFlow collectors, go to Logs & Reports > Configuration > Netflow.
- Enter the Server Name, NetFlow Server IP/Domain, and NetFlow Server Port. The default port for NetFlow Collector is 9996.
- Click Apply.
- To enable traffic logging from firewall rule, go to Firewall > Rule and click the required Rule.
- Check the box next to Log Firewall Traffic and click OK.