Documentation forNetFlow Traffic Analyzer
Analyzing network traffic and bandwidth is a key capability of SolarWinds Observability Self-Hosted (formerly Hybrid Cloud Observability) and is available in the Advanced edition. NetFlow Traffic Analyzer (NTA) is also available in a standalone module.

Customize a report to filter multicast data and group UDP data in NTA

  1. Create an IP Address Group for multicast traffic:
    1. In the SolarWinds Platform Web Console, click Settings > All Settings.
    2. Under Product Specific Settings, click NTA Settings.
    3. Under IP Address Groups, click Manage IP Address Groups.
    4. Click Add New Group.
    5. Add a Description.
    6. Select IP Range, and type 224.0.0.0 and 239.255.255.255.
    7. If you want to display the new IP address group in the Top XX Address Group widget, select Enable Display in Top XX Address Group Resource.

    8. Click OK.
    9. Click Submit.
  • Click Reports > All Reports.
  • Click Manage Reports.
    1. Find and edit the report you want to modify:
      1. In the Group By list, select Report Category, and then select Historical NetFlow Reports in the list below.
      2. Select the Top 50 Endpoints box in the main reports list, and click Duplicate & Edit.
    2. Adjust the object you want to report on. Add conditions stipulating that you are only interested in the multicast traffic through the UDP port.
      1. Click Edit next to the For list.
      2. On the Add Content menu, click Advanced Selector.
      3. Add the condition defining the port for the monitored traffic.
        1. Click Add Condition to display a new branch below the Where list.
        2. Click Select Field.
        3. On the Add Column menu, under Database Column Name, select Port Number, and click Add Column.
        4. Type the port number in the last field next to Port Number.
      4. Add the condition defining that you are only interested in the traffic via IP addresses in the multicast IP address group.
        1. Click , and then Add Simple Condition.
        2. Click Select Field.
        3. In the Available Columns list, click NetFlow IP Address Group.
        4. Under Database Column Name, select IP Address Group Name, and then click Add Column.
        5. Type the name of the multicast IP address group, which you created in step 1, in the last field next to IP Address Group Name.
      5. Click Add to Layout.
    3. Edit the output table for the report:
      1. Under Content, click Edit Table.
      2. Add the Protocol column.
        1. Click to add a new column.
        2. In the Available Columns list, select NetFlow Protocol.
        3. Under Database Column Name, select Protocol Name.
        4. Click Add Column.
      3. Add interface-relevant columns that you want to see in the report.
        1. Click to add a new column.
        2. In the Orion Object list, select Interface.
        3. Select Egress Interface if you are interested in traffic leaving the node via interfaces, or Ingress Interface if you are interested in traffic coming into the node.
        4. Under Database Column Name, select appropriate columns, and then click Add Column.
      1. Define how you want to sort results. Select the column according to which you want to sort results in the Sort By list, and the direction.
      2. Under Group Results By, select Protocol Name - NetFlow Protocol.
      3. Click Submit.
    4. Complete the Edit Report wizard.
    5. On the Summary tab, click Submit.