Take the NetFlow Challenge!

Similar documents
plixer Scrutinizer Competitor Worksheet Visualization of Network Health Unauthorized application deployments Detect DNS communication tunnels

Scrutinizer. Application traffic analytics, visualization and reporting tool

Contents. System Requirements. Enhancements in SonicWALL Scrutinizer Scrutinizer

NetFlow The De Facto Standard for Traffic Analytics

ICND2 NetFlow. Question 1. What are the benefit of using Netflow? (Choose three) A. Network, Application & User Monitoring. B.

NetFlow: What is it, why and how to use it? Miloš Zeković, ICmyNet Chief Customer Officer Soneco d.o.o.

HP Intelligent Management Center v7.1 Network Traffic Analyzer Administrator Guide

Cisco IOS Flexible NetFlow Technology

INCREASE NETWORK VISIBILITY AND REDUCE SECURITY THREATS WITH IMC FLOW ANALYSIS TOOLS

Network Management Deployment Guide

Flow Based Traffic Analysis

Plugging Network Security Holes using NetFlow. Loopholes in todays network security solutions and how NetFlow can help

CISCO INFORMATION TECHNOLOGY AT WORK CASE STUDY: CISCO IOS NETFLOW TECHNOLOGY

Cheap and efficient anti-ddos solution

NetFlow use cases. ICmyNet / NetVizura. Miloš Zeković, milos.zekovic@soneco.rs. ICmyNet Chief Customer Officer Soneco d.o.o.

DDoS Protection. How Cisco IT Protects Against Distributed Denial of Service Attacks. A Cisco on Cisco Case Study: Inside Cisco IT

Network Performance Monitoring at Minimal Capex

LiveAction: GUI-Based Management and Visualization for Cisco Intelligent WAN

NetFlow Tips and Tricks

Dell SonicWALL Scrutinizer 15.5

Network as a Sensor and Enforcer Leverage the Network to Protect Against and Mitigate Threats

NetFlow Analytics for Splunk

Flow Analysis Versus Packet Analysis. What Should You Choose?

Network Monitoring Comparison

NetFlow Tracker Overview. Mike McGrath x ccie CTO mike@crannog-software.com

Dell SonicWALL report portfolio

Introduction to Network Discovery and Identity

Gaining Operational Efficiencies with the Enterasys S-Series

Monitoring and analyzing audio, video, and multimedia traffic on the network

MSP. HOW MSPs Can Use Performance Monitoring to Create New Revenue Streams. [ WhitePaper ] Introduction

Cisco Network Foundation Protection Overview

Wharf T&T Limited DDoS Mitigation Service Customer Portal User Guide

SolarWinds. NetFlow Traffic Analyzer. Evaluation Guide. Version 4.2

SonicOS 5.8: NetFlow Reporting

Secure Networks for Process Control

Overview of Network Traffic Analysis

Campus LAN at NKN Member Institutions

Flow Analysis. Make A Right Policy for Your Network. GenieNRM

Analyze hop-by-hop path, devices, interfaces, and queues Locate and troubleshoot problems

WhatsUp Gold 2016 Getting Started Guide

Comprehensive IP Traffic Monitoring with FTAS System

WhatsUp Gold vs. Orion

Securing and Monitoring BYOD Networks using NetFlow

Datasheet: Visual Performance Manager and TruView Advanced MPLS Package with VoIPIntegrity (SKU 01923)

Network Monitoring and Management NetFlow Overview

How To Get Started With Whatsup Gold

Analyzed compe.tors Cisco RadWare Top Layer RioRey IntruGuard. January Cristian Velciov. (+40)

SolarWinds Certified Professional. Exam Preparation Guide

Scalable Extraction, Aggregation, and Response to Network Intelligence

Beyond Monitoring Root-Cause Analysis

Network Monitoring On Large Networks. Yao Chuan Han (TWCERT/CC)

Introduction to Netflow

Running custom scripts which allow you to remotely and securely run a script you wrote on Windows, Mac, Linux, and Unix devices.

Visualization, Management, and Control for Cisco IWAN

Configuring SNMP and using the NetFlow MIB to Monitor NetFlow Data

and reporting Slavko Gajin

Kaseya Traverse. Kaseya Product Brief. Predictive SLA Management and Monitoring. Kaseya Traverse. Service Containers and Views

Love at Second Sight. Written by Drew Robb

Introduction to Cisco IOS Flexible NetFlow

LiveAction. Application-aware Network Performance Management with QoS Control

How To Manage Security On A Networked Computer System

How To Set Up Foglight Nms For A Proof Of Concept

NetFlow-Lite offers network administrators and engineers the following capabilities:

WhatsUpGold. v NetFlow Monitor User Guide

NSC E

HUNTING ATTACKERS WITH NETWORK AUDIT TRAILS

Network Management Back to the Basics. Brad Hale

Network Monitoring and Traffic CSTNET, CNIC

Beyond Monitoring Root-Cause Analysis

LiveAction: GUI-Based Management and Visualization for Cisco Intelligent WAN

Network congestion control using NetFlow

McAfee Network Security Platform Administration Course

CISCO IOS NETWORK SECURITY (IINS)

Cisco Certified Security Professional (CCSP)

Cisco ASA and NetFlow Using ASA NetFlow with LiveAction Flow Software

CHAPTER 1 WhatsUp Flow Monitor Overview. CHAPTER 2 Configuring WhatsUp Flow Monitor. CHAPTER 3 Navigating WhatsUp Flow Monitor

Monitoring Log Management and Alerting

IPv6 Security. Scott Hogg, CCIE No Eric Vyncke. Cisco Press. Cisco Press 800 East 96th Street Indianapolis, IN USA

CNS-208 Citrix NetScaler 10 Essentials for ACE Migration

IPV6 流 量 分 析 探 讨 北 京 大 学 计 算 中 心 周 昌 令

LiveAction Visualization, Management, and Control for Cisco IWAN Overview

CTS2134 Introduction to Networking. Module Network Security

PROFESSIONAL SECURITY SYSTEMS

PacketTrap One Resource for Managed Services

Secure Cloud-Ready Data Centers Juniper Networks

Case Study: Instrumenting a Network for NetFlow Security Visualization Tools

CNS-200-1I Basic Administration for Citrix NetScaler 9.0

Best Practices for NetFlow/IPFIX Analysis and Reporting

Adaptive IPS Security in a changing world. Dave Venman Security Engineer, UK & Ireland

Voice Over IP (VoIP) Denial of Service (DoS)

How Cisco IT Protects Against Distributed Denial of Service Attacks

Network Threat Behavior Analysis Monitoring Guide. McAfee Network Security Platform 6.1

CISCO IOS NETFLOW AND SECURITY

Network traffic monitoring and management. Sonia Panchen 11 th November 2010

White Paper: Troubleshooting Remote Site Networks Best Practices

Network Management for Common Topologies How best to use LiveAction for managing WAN and campus networks

Cisco Wireless Control System (WCS)

A host-based firewall can be used in addition to a network-based firewall to provide multiple layers of protection.

SLA para aplicaciones en redes WAN. Alvaro Cayo Urrutia

Transcription:

TM Scrutinizer NetFlow and sflow Analysis Scrutinizer is a NetFlow and sflow analyzer that provides another layer of cyber threat detection and incredibly detailed network utilization information about the users and applications that consume your bandwidth. Using both Cisco s NetFlow or sflow Technology found on most switches and routers, Scrutinizer is able to retrieve graphical view. VoIP Analysis Voice over IP (VoIP) Analysis is assisted in Scrutinizer by verifying: What QoS is being requested Visualization of Network Health Visualize Global Networks with Google Maps Scrutinizer offers advanced integration with the Google Maps API, which allows users to plot routers, switches and device groups on imbedded Google or traditional maps. This helps make high level network navigation a snap and Network Behavior Analysis alert you when trouble is recognized. Zero - day worms, SYN Floods and DoS attacks Policy violations and internal misuse Zero Day Threat Detection Behavior based threat detection without the use of signi- Unauthorized application deployments Compare IP addresses to host reputation lists investment in routers and switches to perform zero day detection of unknown threats. Custom Report Filtering IP Addresses, ranges and subnets Port numbers and ranges - The Best Value in NetFlow Regardless of your reason for choosing Scrutinizer, you ll easily recognize the value it brings to your network equipment and your team. Scrutinizer is worth the investment. Take the NetFlow Challenge on the back! Combine interfaces from multiple routers

Support for unlimited exporters 5 Support for unlimited interfaces Identify interface names using NetFlow, not SNMP Support for multiple languages Display data in bits, bytes, packets or percent Trend in, out or both at the same time, in all reports 100% support for Flexible NetFlow by breaking out details per template Support for Netstream, sflow (v2, v4, v5), J-Flow, IPFIX and AppFlow Support for NetFlow v1, v5, v6, v7 and v9 Export data in csv format on all reports Granularity down to the second it was received Schedule email reports on demand Filter for Host to Host and Subnet to Subnet Abiltiy to add mutliple interfaces across different routers to single report IMPORTANT: As a host may have multiple routes to the same destination Support for IPv6

Mapping of network with links that change color based on utilization Ability to click on the links in the map to bring up the top conversations Integration with Google Maps Customize interface names and overwrite default SNMP ifalias name Customize interface speed, both in and out, with different values SNMP v1, v2 and v3 LDAP support Integration with any 3rd party NMS solutions via cross check MPLS reporting on subnets and tags Online technical video training Company has thousands of customers Dashboards: unique interface per login account Group based user permissions Email reports on demand IP grouping support Exclude transport protocols from being saved per interface, router or globally (very important feature when VPNs and tunnels are involved). Ability to view individual Flow templates (NetFlow v9 and Flexible NetFlow) Ability to rename templates for future reference Ability to select which NetFlow template to use in a report (important when collection NetFlow from the Cisco ASA) Flow Volume Report Pair Volume (Volume of unique to/from address pairs) Alarm for DDoS, DNS issues Host Volume (volume of unique hosts per second)

Top Subnets Top Domains Top Countries Report and trend on Microsoft Exchange logs Detect network scans (e.g. SYN, RST/ACK, XMAS, FIN, etc.) Constant automated DNS resolution for Flows received Alarms for high interface utilization Specify allowed subnets and alarm for rogue IP addresses Unique index per alarm (tells how many other alarms the host has violated) Alarm: Identify internal hosts communicating with known compromised internet sites. (Online IP reputation database) Alarm for BitTorrent, YouTube, Facebook, etc. use Support for NBAR via NetFlow (i.e. not SNMP) Flow View Only Mitigate issues by turning ports off on switches or making ACL changes. (i.e. decades) Limited to 24 hours Set permissions per interface * Set permissions per router * Flow Expert in MyView for advanced, proactive awareness of anomalies UltraSurf detection Advanced Reporting on Citrix NetScaler for AppFlow (URLs, Latency, Etc) Support for Cisco ASA NSEL Performance Routing (PfR), Performance Monitoring, Smart Logging Telemetry (SLT), Cisco TrustSec, AVT Performance Agent and others. 3rd party integration w/cross platform fault index

Latency and round trip time for all devices on the network Set interface speed per report Search IP addresses or ports across all devices to track where it was seen The dynamic creation of reports based on any exported data (i.e. Element) Company acquired millions in Venture Capital Requires expensive Microsoft Database *Requires Service Provider Module