Wrong Traffic Reports in ACC

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements

Wrong Traffic Reports in ACC

L2 Linker

Hi

Wrong user traffic in ACC than the actual traffic.

Here we are monitoring our server Farm using Tap mode with our Palo Alto

In ACC we can see very high traffic from some Domain/User or IP to some servers.Lets say some users making  20 gb traffic Exchange server or other servers with in Hour.If you look at the detailed traffic there is no such traffic for that specific user.We noticed this with PAN-OS 3.1.8,4.0.1 and 4.0.3 versions from different places.Is it a bug or any other issue

Thanks

Shabeer

4 REPLIES 4

L4 Transporter

Hi Shabeer,

Can you please let us know which PA firewall model are you seeing this issue on?

Thanks

Palo Alto Networks Guru

The application traffic shown in the first table in the ACC is collected regardless of your log settings.  So when you say that you look at the traffic logs and do not see the same statistics, it is possible that you are not logging that data, or that the log data is not reflective of the entire time frame shown in the ACC.  I hope this helps.  Thanks,

~Jamie

L2 Linker

Hi All

I am Using PA-4020 with PAN-OS 3.1.8 and PA-5020 with PAN-OS 4.0.3.The report in ACC from a user to exchange is 20 GB which is impossible in this network. Also after some time the large traffic pointed to another user

Thanks

shabeer

Hi Shabeer,

Can you please open up a case for support to investigate this issue further.

Thanks

  • 2650 Views
  • 4 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!