Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow...

48
Network Performance Monitoring at Minimal Capex Some Cisco IOS technologies you can use to create a high performance network Don Thomas Jacob Technical Marketing Engineer

Transcript of Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow...

Page 1: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Network Performance Monitoring at Minimal Capex

Some Cisco IOS technologies you can use to create a high performance network

Don Thomas Jacob Technical Marketing Engineer

Page 2: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Network

Network Monitoring

NetFlow Analysis

Network Config Mgmt

Servers & Applications

Server Monitoring

Application Perf

Monitoring

End User Experience

Desktop

Desktop Management

Asset Management

Remote Control

ServiceDesk

Helpdesk

ITIL Service Desk

Software License Tracking

Windows Infrastructure

Active Directory

SQL Server

Exchange Server

Event Log & Compliance

Windows Event Logs

Syslog Management

Firewall Log Analyzer

Security

Vulnerability Analysis

Patch Management

Password Management

ManageEngine is an IT management vendor focused on bringing a complete IT management portfolio to all types of enterprises

About ManageEngine

Page 3: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

The Webinar will discuss:

• Why network performance management • A Network Administrator’s wish list • Some Cisco technologies you can use for network

performance monitoring

And a brief on Cisco Flexible NetFlow • NetFlow Analyzer and Cisco Technologies

Page 4: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Why Network Performance Monitoring

• Network connectivity and business application uptime are the keywords today

• Increasing bandwidth – but more applications and

services in the network

• Save capex – Hold the extra bandwidth or the WAN optimization device you planned

• Business critical applications have to compete with rogue applications in many networks

• Planning for VoIP – Can your current links do it?

Page 5: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

A Network Administrator’s Wish List

Page 6: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Manage available Bandwidth?

Need a Capacity Planning Report

Is Peer to Peer apps using bandwidth?

Can the existing link carry Voice

Traffic?

What caused the Bandwidth Spike?

Traffic Analytics

Is the Network Secure?

Network Admin

A Network Admin ’s Wish List

How will the data traffic perform?

Page 7: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

• Bandwidth Monitoring - Analyze link usage - Visualize traffic patterns - Real-time traffic reports

• Traffic Analytics

Traffic Source and related

Conversations

Real Time Traffic Graphs

to Forever History

Traffic Destination and related Conversations

Applications and Protocols Used

WHO

• Capacity Planning - Existing link meets demand ? - Increase available Bandwidth ?

A Network Admin ’s Wish List

WHAT

WHEN WHERE

Page 8: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

• Bandwidth Monitoring - Analyze link usage - Visualize traffic patterns - Real-time traffic reports

• Traffic Analytics

Traffic Source and related

Conversations

Real Time Traffic Graphs

to Forever History

Traffic Destination and related Conversations

Applications and Protocols Used

• Capacity Planning - Existing link meets demand ? - Increase available Bandwidth ?

A Network Admin ’s Wish List

Page 9: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Layer 7 Analysis and Traffic Management

• Analyze Peer to Peer application usage

• Are unwanted applications using well known ports?

• Manage, Block or Shape traffic

• Validate Quality of Service policies

A Network Admin ’s Wish List

Page 10: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Measure Link Capability for VoIP Traffic

• Switching to VoIP to carry Voice Traffic?

• Can existing link carry the additional traffic?

• Measure performance of VoIP traffic over the link

Current Usage

Available for New Traffic

A Network Admin ’s Wish List

Page 11: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

A Network Admin ’s Wish List

Link Performance Monitoring

• How is the WAN link performance

• Is your ISP delivering as per the SLA?

• Latency, Jitter, Packet loss, Availability

?

?

?

Page 12: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Growing number of Security Threats

70's 80's 1990 1995 2000 2011

Threats

Threats

A Network Admin ’s Wish List

Page 13: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Growing number of Security Threats

• Is my Network Secure? Are the current firewall rules sufficient?

• Track network anomalies that may have bypasses firewalls

• Is your network under attack? Is there a virus spreading or maybe a DDoS attack?

A Network Admin ’s Wish List

Page 14: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Cisco Solutions you can leverage on

Page 15: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Cisco’s Flexible NetFlow

• Primary IP Traffic accounting technology

• Reports on Who, What, When and Where of traffic

• Helps understand traffic pattern, applications used, top talkers and much more

What Cisco has to help you

Used for Visualizing Traffic Patterns Helps in - Bandwidth Monitoring - Traffic Analytics - Capacity Planning Less strain on Device CPU, Memory as well as Link Bandwidth

?? ?? ?? ?? UDP TCP ?? ?? TCP

Page 16: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Source Interface (ifindex)

Protocol

Source IP Address

Destination IP Address

Source Port

Destination Port

ToS

What Cisco has to help you

Page 17: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

A brief about Cisco Flexible NetFlow

Page 18: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

What is Flexible NetFlow

Cisco Flexible NetFlow

• Uses NetFlow v9 - Allows user defined Key and Non-Key Fields

• Highly flexible flow export options - Customized traffic monitoring

• Ability to monitor a wide range of IP packet information which traditional NetFlow did not have

Page 19: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Some Platforms and IOS with Flexible NetFlow

Cisco Flexible NetFlow

• Cisco ISR G1 - From 12.4(20)T IOS

• Cisco ISR G2 - All CCO Images

• Cisco 7200 - From 12.2(33)SRE

• Cisco ASR1K - From XE3.1 15.0(1)S

• Cisco CAT 4000 series - SUP Engine 7E

• Cisco CAT 6000 series - SUP 2T Earl8

Page 20: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

NetFlow Performance Impact

CPU Utilization

• 10,000 active flows – 7.14 % additional CPU

• 65,000 active flows – 22.98 % additional CPU

Bandwidth Usage Estimate

• Around 2% to 3% additional bandwidth on the NetFlow enabled device

Cisco Flexible NetFlow

Page 21: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Application

Presentation

Session

Transport

Network

Data Link

Physical Data

Network Based Application Recognition - NBAR

Bitorrent, eDonkey, FTP, Kazaa, Skype, SIP

What Cisco has to help you

Page 22: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Network Based Application Recognition - NBAR

• Layer 7 traffic analytics

• Intelligent Application Categorization

• Detect Peer to Peer and dynamic port using applications

• Can work with CBQoS for custom traffic management

What Cisco has to help you

Page 23: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

FTP

VoIP

Peer to Peer

Web

Class Based Quality of Service - CBQoS

What Cisco has to help you

Internet Link

Web

FTP

Page 24: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Class Based Quality of Service - CBQoS

• Prioritize, limit, block or shape IP traffic

• Drop unwanted traffic – Peer to Peer, IM, etc

• Ensure delivery of business critical applications

What Cisco has to help you

Page 25: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Cisco IPSLA – IP Service Level Agreement

• Monitor performance – packets reach destination, link performance, availability ?

• RTT, latency, jitter, packet loss, etc

• Verify if the ISP is delivering as promised

• Can the link can deliver your data to the destination

• Can the link carry VoIP traffic ?

What Cisco has to help you

Page 26: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Cisco NetFlow For Security Analytics

• Valuable information about IP traffic patterns

• Identify network anomalies, DDoS attacks, spread of malware or viruses

• Details of attack – Offender, Target, Path…

• Helps mitigate attacks that surpasses firewalls and IDS

What Cisco has to help you

Page 27: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

NetFlow Analyzer and Cisco

Page 28: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

NetFlow Analyzer leverages on Cisco

• Uses NetFlow data for bandwidth and traffic analysis.

• Visualize traffic pattern with real time graphs.

• Traffic analytics with application and conversation report.

• Trend analysis for Capacity Planning.

Comprehensive understanding of the Network using Cisco NetFlow

Page 29: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

NetFlow Analyzer leverages on Cisco

Comprehensive understanding of the Network using Cisco NetFlow

Page 30: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

NetFlow Analyzer leverages on Cisco

Comprehensive understanding of the Network using Cisco NetFlow

Page 31: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

NetFlow Analyzer leverages on Cisco

• Uses NetFlow data for bandwidth and traffic analysis.

• Visualize traffic pattern with real time graphs.

• Traffic analytics with application and conversation report.

• Trend analysis for Capacity Planning.

Comprehensive understanding of the Network using Cisco NetFlow

Page 32: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

NBAR – Network Based Application Recognition

NetFlow Analyzer leverages on Cisco

• Deep packet – Layer 7 Traffic Analysis

• NBAR reporting via SNMP as well as Flexible NetFlow

• Identify hosts involved in Peer to Peer Traffic

Page 33: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

NBAR reporting via Flexible NetFlow

NetFlow Analyzer leverages on Cisco

Page 34: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

NBAR reporting via SNMP

NetFlow Analyzer leverages on Cisco

Page 35: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Class-Based QoS reporting

NetFlow Analyzer leverages on Cisco

• Validate QoS polices

• Monitor Class based pre and post policy traffic usage Class based drops Class based queuing

• Reports for each Match Statement

Page 36: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Class-Based QoS reporting

NetFlow Analyzer leverages on Cisco

Page 37: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Class-Based QoS reporting

NetFlow Analyzer leverages on Cisco

Page 38: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Cisco IPSLA – VoIP Monitoring

How NetFlow Analyzer leverages on Cisco

• VoIP performance analysis using Cisco IPSLA

• Reports on : Jitter Latency Packet Loss Mean Opinion Score - MoS

• Compare VoIP reports and Interface level NetFlow reports

• Identify reason for VoIP quality degradation

Page 39: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Cisco IPSLA – VoIP Monitoring

How NetFlow Analyzer leverages on Cisco

Page 40: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Cisco IPSLA – VoIP Monitoring

How NetFlow Analyzer leverages on Cisco

Page 41: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Cisco IPSLA – WAN RTT Reports

How NetFlow Analyzer leverages on Cisco

• Link performance analysis using Cisco IPSLA

• For data packets, reports on : Jitter and Latency Packet Loss and Round Trip Time Link Availability

• View least performing paths and find which of your links do the worst

• Prevent possible network issues from becoming an outage

Page 42: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Cisco IPSLA – WAN RTT Reports

How NetFlow Analyzer leverages on Cisco

Page 43: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Cisco IPSLA – WAN RTT Reports

How NetFlow Analyzer leverages on Cisco

Page 44: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Cisco IPSLA – WAN RTT Reports

How NetFlow Analyzer leverages on Cisco

Page 45: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

NetFlow Analyzer leverages on Cisco

Flow based security analytics

• Network anomaly detection leveraging on NetFlow data

• Detect anomalies that surpass firewalls and IDS

• Anomaly classification based on Offender, Target, Path and Problem

• Real time threat detection using Continuous Stream Mining Engine

Page 46: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

NetFlow Analyzer leverages on Cisco

Flow based security analytics

Page 47: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Conclusion

• Throwing more bandwidth does not always improve performance

• Utilize technologies available on your Cisco device

Find bandwidth used by business critical applications

NBAR – A hidden technology with wide uses

Use QoS to the fullest and ensure they work as expected

IPSLA monitoring to measure performance of data and voice

Get a 3rd layer of security beyond firewalls and IDS

• Use a tool that can leverage on all these technologies – ManageEngine NetFlow Analyzer is one

Page 48: Network Performance Monitoring at Minimal Capex · Cisco IPSLA – WAN RTT Reports How NetFlow Analyzer leverages on Cisco •Link performance analysis using Cisco IPSLA •For data

Questions?

ManageEngine NetFlow Analyzer is used by over 4000 customers worldwide. Visit our website for details:

www.manageengine.com www.netflowanalyzer.com [email protected] [email protected]