We are attempting to configure a Cisco 4500X device, running IOS-XE, to send Netflow to NFA and we cannot get it to work for any VLAN interface.
If we attempt to configure the Flow Monitor on the VLAN interface we get the message "Configuring Flow Monitor on SVI interfaces is not allowed. Instead configure Flow Monitor in vlan configuration mode via the command `vlan config <vlan number>'" and we have done this as follows.
vlan configuration 13
ip flow monitor CAPC input
With this config the device does send flows to the Harvester but not for the VLAN 13 as we are expecting. Instead they are sent for an apparently random set of interfaces, a mixture of both physical and virtual. These are all processed and reported on by NFA, hence we are confident all 8 required fields are configured. Note we have tried this for a different VLAN and get Netflow data for a different set of interfaces, and still not for the VLAN.
I have found some discussions on a couple of forums indicating this may be an issue with the Catalyst 4500 and am waiting on confirmation (or not) from Cisco. In the meantime I was wondering has anyone else in this forum come across this issue. Any feedback would be appreciated.
Regards, John
For info the firmware version of the device is “Cisco IOS Software, IOS-XE Software, Catalyst 4500 L3 Switch Software (cat4500e-UNIVERSAL-M), Version 03.06.03.E RELEASE SOFTWARE (fc3))”