NetFlow Switching and ACLs

NetFlow is a switching mechanism in Cisco IOS that has certain characteristics that allow for faster processing of ACLs. NetFlow switching works by creating network flows for the traffic passing through a router. A network flow is defined as a unidirectional sequence of packets between a given source and destination endpoints. Network flows are highly granular; flow endpoints are identified by both IP address and transport layer application port numbers. NetFlow also uses the IP Protocol type, type of service (ToS), and input interface identifier to uniquely identify flows. Figure 21-8 shows how NetFlow uses various parameters for switching.

Figure 21-8. How NetFlow Uses Various Parameters for Switching

NetFlow Switching ...

Get Network Security Principles and Practices now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.