SonicOS 8 Device AppFlow

Configuring IPFIX

The IPFIX flow reporting options for NSM/Unified Management are configured on the internal Diagnostics (Diag) page of the firewall management interface.

Prerequisites

Before configuring IPFIX flow reporting to NSM/Unified Management, ensure the following requirements are met:

  • SonicOS firmware version 8.2.2 or later
  • NSM version 4.3.0 SaaS or later is deployed
  • An Advanced Reporting (APSS) license is required for the following data types to appear in NSM:
    • Protocol Monitor data
    • User Monitor data
    • BWM Monitor data
  • All SonicOS 8.x devices are supported
  • The firewall is registered and managed by NSM/Unified Management

To configure IPFIX

  1. Log in to the SonicOS management interface.
  2. Navigate to the Diagnostics (Diag) page.
  3. Locate the Flow Reporting section.
  4. Enable Flow Reporting via NSM/SonicPlatform.
  5. From the AppFlow Reporting Format to NSM/SonicPlatform Flow Collector drop-down, select IPFIX with Extension V2.
  6. From the NSM/SonicPlatform section, enable the following options as needed:
    1. Enable Send Audit log data to NSM/SonicPlatform.
    2. Enable Send BWM Monitor data to NSM/SonicPlatform.
    3. Enable Send User Monitor data to NSM/SonicPlatform.
  7. Click Accept.