IP_app for IP-SEC traffic with Flexible Netflow from Cisco Router

IP_app for IP-SEC traffic with Flexible Netflow from Cisco Router

Hi, I configured Flexible Netflow on Cisco 2821 router running IP-SEC tunnel.  Flow data are sent from the LAN ports and I have "output-features" command as recommended. On ManageEngine at the other end of the tunnel, all traffic shows IP_app as application with port 0. Am I missing anything in my Cisco router flexible config or on ManageEngine config?
                New to ADManager Plus?

                  New to ADSelfService Plus?