Cybersecurity Forum

This forum is for all security enthusiasts to discuss Fortinet's latest & evolving technologies and to connect & network with peers in the cybersecurity hemisphere. Share and learn on a broad range of topics like best practices, use cases, integrations and more. For support specific questions/resources, please visit the Support Forum or the Knowledge Base.

johlsson
New Contributor

Impossible NetFlow statisitics

Last week, I configured one of our F100D firewalls to send NetFlow to our collector.   However, in addition to the traffic to/from my actual networks, it reported the following impossible flows (captured in the attached images).  We don't possess the bandwidth to move just under 3.5 trillion gigabytes of data, or the time.  With the size of our pipe, it would take over eighteen thousand years to move that much data, let alone many such flows.

Is it possible to filter the NetFlow output to ignore this garbage?  My real data is lost in this noise.

 

Thanks.

 

Jesse

 

Of course, these

 

 

 

1 REPLY 1
johlsson
New Contributor

I should also mention that not a single one of the client or server ip addresses are in my networks.  This fortigate is not routing that traffic.  So, why is it reporting that it is in NetFlow?

Announcements
Check out our Community Chatter Blog! Click here to get involved