[ZBX-20101] sflow Created: 2021 Oct 19  Updated: 2021 Oct 20  Resolved: 2021 Oct 19

Status: Closed
Project: ZABBIX BUGS AND ISSUES
Component/s: None
Affects Version/s: None
Fix Version/s: None

Type: Incident report Priority: Trivial
Reporter: [email protected] Assignee: Zabbix Support Team
Resolution: Won't fix Votes: 0
Labels: None
Remaining Estimate: Not Specified
Time Spent: Not Specified
Original Estimate: Not Specified


 Description   

zabbix 工程师,现在网络安全方面的监控很重要,能否在下次版本的时候,能加入sflow监控,主要对交换机流量的攻击监控,谢谢



 Comments   
Comment by Dmitrijs Lamberts [ 2021 Oct 19 ]

Please be advised, this is a public bug tracker where all communication is expected to commence in English. Kindly re-submit your inquiry in English in order for us to process it.

Thank you.

Comment by [email protected] [ 2021 Oct 20 ]

Hello!

ZABBIX monitoring is excellent. Can you join sFlow monitoring? Thank you

Comment by [email protected] [ 2021 Oct 20 ]

1.) Graph all flows for a given interface and compare the SNMP stats for the same to find out if flows are missing (calibration).
2.) Use standard deviation formulas to determine if a DDOS attack is happening on a transit link (detection).
3.) Take some IP addresses and show flows tied to them as one single entity like a product line, division or department (analysis).
4.) Provide capacity analytics for this and the traditional SNMP data sets (capacity planning).
5.) Watch for evil IPs like known C&C control addresses entering the network. (detection)
6.) Observe customer bandwidth usage (billing).
7.) Look for missing flows (SLA monitoring,website is down)

Comment by [email protected] [ 2021 Oct 20 ]

You can use the silk suite to analyze and monitor sFlow and add it to ZABBIX. Thank you

Generated at Wed Jul 16 10:46:35 EEST 2025 using Jira 9.12.4#9120004-sha1:625303b708afdb767e17cb2838290c41888e9ff0.