Netflow meeting 20060612

From GEANT2-JRA1 Wiki

JRA1 Flow Monitoring - minutes from meeting at 2nd Technical Workshop

Info

Date/time: 12th June 2006, 17:30 - 18:45

Agenda

  1. Short update on all netflow tasks
  2. Update on RRD based netflow MA
  3. 'Flow subscription service' design
  4. Integration with perfSONAR framework (most important: LS, AA)
  5. AOB

Minutes

Attendees: Hans Trompert (HT), Alessandro Inzerilli (AI), Arne Øslebø (AO), Maurizio Molina (MM), Nicolas Simar (NS)

  1. After completion of the test evaluation report nfdump/nfsen tool is installed on all three testing boxes (GARR, Surfnet, CARNet). AO reported that STAGER team will adopt their tool to use nfdump as the collector (this work will start during summer).
  2. IV reported on development in 'RRD based netflow MA'. This MA will use existing RRD MA (python version) and will provide information stored in RRD files from nfsen. In the current nfsen version, only limited number of metrics are stored in those RRD files (number of packets, bytes, flows for IP protocol (overall, TCP, UDP, ICMP, other). There is a suggestion to contact nfsen developer in SWITCH; AI already contacted them and there is a positive feedback (it seems that we will be able to get some plugins for nfsen designed according to our requirements).
  3. For the 'flow subscription service' we need proposal for functional design. For the moment, we expect to see 3 functional parts when requesting this service:
    • 'Basic' request parameters: hostname, port and protocol
    • 'Filtering' request parameters: IP address(s), prefix(s), AS(s), protocol(s),...
    • 'Anonymisation' request parameters: level of anonymisation, field(s) to be anonymized,...Also, there is a question of encryption of the data when transported over the network.
  4. There is a need of investigating some perfSONAR functional modules (LS, AA infrastructure,..) in order to prepare netflow infrastructure to fit in overall framework.
  5. For AAI there is need of preparing requests in form of user/permits matrix. As a reference we could use Tools and Roles, than a document sent on JRA1 mailing list by NS (from 12.06.2006. with subject 'Tools and groups), thread on JRA1 mailing on AA issues for bwctl tool (Subject of the thread: bwctl policy, most of the ideas by Chris Welti).

Actions

  • Provide beta version of RRD netflow MA (CARNet)
  • Contact nfsen developer in order to see weather some plugins could be implemented for a specific requests (AS-AS matrix for example) (IV, AI)
  • Study LS service in order to prepare prerequisites (for example registration of MP/MA netflow service on LS) (CARNet)
  • Start designing 'flow subscription service' (Surfnet)
  • Study AA directions and prepare matrix of user/permits for netflow services (all partners)
  • Find a person(s) which will be able to propose some realistic 'deployable' solution(s) for encryption.
  • Redesign and update JRA1 wiki page for flow measurement (IV, will ask for help if needed)

Back to Flow monitoring

Personal tools