You can configure IPFIX profiles for firewalls.

Prerequisites

Verify that Manager mode is selected in the NSX Manager user interface. See NSX Manager. If you do not see the Policy and Manager mode buttons, see Configure the User Interface Settings.

Procedure

  1. With admin privileges, log in to NSX Manager.
  2. Select Plan & Troubleshoot > IPFIX.
  3. Click the Firewall IPFIX Profiles tab.
  4. Click Add to add a profile.
    Setting Description
    Name and Description Enter a name and optionally a description.
    Note: If you want to create a global profile, name the profile Global. A global profile cannot be edited or deleted from the UI, but you can do so using NSX-T Data Center APIs.
    Collector Configuration Select a collector from the drop-down list.
    Active Flow Export Timeout (Minutes) The length of time after which a flow will time out, even if more packets associated with the flow are received. Default is 1.
    Priority This parameter resolves conflicts when multiple profiles apply. The IPFIX exporter will use the profile with the highest priority only. A lower value means a higher priority.
    Observation Domain ID This parameter identifies which observation domain the network flows originate from. The default is 0 and indicates no specific observation domain.
  5. Click Add.