Page MenuHomeVyOS Platform

Enable natEvents in ipt_NETFLOW for v9/IPFIX to send NAT translation events
Open, NormalPublicFEATURE REQUEST

Description

Summary

Add an option to enable natEvents in ipt_NETFLOW to collect and send NAT translation events for NetFlow v9/IPFIX.
ipt-netflow doesn't send NAT translation events by default.

Reference snippet from ipt-netflow

=====================
= Configure Options =
=====================

   Configure script allows to enable or disable optional features:

     --enable-natevents
         enables natevents (NEL) support, (this and option will require
	 conntrack support to be enabled into kernel and conntack
         module (nf_conntrack) loaded before ipt_NETFLOW. Usually this is
         done automatically because of `depmod', but if you don't do `make
         install' you'll need to load nf_conntrack manually.
         Read below for explanation of natevents.

Use case

Exports NAT translation events for accurate logging, troubleshooting, and forensic analysis

Additional information
Perferable CLI command:
set system flow-accounting netflow natevent enable

Details

Version
1.5.0-S1
Is it a breaking change?
Unspecified (possibly destroys the router)
Issue type
Feature (new functionality)