Telemetry Formats
Netify produces a comprehensive variety of telemetry streams that provide real-time visibility into network traffic, application behavior, performance metrics, and security events. These telemetry formats are delivered as JSON-encoded data streams to Sink connectors.
Understanding the different telemetry types available is essential for designing effective network monitoring, security alerting, and traffic analysis solutions. From granular per-flow detection events to aggregated performance summaries, each telemetry type serves different use cases and consumption patterns. This reference documents all available telemetry formats, their schemas, and configuration guidance.
Flow Telemetry
- Flow
- Flow detection and information
- Flow Stats
- Flow stats time-based data
- Flow Purge
- Flow purge and performance data
- Flow Actions
- Network policy enforcement events
Network and Performance Telemetry
- Agent Status
- Agent performance information
- Endpoints
- Endpoint MACs and IP addresses
- Interfaces
- Network interface information
- Interface Stats
- Network interface stats
Aggregator Telemetry
- Aggregator Type 1
- Stats by application, protocol, local IP and local MAC
- Aggregator Type 2
- Stats by application, protocol, local IP, local MAC, other IP and IP protocol
- Aggregator Type 3
- Stats by a condensed flow summary that excludes ephemeral local ports
- Aggregator Type 4
- Stats by application, protocol, other IP, other port, VLAN, and IP protocol
- Aggregator Type 5
- Stats and performance data by network interface