No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


Configuration Guide - Network Management and Monitoring

CloudEngine 8800, 7800, 6800, and 5800 V200R005C10

This document describes the configurations of Network Management and Monitoring, including SNMP, RMON, NETCONF, OpenFlow, LLDP, NQA, Mirroring, Packet Capture, Packet Trace, Path and Connectivity Detection Configuration, NetStream, sFlow, and iPCA.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Example for Configuring Export of TCP Flow Analysis Results

Example for Configuring Export of TCP Flow Analysis Results

Networking Requirements

As shown in Figure 19-6, packets of a TCP flow are sent and received along the same round-trip path between a client with the IP address and a server with the IP address SwitchA on the path is configured with intelligent traffic analysis for TCP flows, analyzes the flow, and exports obtained flow analysis results to FabricInsight.

Figure 19-6 Networking of intelligent traffic analysis for TCP flows


  1. Enable the enhanced mode of the switch .

    <HUAWEI> system-view
    [~HUAWEI] assign forward enp netstream enable slot 1
    Info: The configuration will take effect after the board is reset.  
    [*HUAWEI] commit
    [~HUAWEI] quit
    <HUAWEI> reboot
    Warning: The system will reboot. Continue? [Y/N]: y

  2. Configure an advanced ACL rule.

    # Configure an advanced ACL rule to match the TCP flow between the client with IP address and the server with the IP address

    <HUAWEI> system-view
    [~HUAWEI] sysname SwitchA
    [*HUAWEI] commit
    [~SwitchA] acl number 3055
    [*SwitchA-acl4-advance-3055] rule 4 permit tcp source destination
    [*SwitchA-acl4-advance-3055] quit
    [*SwitchA] commit

  3. Enable intelligent traffic analysis for TCP flows.

    # Enable intelligent traffic analysis for TCP flows on SwitchA.

    [~SwitchA] traffic-analysis tcp acl 3055 inbound
    [*SwitchA] commit

  4. Verify the configuration of intelligent traffic analysis for TCP flows.

    # Display detailed information about the flow analysis results after intelligent traffic analysis for TCP flows is enabled.

    [~SwitchA] display traffic-analysis cache slot 1
    NOTE:  S2C: server to client  C2S: client to server                                                                                 
    Traffic analysis cache information:                                                                                                  
    ClientIP            ClientPort          C2S Interface       C2S Vni                                                                 
    ServerIP            ServerPort          S2C Interface       S2C Vni                                                                 
    C2S RTT             C2S Packets         C2S PacketLossUp    C2S PacketLoss                                                          
    S2C RTT             S2C Packets         S2C PacketLossUp    S2C PacketLoss                                                          
    FlowStatus          Time                                                                                                            
    -------------------------------------------------------------------------------                                                            0                   10GE1/0/1           --                                                                             24                  --                  --                                                                      
    0                   70375016            0                   1                                                                       
    0                   0                   0                   0                                                                       
    ESTABLISH           2018-10-11 15:50:29                                                                                             
                                                                                                                                               1024                10GE1/0/1           16000000                                                                       7788                --                  --                                                                      
    0                   8325042             0                   0                                                                       
    0                   0                   0                   0                                                                       
    ESTABLISH           2018-10-11 15:53:40                                                                                             

  5. Configure TCP flow aging in intelligent traffic analysis.

    # Set the inactive aging time to 100 seconds and enable FIN- and RST-based aging for TCP packets.

    [~SwitchA] traffic-analysis tcp timeout inactive 100
    [*SwitchA] traffic-analysis tcp timeout ip tcp-session
    [*SwitchA] commit

  6. Configure export of TCP flow analysis results.

    # Set the source IP address to, destination IP address to, and destination port number to 6000 for intelligent traffic analysis of TCP flows.

    [~SwitchA] traffic-analysis tcp export source ip
    [*SwitchA] traffic-analysis tcp export host ip 6000
    [*SwitchA] commit

  7. View the export configuration of TCP flow analysis results.

    # Display output information about the TCP flow analysis results of intelligent traffic analysis after export of TCP flow analysis results is configured.

    [~SwitchA] display traffic-analysis export
    2018-10-11 16:00:03.186                                                                                                             
    Source IP       :                                                                                                          
    Source Port     : 40000                                                                                                             
    Source Mac      : 0016-2455-4151                                                                                                    
    Destination IP  :                                                                                                          
    Destination VPN : vpn1                                                                                                              
    Destination Port: 6000                                                                                                              
    Interface       : 10GE1/0/1                                                                                                         
    Destination Mac : 0022-0121-0002                                                                                                    

Updated: 2019-04-20

Document ID: EDOC1100075365

Views: 40104

Downloads: 127

Average rating:
This Document Applies to these Products
Related Version
Related Documents
Previous Next