operations
operations copied to clipboard
Setting up sflow monitoring on switches
We should likely setup sFlow monitoring on our switches.
It will allow us quick view of traffic in the event of a DDOS or similar traffic event.
The OOB devices should likely be the sFlow log destination.
Also up for consideration off-by default?
note: Our Juniper EX4300 switches only support sFlow and not NetFlow.
Juniper configuration snapshot:
set forwarding-options sflow sampling-rate 1000
set forwarding-options sflow polling-interval 20
set forwarding-options sflow collector <collector-ip> udp-port <port-number>