Extending Network Visibility by Leveraging NetFlow and sflow Technologies
|
|
|
- Harriet Baldwin
- 9 years ago
- Views:
Transcription
1 Extending Network Visibility by Leveraging and sflow Technologies This paper shows how a network analyzer that can leverage and sflow technologies can provide extended visibility into enterprise networks without added investment. Abstract and sflow are traffic reporting mechanisms that manufacturers have embedded into enterprise-level switches and routers. This paper describes the strengths and limitations of these technologies, and why combining /sflow reporting mechanisms with a distributed network analyzer is a best practice in network monitoring. Deploying a distributed analyzer that can interpret and sflow reporting streams gives network managers extended visibility without over-extending the IT budget. Introduction and sflow are similar to the local public library: everybody lives near one; virtually everyone helped pay for one, but very few people actually use their local branch, other than to check out a book to read now and then. Many are completely unaware that the library has a larger collection of DVDs than most video stores, more varied music than many CD outlets, and often a dedicated research staff that will answer questions on any topic imaginable. And all of these benefits are usually available for free. and sflow are similarly overlooked. Part of the reason is that, until recently, analysis vendors have viewed these technologies as a competitive threat rather than an opportunity. But now that and sflow support are appearing in commercial analysis tools, IT administrators can better leverage this free visibility lying latent in their switches and routers. White Paper
2 and sflow: Technology Overview and sflow are standard traffic reporting mechanisms that device manufacturers have embedded into devices such as routers and switches. Unlike SNMP, and sflow are push technologies that send periodic reports to designated collectors. Neither nor sflow provide as much detail as most commercially-available remote monitoring probes. However, because these technologies are freely available, they make an attractive alternative where the expense of a dedicated commercial probe is not justified, or simply to extend the visibility of probes already deployed. Data Collected by and sflow The UDP datagrams sent by and sflow contain various network traffic statistical counts coupled with some administrative header information. To illustrate the structure of a or sflow report stream, you can capture and decode the datagrams with a protocol analyzer. A network analyzer can interpret reporting streams and offer administrators extended infrastructure visibility. records data per flow, a flow being the traffic stream passing between a pair of addresses on a particular port. Datagram Example (Decode provided by the Observer Performance Management Platform) header Each Data Record defines a flow, or network conversation, including the source and destination addresses, protocol and port, and other details. Lack of Visibility. Traffic between virtual machines within a virtual host will not be visible An sflow agent, in addition to passing the sampled packet slices to the collector, also passes datagrams that carry aggregate network information: sflow header includes source, version and packet sequence information. Network statistics derived from the sampled packets, including broadcasts, multicasts, error counts, etc. sflow Datagram Example (Decode provided by the Observer Platform) datagrams record metrics per flow, a flow being the traffic stream passing between a pair of addresses on a particular port. Sample statistics shows the current sampling rate and other details about which packets were sampled. 2 Extending Network Visibility by Leveraging and sflow Technologies
3 Leveraging Netflow and sflow How can you take advantage of and sflow reporting? There are a number of ways to access the data reported by these technologies: 1. With, you can query for data directly through the administrative interface of the router or switch. This capability is more for setup and internal troubleshooting purposes; manually looking at the stream from multiple devices is obviously not a practical mechanism for monitoring an enterprise network. 2. You can use dedicated tools, both open-source and commercial, to monitor /sflow reporting streams. Any of these dedicated /sflow monitors may be adequate for smaller shops located on a single local network; managing larger networks with multiple remote sites requires real integration with the analysis solution to be truly practical (See below). 3. You can use select commercial analyzers with truly integrated support for or sflow agents. This is by far the most attractive option for the enterprise, as detailed below. But beware of some commercial network analysis vendors that stretch the definition of /sflow support. In reality, they merely provide separate, dedicated /sflow monitors (as described in the second bullet item above). They are often physically separate devices that do not share look-and-feel or data with the standard analysis engine. Capturing and storing and sflow data over long periods of time can yield valuable insights into overall network performance trends. Why Coupling /sflow with Distributed Analysis is Best and sflow by themselves do not scale particularly well. Directing all of the reporting streams to a central console generates excessive (and unsecured) traffic. Redirecting the streams so that you or someone else can look at the data from another site isn t practical at many organizations where administrative access to routers and switches is limited. Also, as mentioned earlier, neither nor sflow provide packetlevel visibility (sflow only allows sampling of packet slices). This type of visibility (and the sophisticated reports and analysis that comes with it) requires an advanced network analyzer. Integrating these two technologies delivers multiple benefits: y Consolidation, Compression, and Encryption of the Reporting Streams: Both and sflow send multiple streams of clear text, which is inefficient and can be a security issue. One commercial product that mitigates these problems is Observer. consolidates and compresses / sflow reporting streams, and encrypts the communication. y Increased Administrative Flexibility: Access to the data stream is no longer locked in the router or switch: it can be controlled via the probe s administrative interface. There are two problems with having to administer traffic reporting through the device: 1. Access to device administration is limited in most enterprises. 2. The targeting capabilities of /sflow are limited;, for example, allows you to specify only two target collectors. By making a distributed probe the target, you can then administer the probe, and if it is a Network Instruments Expert Probe, you can create multiple, virtual probe instances to extend the availability of the / sflow analysis to dozens of users if necessary. y Apply sophisticated monitoring features to /sflow data: The Observer Platform, for example, allows you to store /sflowderived data in long-term archival reports (Network Trending). It also allows you to set alarms that trigger an automated notification when various network conditions are reported by or sflow, such as the appearance of a protocol or IP address. y Reduce training costs: By showing the - or sflow-derived data in the same reporting format displayed by a standard probe, the IT staff does not have to learn multiple user interfaces to access the same type of information from different points of visibility. 3 Extending Network Visibility by Leveraging and sflow Technologies
4 /sflow+distributed Analysis = Total Visibility The following diagrams illustrate how /sflow and analyzers work together to give the IT administrator total visibility into a remote segment. With and sflow enabled on the devices that support it, the administrator has limited visibility. In particular, the administrator can see: y Which stations are generating the most traffic y What applications are running on the network by protocol and port number y Internet connections y VLAN usage statistics With no instrumentation (, sflow, or an analyzer) at the remote site, administrators have no network visibility. Percent of visibility = 0% y Type of Service (ToS), also called Precedence or Quality of Service (QoS). Without a probe, however, some important features are missing: y does not capture any actual packets, and sflow only captures a slice of each packet it collects, which is only a fraction of the total number of packets traversing the device. y Certain types of deep analysis are impossible without access to every packet on the wire: for example, application response time analysis, and ladder chart graphical displays of network conversations (sometimes called connection dynamics ) are unavailable. No Probe, no, no sflow Combining /sflow data with distributed probe captures offers comprehensive visibility. y and sflow reports generate multiple, unsecured data streams across the network or link. As we will see in the next diagram, using a probe at the remote site to collect the data is more efficient and secure. With only /sflow activated, administrators receive basic network and application information. With Flow data and an analysis probe activated, administrators receive the most visibility, including station-specific information for problem resolution. Aggregate Analysis, Encrypted Switch SPAN Session Percent of visibility = 100% sflow and Provides Extended Visibility, Probe Delivers Detailed Drill-Down and sflow activated Percent of visibility = 30% Probe data alone provides in-depth drill down to individual packets. 4 Extending Network Visibility by Leveraging and sflow Technologies
5 For continuous visibility of every packet on the remote network, you would need to deploy multiple probes to continuously collect SPAN sessions from each switch. This is usually not practical or desirable. Combining /sflow reporting with a probe gives you the best of both worlds: y For continuous monitoring of aggregate network statistics, and sflow are adequate, especially if they report to a local probe that provides network trending and alarm notifications. For example, with such a system, you can trigger a notification when certain protocols appear, or when any one station consumes a threshold percentage of network traffic. y When /sflow monitoring indicates a problem, you can direct a SPAN session from the relevant segment to the probe deployed onsite for packet capture and drill-down analysis. y Some distributed analyzers (available as part of the Observer Platform) store and sflow information in an extremely compact form, which means the system can store data for very long-term trend analysis. This type of historical information can be crucial for planning network upgrades and establishing baseline usage patterns. Also note that a single, encrypted probe/console link over a link is preferable to sending multiple, unsecured data streams over a link. Using a Remote Probe + Netflow/sflow to Manage a Remote Network So, how does all this work in practice? Here are a few typical network problems, and how they would be detected and solved using a combination of /sflow for broad monitoring, and a Network Instruments Expert Probe for detailed drill down: y The sflow Top Talkers reports from the access layer show that there is a station generating a wildly disproportionate share of network traffic. Suspecting a malware infection, the administrator directs a SPAN session from the relevant switch to the Expert Probe, and activates the hacker/ virus triggers and alarms. Suspicions are confirmed. The administrator calls the user to schedule a spyware/adware/virus sweep as soon as possible. y Users are complaining about slow Internet access. reports from the router show an unusually large volume of high-port (>9000) TCP traffic, which almost certainly points to Bittorrent. Using the Expert Probe to analyze a SPAN session of the core switch s connection to the router, the administrator filters for high-port TCP traffic. Sure enough, the new hire s workstation is the culprit. The administrator calls the offending user and gives him a short refresher course on corporate Internet usage policy. y VoIP users at the remote site are complaining of poor voice quality. /sflow reports a complete absence of any traffic with Type of Service (ToS) set to 5 (in other words, high-priority VoIP traffic). The solution is to reconfigure the call manager at the remote site to use the appropriate ToS setting. In short, /sflow gives a broad view of problems that might be affecting the network, while precise diagnosis requires capturing every relevant packet on the wire with the probe. Conclusion Managing large networks that span multiple locations is never easy or cheap. Every monitoring tool requires hardware resources, and even open-source and device-embedded tools such as and sflow have setup and maintenance costs. But by deploying the correct level of monitoring where it is needed, you can have comprehensive visibility without breaking the IT budget. Leveraging and sflow technologies with a distributed analyzer (available as part of the Observer Platform) offers the best of both worlds: y /sflow-provided broad visibility for network trending and the 30,000-foot view. y Access to every packet on the wire when necessary, accomplished by directing a SPAN session to the probe. /sflow technologies, when used alone, are inefficient and not secure. By leveraging distributed analysis infrastructure to integrate and sflow reporting, you can not only gain free visibility, but enhance the security and scalability of and sflow. Contact Us GO VIAVI ( ) To reach the Viavi office nearest you, visit viavisolutions.com/contacts Viavi Solutions Inc. Product specifications and descriptions in this document are subject to change without notice. extendingnetworkvisibility-wp-ec-ae viavisolutions.com
Extending Network Visibility by Leveraging NetFlow and sflow Technologies
Extending Network Visibility by Leveraging and sflow Technologies This paper shows how a network analyzer that can leverage and sflow technologies can provide extended visibility into enterprise networks
Flow Analysis Versus Packet Analysis. What Should You Choose?
Flow Analysis Versus Packet Analysis. What Should You Choose? www.netfort.com Flow analysis can help to determine traffic statistics overall, but it falls short when you need to analyse a specific conversation
Observer Probe Family
Observer Probe Family Distributed analysis for local and remote networks Monitor and troubleshoot vital network links in real time from any location Network Instruments offers a complete line of software
Diagnosing the cause of poor application performance
Diagnosing the cause of poor application performance When it comes to troubleshooting application performance issues, there are two steps you can take to make diagnosis easier, faster and more accurate.
SNMP Monitoring: One Critical Component to Network Management
Network Instruments White Paper SNMP Monitoring: One Critical Component to Network Management Although SNMP agents provide essential information for effective network monitoring and troubleshooting, SNMP
Best Practices for NetFlow/IPFIX Analysis and Reporting
WHITEPAPER Best Practices for NetFlow/IPFIX Analysis and Reporting IT managers and network administrators are constantly making decisions affecting critical business activity on the network. Management
INCREASE NETWORK VISIBILITY AND REDUCE SECURITY THREATS WITH IMC FLOW ANALYSIS TOOLS
WHITE PAPER INCREASE NETWORK VISIBILITY AND REDUCE SECURITY THREATS WITH IMC FLOW ANALYSIS TOOLS Network administrators and security teams can gain valuable insight into network health in real-time by
Observer Analysis Advantages
In-Depth Analysis for Gigabit and 10 Gb Networks For enterprise management, gigabit and 10 Gb Ethernet networks mean high-speed communication, on-demand systems, and improved business functions. For enterprise
Gaining Operational Efficiencies with the Enterasys S-Series
Gaining Operational Efficiencies with the Enterasys S-Series Hi-Fidelity NetFlow There is nothing more important than our customers. Gaining Operational Efficiencies with the Enterasys S-Series Introduction
Beyond Monitoring Root-Cause Analysis
WHITE PAPER With the introduction of NetFlow and similar flow-based technologies, solutions based on flow-based data have become the most popular methods of network monitoring. While effective, flow-based
Network Management and Monitoring Software
Page 1 of 7 Network Management and Monitoring Software Many products on the market today provide analytical information to those who are responsible for the management of networked systems or what the
Observer Probe Family
Observer Probe Family Distributed analysis for local and remote networks Monitor and troubleshoot vital network links in real time from any location Network Instruments offers a complete line of software
Cisco IOS Flexible NetFlow Technology
Cisco IOS Flexible NetFlow Technology Last Updated: December 2008 The Challenge: The ability to characterize IP traffic and understand the origin, the traffic destination, the time of day, the application
Viete, čo robia Vaši užívatelia na sieti? Roman Tuchyňa, CSA
Viete, čo robia Vaši užívatelia na sieti? Roman Tuchyňa, CSA What is ReporterAnalyzer? ReporterAnalyzer gives network professionals insight into how application traffic is impacting network performance.
Application-Centric Analysis Helps Maximize the Value of Wireshark
Application-Centric Analysis Helps Maximize the Value of Wireshark The cost of freeware Protocol analysis has long been viewed as the last line of defense when it comes to resolving nagging network and
Deploying Probes and Analyzers in an Enterprise Environment
Network Instruments White Paper Deploying Probes and Analyzers in an Enterprise Environment As an IT manager, you need visibility into every corner of the network, from the edge to the core. A distributed
Beyond Monitoring Root-Cause Analysis
WHITE PAPER With the introduction of NetFlow and similar flow-based technologies, solutions based on flow-based data have become the most popular methods of network monitoring. While effective, flow-based
Your Guide to Troubleshooting VoIP
Your Guide to Troubleshooting VoIP VoIP s extreme sensitivity to delay and packet loss compared to other network applications such as web and e-mail services, presents a real challenge. A basic understanding
Troubleshooting LANs with Network Statistics Analysis
Application Note Troubleshooting LANs with Network Statistics Analysis Introduction This application note is one in a series of local area network (LAN) troubleshooting papers from JDSU Communications
whitepaper Network Traffic Analysis Using Cisco NetFlow Taking the Guesswork Out of Network Performance Management
whitepaper Network Traffic Analysis Using Cisco NetFlow Taking the Guesswork Out of Network Performance Management Taking the Guesswork Out of Network Performance Management EXECUTIVE SUMMARY Many enterprise
Cisco Network Analysis Module Software 4.0
Cisco Network Analysis Module Software 4.0 Overview Presentation Improve Operational Efficiency with Increased Network and Application Visibility 1 Enhancing Operational Manageability Optimize Application
CiscoWorks Internetwork Performance Monitor 4.0
CiscoWorks Internetwork Performance Monitor 4.0 Product Overview The CiscoWorks Internetwork Performance Monitor (IPM) is a network response-time and availability troubleshooting application. Included
Network Performance Management Solutions Architecture
Network Performance Management Solutions Architecture agility made possible Network Performance Management solutions from CA Technologies compliment your services to deliver easily implemented and maintained
Cisco NetFlow TM Briefing Paper. Release 2.2 Monday, 02 August 2004
Cisco NetFlow TM Briefing Paper Release 2.2 Monday, 02 August 2004 Contents EXECUTIVE SUMMARY...3 THE PROBLEM...3 THE TRADITIONAL SOLUTIONS...4 COMPARISON WITH OTHER TECHNIQUES...6 CISCO NETFLOW OVERVIEW...7
Traffic Monitoring in a Switched Environment
Traffic Monitoring in a Switched Environment InMon Corp. 1404 Irving St., San Francisco, CA 94122 www.inmon.com 1. SUMMARY This document provides a brief overview of some of the issues involved in monitoring
7 Key Requirements for Distributed Network Monitoring
7 Key Requirements for Distributed Network Monitoring WHITE PAPER Distributed network monitoring uses dispersed data-collection points and analysis services to give IT administrators and business managers
Wireless Network Analysis. Complete Network Monitoring and Analysis for 802.11a/b/g/n
Wireless Network Analysis Complete Network Monitoring and Analysis for 802.11a/b/g/n Comprehensive Wireless Network Management Made Simple From deploying access points to baselining activity to enforcing
Traffic Analysis with Netflow The Key to Network Visibility
Traffic Analysis with Netflow The Key to Network Visibility > WHITEPAPER Executive Summary Enterprises today, know that the WAN is one of their most important assets. It needs to be up and running 24x7
Flow Based Traffic Analysis
Flow based Traffic Analysis Muraleedharan N C-DAC Bangalore Electronics City [email protected] Challenges in Packet level traffic Analysis Network traffic grows in volume and complexity Capture and decode
Aerohive Networks Inc. Free Bonjour Gateway FAQ
Aerohive Networks Inc. Free Bonjour Gateway FAQ 1. About the Product... 1 2. Installation... 2 3. Management... 3 4. Troubleshooting... 4 1. About the Product What is the Aerohive s Free Bonjour Gateway?
Enhancing Flow Based Network Monitoring
Enhancing Flow Based Network Monitoring Flow-based technologies such as NetFlow, sflow, J-Flow, and IPFIX are increasingly popular tools used by network operators. The tools leverage the capabilities embedded
NetFlow Tracker Overview. Mike McGrath x ccie CTO [email protected]
NetFlow Tracker Overview Mike McGrath x ccie CTO [email protected] 2006 Copyright Crannog Software www.crannog-software.com 1 Copyright Crannog Software www.crannog-software.com 2 LEVELS OF NETWORK
Unified network traffic monitoring for physical and VMware environments
Unified network traffic monitoring for physical and VMware environments Applications and servers hosted in a virtual environment have the same network monitoring requirements as applications and servers
NetFlow Tips and Tricks
NetFlow Tips and Tricks Introduction... 2 NetFlow and other Flow Technologies... 2 NetFlow Tips and Tricks... 4 Tech Tip 1: Troubleshooting Network Issues... 4 Tech Tip 2: Network Anomaly Detection...
Traffic Analysis With Netflow. The Key to Network Visibility
Summary Today, Enterprises know that the WAN is one of their most important assets. It needs to be up and running 24x7 for the enterprise to function smoothly. To make this possible, IT administrators
Network Visibility Guide
Network Visibility Guide Even Superman could only see through walls, not networks! We understand your lack of Network visibility. So we give you ManageEngine NetFlow Analyzer! Network visibility is the
Network Instruments white paper
Network Instruments white paper USING A NETWORK ANALYZER AS A SECURITY TOOL Network Analyzers are designed to watch the network, identify issues and alert administrators of problem scenarios. These features
Network as a Sensor and Enforcer Leverage the Network to Protect Against and Mitigate Threats
Network as a Sensor and Enforcer Leverage the Network to Protect Against and Mitigate Threats Dragan Novaković Consulting Systems Engineer Security November 2015. New Networks Mean New Security Challenges
Overview of NetFlow NetFlow and ITSG-33 Existing Monitoring Tools Network Monitoring and Visibility Challenges Technology of the future Q&A
Overview of NetFlow NetFlow and ITSG-33 Existing Monitoring Tools Network Monitoring and Visibility Challenges Technology of the future Q&A What is NetFlow? Network protocol originally developed by Cisco
Traffic monitoring with sflow and ProCurve Manager Plus
An HP ProCurve Networking Application Note Traffic monitoring with sflow and ProCurve Manager Plus Contents 1. Introduction... 3 2. Prerequisites... 3 3. Network diagram... 3 4. About the sflow protocol...
Cover. White Paper. (nchronos 4.1)
Cover White Paper (nchronos 4.1) Copyright Copyright 2013 Colasoft LLC. All rights reserved. Information in this document is subject to change without notice. No part of this document may be reproduced
SLA para aplicaciones en redes WAN. Alvaro Cayo Urrutia
SLA para aplicaciones en redes WAN Alvaro Cayo Urrutia Quién es FLUKE NETWORKS? Enterprise SuperVision (ESV) Soluciones portátiles de prueba y análisis LAN y WAN distribuidas Infrastructure SuperVision
Network traffic monitoring and management. Sonia Panchen [email protected] 11 th November 2010
Network traffic monitoring and management Sonia Panchen [email protected] 11 th November 2010 Lecture outline What is network traffic management? Traffic management applications Traffic monitoring
Extreme Networks CoreFlow2 Technology TECHNOLOGY STRATEGY BRIEF
Extreme Networks CoreFlow2 Technology TECHNOLOGY STRATEGY BRIEF TECHNOLOGY STRATEGY BRIEF Extreme Networks CoreFlow2 Technology Benefits INCREASED VISIBILITY Detailed monitoring of applications, their
Network Performance + Security Monitoring
Network Performance + Security Monitoring Gain actionable insight through flow-based security and network performance monitoring across physical and virtual environments. Uncover the root cause of performance
Multi Stage Filtering
Multi Stage Filtering Technical Brief With the increasing traffic volume in modern data centers, largely driven by e-business and mobile devices, network and application performance monitoring has become
Network Management for Common Topologies How best to use LiveAction for managing WAN and campus networks
Network Management for Common Topologies How best to use LiveAction for managing WAN and campus networks April 2014 www.liveaction.com Contents 1. Introduction... 1 2. WAN Networks... 2 3. Using LiveAction
How Network Transparency Affects Application Acceleration Deployment
How Network Transparency Affects Application Acceleration Deployment By John Bartlett and Peter Sevcik July 2007 Acceleration deployments should be simple. Vendors have worked hard to make the acceleration
Traffic Monitoring using sflow
Making the Network Visible www.sflow.org Traffic Monitoring using sflow With the ever-increasing reliance on network services for business critical applications, the smallest change in network usage can
Cisco and Visual Network Systems: Implement an End-to-End Application Performance Management Solution for Managed Services
Cisco and Visual Network Systems: Implement an End-to-End Application Performance Management Solution for Managed Services What You Will Learn In today s economy, IT departments are challenged to decide
E-Guide. Sponsored By:
Security and WAN optimization: Getting the best of both worlds E-Guide As the number of people working outside primary office locations increases, the challenges surrounding security and optimization are
plixer Scrutinizer Competitor Worksheet Visualization of Network Health Unauthorized application deployments Detect DNS communication tunnels
Scrutinizer Competitor Worksheet Scrutinizer Malware Incident Response Scrutinizer is a massively scalable, distributed flow collection system that provides a single interface for all traffic related to
WAN Optimization Integrated with Cisco Branch Office Routers Improves Application Performance and Lowers TCO
WAN Optimization Integrated with Cisco Branch Office Routers Improves Application Performance and Lowers TCO The number of branch-office work sites is increasing, so network administrators need tools to
ICND2 NetFlow. Question 1. What are the benefit of using Netflow? (Choose three) A. Network, Application & User Monitoring. B.
ICND2 NetFlow Question 1 What are the benefit of using Netflow? (Choose three) A. Network, Application & User Monitoring B. Network Planning C. Security Analysis D. Accounting/Billing Answer: A C D NetFlow
Intelligent Network Monitoring for Your LAN, WAN and ATM Network
Intelligent Network Monitoring for Your LAN, WAN and ATM Network Solutions ZettaE2E Intelligent Network Monitoring for Your LAN, WAN and ATM Network Key Benefits Reduce current and future LAN, WAN and
Observer Reporting Server Sample Executive Reports
Observer Reporting Server Sample Executive Reports Enterprise-wide monitoring and reporting with root-cause analysis Table of Contents Observer Reporting Server Introduction to the Observer Reporting Server
Your Guide to Troubleshooting VoIP
Your Guide to Troubleshooting VoIP VoIP s extreme sensitivity to delay and packet loss compared to other network applications such as web and e-mail services, presents a real challenge. A basic understanding
Certes Networks Layer 4 Encryption. Network Services Impact Test Results
Certes Networks Layer 4 Encryption Network Services Impact Test Results Executive Summary One of the largest service providers in the United States tested Certes Networks Layer 4 payload encryption over
Observer Analyzer Provides In-Depth Management
Comprehensive Wireless Network Management Made Simple From deploying access points to baselining activity to enforcing corporate security policies, the Observer Performance Management Platform is a complete,
Achieving Service Quality and Availability Using Cisco Unified Communications Management Suite
Achieving Service Quality and Availability Using Cisco Unified Communications Management Suite EXECUTIVE SUMMARY CISCOLIVE Europe 2010 Annual Cisco IT and communications conference Event held at Barcelona,
Flow Analysis. Make A Right Policy for Your Network. GenieNRM
Flow Analysis Make A Right Policy for Your Network GenieNRM Why Flow Analysis? Resolve Network Managers Challenge as follow: How can I know the Detail and Real-Time situation of my network? How can I do
Monitoring and Managing Voice over Internet Protocol (VoIP)
Network Instruments White Paper Monitoring and Managing Voice over Internet Protocol (VoIP) As with most new technologies, Voice over Internet Protocol (VoIP) brings new challenges along with the benefits.
WHITE PAPER September 2012. CA Nimsoft For Network Monitoring
WHITE PAPER September 2012 CA Nimsoft For Network Monitoring Table of Contents EXECUTIVE SUMMARY 3 Solution overview 3 CA Nimsoft Monitor specialized probes 3 Network and application connectivity probe
Who is Generating all This Traffic?
Who is Generating all This Traffic? Network Monitoring in Practice Luca Deri Who s ntop.org? Started in 1998 as open-source monitoring project for developing an easy to use passive monitoring
Network Performance Monitoring at Minimal Capex
Network Performance Monitoring at Minimal Capex Some Cisco IOS technologies you can use to create a high performance network Don Thomas Jacob Technical Marketing Engineer About ManageEngine Network Servers
Monitoring Service Delivery in an MPLS Environment
Monitoring Service Delivery in an MPLS Environment A growing number of enterprises depend on (or are considering) MPLS-based routing to guarantee high-bandwidth capacity for the real-time applications
Secure Networks for Process Control
Secure Networks for Process Control Leveraging a Simple Yet Effective Policy Framework to Secure the Modern Process Control Network An Enterasys Networks White Paper There is nothing more important than
RAVEN, Network Security and Health for the Enterprise
RAVEN, Network Security and Health for the Enterprise The Promia RAVEN is a hardened Security Information and Event Management (SIEM) solution further providing network health, and interactive visualizations
Introduction. What is a Remote Console? What is the Server Service? A Remote Control Enabled (RCE) Console
Contents Introduction... 3 What is a Remote Console?... 3 What is the Server Service?... 3 A Remote Control Enabled (RCE) Console... 3 Differences Between the Server Service and an RCE Console... 4 Configuring
Cisco Prime Network Analysis Module Software 5.1 for WAAS VB
Cisco Prime Network Analysis Module Software 5.1 for WAAS VB Network administrators need multifaceted visibility into the network and application to help ensure consistent and cost-effective delivery of
and reporting Slavko Gajin [email protected]
ICmyNet.Flow: NetFlow based traffic investigation, analysis, and reporting Slavko Gajin [email protected] AMRES Academic Network of Serbia RCUB - Belgrade University Computer Center ETF Faculty
Ranch Networks for Hosted Data Centers
Ranch Networks for Hosted Data Centers Internet Zone RN20 Server Farm DNS Zone DNS Server Farm FTP Zone FTP Server Farm Customer 1 Customer 2 L2 Switch Customer 3 Customer 4 Customer 5 Customer 6 Ranch
White Paper Three Simple Ways to Optimize Your Bandwidth Management in Video Surveillance
White Paper Three Simple Ways to Optimize Your Bandwidth Management in Video Surveillance Table of Contents Executive Summary 3 Getting the Most from Your Network Resources 4 Uncovering Common Methods
Any-to-any switching with aggregation and filtering reduces monitoring costs
Any-to-any switching with aggregation and filtering reduces monitoring costs Summary Physical Layer Switches can filter and forward packet data to one or many monitoring devices. With intuitive graphical
VoIP Analysis. Manage, Monitor, and Maintain VoIP Communication with Observer Analyzer
VoIP Analysis Manage, Monitor, and Maintain VoIP Communication with Observer Analyzer The Detail and Diagnostics to Solve Today s VoIP Problems Today s enterprise administrators face a multitude of VoIP
How to configure an Advanced Expert Probe as NetFlow Collector
created by: Rainer Bemsel Version 1.0 Dated: Jan/31/2012 There are two types of NetFlow collectors in Observer. In most cases, it will likely be the NetFlow Trending collector being configured. The Trending
CISCO INFORMATION TECHNOLOGY AT WORK CASE STUDY: CISCO IOS NETFLOW TECHNOLOGY
CISCO INFORMATION TECHNOLOGY AT WORK CASE STUDY: CISCO IOS NETFLOW TECHNOLOGY CISCO INFORMATION TECHNOLOGY SEPTEMBER 2004 1 Overview Challenge To troubleshoot capacity and quality problems and to understand
Network Management. 8.1 Centralized Monitoring, Reporting, and Troubleshooting. 8.1.1 Monitoring Challenges and Solutions CHAPTER
CHAPTER 8 The Cisco WAN and application optimization solution provides a powerful set of WAN optimization features. To translate these features into verifiable user benefits, effective network management
Network audit Campina UK Horsham November 10th, 2004
Network audit Campina UK Horsham November 10th, 2004-1 - Contents Contents... 2 Problem description... 2 Problem description... 3 Current infrastructure... 4 Test... 5 Test setup... 5 Test results... 9
PacketTrap One Resource for Managed Services
Remote Monitoring Software for Managed Services Providers PacketTrap RMM provides a cost-effective way for you to offer enterprise-class server, application, and network management to your customers. It
Enterprise Energy Management with JouleX and Cisco EnergyWise
Enterprise Energy Management with JouleX and Cisco EnergyWise Introduction Corporate sustainability and enterprise energy management are pressing initiatives for organizations dealing with rising energy
STEALTHWATCH MANAGEMENT CONSOLE
STEALTHWATCH MANAGEMENT CONSOLE The System by Lancope is a leading solution for network visibility and security intelligence across physical and virtual environments. With the System, network operations
Securing and Monitoring BYOD Networks using NetFlow
Securing and Monitoring BYOD Networks using NetFlow How NetFlow can help with Security Analysis, Application Detection and Traffic Monitoring Don Thomas Jacob Technical Marketing Engineer ManageEngine
Packet Capture and Expert Troubleshooting with the Viavi Solutions T-BERD /MTS-6000A
Packet Capture and Expert Troubleshooting with the Viavi Solutions T-BERD /MTS-6000A By Barry Constantine Introduction As network complexity grows, network provider technicians require the ability to troubleshoot
Traffic Management for the Enterprise
ProCurve Networking by HP Traffic Management for the Enterprise Introduction... 2 The Importance of Traffic Management... 2 Types of Network Traffic... 3 Bursty traffic... 3 Interactive traffic... 3 Latency
WHITE PAPER OCTOBER 2014. CA Unified Infrastructure Management for Networks
WHITE PAPER OCTOBER 2014 CA Unified Infrastructure Management for Networks 2 WHITE PAPER: CA UNIFIED INFRASTRUCTURE MANAGEMENT FOR NETWORKS ca.com Table of Contents Solution Overview 3 Specialized Probes
HP IMC User Behavior Auditor
HP IMC User Behavior Auditor Administrator Guide Abstract This guide describes the User Behavior Auditor (UBA), an add-on service module of the HP Intelligent Management Center. UBA is designed for IMC
Network Instruments white paper
Network Instruments white paper ANALYZING FULL-DUPLEX NETWORKS There are a number ways to access full-duplex traffic on a network for analysis: SPAN or mirror ports, aggregation TAPs (Test Access Ports),
Network Monitoring Comparison
Network Monitoring Comparison vs Network Monitoring is essential for every network administrator. It determines how effective your IT team is at solving problems or even completely eliminating them. Even
Network Management Deployment Guide
Smart Business Architecture Borderless Networks for Midsized organizations Network Management Deployment Guide Revision: H1CY10 Cisco Smart Business Architecture Borderless Networks for Midsized organizations
