Re: [Ntop] Elasticsearch 6.6.2 and non-standard index names

2019-03-25 Thread Christina Phillips
Simone, true – however the automatic push is only when the index is named ntopng-* or a variant thereof. From: ntop-boun...@listgateway.unipi.it On Behalf Of Simone Mainardi Sent: Monday, March 25, 2019 1:01 PM To: n...@unipi.it Subject: Re: [Ntop] Elasticsearch 6.6.2 and non-standard index nam

Re: [Ntop] Elasticsearch 6.6.2 and non-standard index names

2019-03-25 Thread Christina Phillips
Grazie From: ntop-boun...@listgateway.unipi.it On Behalf Of Simone Mainardi Sent: Monday, March 25, 2019 1:01 PM To: n...@unipi.it Subject: Re: [Ntop] Elasticsearch 6.6.2 and non-standard index names The ntopng ES6 template is available at: https://github.com/ntop/ntopng/blob/dev/httpdocs/misc

Re: [Ntop] Elasticsearch 6.6.2 and non-standard index names

2019-03-25 Thread Simone Mainardi
The ntopng ES6 template is available at: https://github.com/ntop/ntopng/blob/dev/httpdocs/misc/ntopng_template_elk6.json ntopng automatically pushes it to ES when it detects it's version 6. Simone > On 25 Mar 201

[Ntop] Elasticsearch 6.6.2 and non-standard index names

2019-03-25 Thread Christina Phillips
Hello. I have be previously able (Elasticsearch 5.6) to import the ntopng-ES template into ES when the index name is not "ntopng." Since the template changed for ES 6 and above - is there a way to see the updated ntopng-ES template for ES6 so I can update my indices to pick up the geoip and IP

Re: [Ntop] 60 Gbp traffic monitoring with sflow

2019-03-25 Thread Satish Patel
Thanks Simone, I will try that, but big issue currently NTOP licensing :( i have very high traffic so 24000 flow limit ran over in 5 minute or so, is there a way i get get demo for 24 hour or so to get good time to understand and device to buy product? Is it possible to get little longer period l

Re: [Ntop] 60 Gbp traffic monitoring with sflow

2019-03-25 Thread Simone Mainardi
I would start experimenting with one in 6 * 2000 = 12 000 and see. Then you can adjust depending on the volume of traffic generated / possible load on the switches / detected sFlow drops. > On 24 Mar 2019, at 15:55, Satish Patel wrote: > > Thanks for reply, > > Based on document 1Gbps = 2000