How about Sflow support

To get data straight from network devices PacketBeat could support SFLOW.
It's open and some more info here: https://sflow.org/sFlowOverview.pdf

This way I could configure our routers/switches to send flows straight to packetbeat processor for analysis.

Sample Arista Switch:

1 Like

Just wanted to add that we would also really like sflow support. Alcatel switches don't support netflow. Or maybe a Logstash module such as the one for Netflow?

There is an sFlow input for logstash. Simply run...

logstash/bin/logstash-plugin install logstash-codec-sflow

This codec is used by ElastiFlow to decode sFlow records.

1 Like

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.