Jun 21 2010
The recently introduced ‘StealthWatch FlowSensor AE 3000 appliance’ from Lancope, the NetFlow analysis and collection leader and the StealthWatch System vendor, can generate packet-level metrics and NetFlow data to facilitate cost-effective network visibility over 10 gigabit (10G) environments. This appliance is the latest addition to the StealthWatch product range.
This appliance will enable Lancope to combine packet-level statistics and NetFlow collection and analysis for providing affordable security and network performance monitoring of 10G networks. The sensor has extended the visibility of the StealthWatch into 10G networks that do not have flow data, or where the customary Ethernet sensor technology is very expensive. The sensor transforms the Ethernet communications into flow records that are dispatched for detailed analysis to StealthWatch Flow Collectors.
By offering flow-by-flow based visibility for 10 gigabit networks, StealthWatch is able to deliver scalable, continuous network visibility over the enterprise and right down to individual flows at a cost that is a fraction of that of customary probe-enabled solutions that charge according to total line rate instead of actual capacity used.
The sensor uses Ethernet test access port (TAP), switch port analyzer (SPAN), or mirror port for creating a custom-based NetFlow v9 records along with packet-level statistics obtained from the observed traffic.
These flow records are transmitted to StealthWatch Flow Collectors. These collectors perform further analysis, such as packet payload, round-trip time (RTT), various TCP metrics and server response time (SRT). Operators can use the distinctive drill-down features of StealthWatch for identifying the root cause within seconds, and also ascertain whether the network, user’s desktop or server has any problem.
Minimizing the need for expensive probe-based solutions and personnel, StealthWatch has minimized the requirement for personnel and expensive probe-enabled solutions, and enables organizations to optimize security and performance, and at the same time lowering security management and overall network costs.