Create a Class-Map that defines which NSEL events will be sent to the SEC
Create a class-map that identifies NSEL traffic for export to the SEC and define the matching criteria for traffic classification.
The following commands in the macro group all NSEL events in a class and then export that class to the Secure Event Connector (SEC). These instructions refer to this section of the macro:
class-map {{flow_export_class_name}}
match {{add_this_traffic_to_class_map}}
Procedure
Step 1 | The class-map command names the class map that identifies NSEL traffic that will be exported to the SEC.
|
Step 2 | Identify the traffic that is going to be associated with (matched with) your class-map. Choose one of these options for the value of {{add_this_traffic_to_class_map}}:
Continue to Define a Policy-Map for NSEL events. |
You have created a class-map that defines which NSEL events will be sent to the SEC and specified the traffic matching criteria.