<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Splunk IPFIX from NSX-T in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-IPFIX-from-NSX-T/m-p/581234#M102490</link>
    <description>&lt;P class=""&gt;Hello Everyone&lt;/P&gt;&lt;P class=""&gt;I have a problem with receiving IPFIX flow From NSX-T 3.1.&lt;/P&gt;&lt;P class=""&gt;this is a summary of what I do:&lt;/P&gt;&lt;P class=""&gt;I checked Firewall things and it doesn't have any problem because I can see IPFIX flow with Wireshark on the Splunk server.&lt;/P&gt;&lt;P class=""&gt;I use Splunk_TA_stream and splunk_app_stream 8.0.1 and I can Get IPFix flow with IPFIX Generator( flowalyzer).&lt;/P&gt;&lt;P class=""&gt;I change the Splunk Stream configuration for those IPFIX fields that NSX-T sends. because some of IPFIX is not Standard.&lt;/P&gt;&lt;P class=""&gt;&amp;nbsp;&lt;/P&gt;&lt;P class=""&gt;I changed the Splunk Stream configuration based on these Link according to this Link:&lt;/P&gt;&lt;P class=""&gt;&lt;A href="https://emc.extremenetworks.com/content/oneview/docs/analytics/docs/pur_splunk.htm?Highlight=Splunk" target="_blank" rel="noopener nofollow ugc noreferrer"&gt;https://emc.extremenetworks.com/content/oneview/docs/analytics/docs/pur_splunk.htm?Highlight=Splunk&lt;/A&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;A href="https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.0/nsxt_30_admin.pdf" target="_blank" rel="noopener nofollow ugc noreferrer"&gt;https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.0/nsxt_30_admin.pdf&lt;/A&gt;&lt;/P&gt;&lt;P class=""&gt;Does anybody have experience in Receiving IPFIX flow from NSX-T?&lt;/P&gt;</description>
    <pubDate>Sun, 16 Jan 2022 08:02:26 GMT</pubDate>
    <dc:creator>Hamidreza74</dc:creator>
    <dc:date>2022-01-16T08:02:26Z</dc:date>
    <item>
      <title>Splunk IPFIX from NSX-T</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-IPFIX-from-NSX-T/m-p/581234#M102490</link>
      <description>&lt;P class=""&gt;Hello Everyone&lt;/P&gt;&lt;P class=""&gt;I have a problem with receiving IPFIX flow From NSX-T 3.1.&lt;/P&gt;&lt;P class=""&gt;this is a summary of what I do:&lt;/P&gt;&lt;P class=""&gt;I checked Firewall things and it doesn't have any problem because I can see IPFIX flow with Wireshark on the Splunk server.&lt;/P&gt;&lt;P class=""&gt;I use Splunk_TA_stream and splunk_app_stream 8.0.1 and I can Get IPFix flow with IPFIX Generator( flowalyzer).&lt;/P&gt;&lt;P class=""&gt;I change the Splunk Stream configuration for those IPFIX fields that NSX-T sends. because some of IPFIX is not Standard.&lt;/P&gt;&lt;P class=""&gt;&amp;nbsp;&lt;/P&gt;&lt;P class=""&gt;I changed the Splunk Stream configuration based on these Link according to this Link:&lt;/P&gt;&lt;P class=""&gt;&lt;A href="https://emc.extremenetworks.com/content/oneview/docs/analytics/docs/pur_splunk.htm?Highlight=Splunk" target="_blank" rel="noopener nofollow ugc noreferrer"&gt;https://emc.extremenetworks.com/content/oneview/docs/analytics/docs/pur_splunk.htm?Highlight=Splunk&lt;/A&gt;&lt;/P&gt;&lt;P class=""&gt;&lt;A href="https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.0/nsxt_30_admin.pdf" target="_blank" rel="noopener nofollow ugc noreferrer"&gt;https://docs.vmware.com/en/VMware-NSX-T-Data-Center/3.0/nsxt_30_admin.pdf&lt;/A&gt;&lt;/P&gt;&lt;P class=""&gt;Does anybody have experience in Receiving IPFIX flow from NSX-T?&lt;/P&gt;</description>
      <pubDate>Sun, 16 Jan 2022 08:02:26 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-IPFIX-from-NSX-T/m-p/581234#M102490</guid>
      <dc:creator>Hamidreza74</dc:creator>
      <dc:date>2022-01-16T08:02:26Z</dc:date>
    </item>
  </channel>
</rss>

