Fortinet Sflow Support
Fortinet Sflow Support
To configure it per VDOM.
2. Configure sFlow agents per interface.
sFlow operates by sampling 1 in N packets as they arrive at the device's Ethernet interface. A small bit
of the ethernet frame (usually around 68 bytes) is snipped off and placed into a UDP packet along with
additional samples. Once the packet reaches 1500 bytes the sFlow exporter attaches a preamble (including
sample rate, interface ifindex, etc) and sends the samples to the collector. One of the big advantages sFlow
has over NetFlow is that it runs at layer-2. sFlow enabled devices don't need a layer-3 hop to create a flow
as most NetFlow exporters do.
Anyway, if you have an sFlow collector and use Fortinet appliances this new feature provides excellent
visibility into the traffic flows occurring through the Fortinet device.