June 06, 2005

StealthWatch Xe shines a light on NetFlows

New Lancope appliance collects and analyzes NetFlow traffic data for anomalous behavior

Shining a light in the dark often exposes nasty little critters that normally hide from view. Lancope’s newly released StealthWatch Xe IDS appliance can do the same thing for your network. Working in conjunction with network infrastructure products from Cisco Systems, Foundry Networks, Juniper Networks, and others, Xe collects and analyzes NetFlow data to provide a view into strange and threatening traffic running on network segments lacking IDS sensors.
We’ve been using Xe to analyze NetFlow data from Cisco Catalyst and Foundry BigIron switches, and we’ve found scary critters of every stripe -- worms, viruses, Trojans, keylogging spyware, you name it. Xe incorporates the same analytical engine deployed in the conventional StealthWatch appliance we tested last summer, but it enlists existing routers and switches to work as its sensors, drawing their NetFlow data from mirrored switch ports. Xe is not the first solution to leverage routers and switches this way, but the passive approach of the StealthWatch engine -- which does most of its analysis without inspecting packet payloads or hindering network traffic -- meshes especially well with spanned traffic monitoring.
Current StealthWatch users will be happy to know that the Xe interface closely matches its conventional StealthWatch cousin and seamlessly connects into the StealthWatch Management Console. Whether you use Xe to extend your existing StealthWatch deployment or as a point solution, it will bring powerful threat detection capabilities to opaque segments of your network. In June, Xe will be available as part of StealthWatch System 5.0. System 5.0 will integrate with other network devices to mitigate attacks, detect application traffic that violates network policies, and provide visualizations of worm outbreaks and network flows.
-- Victor R. Garza and Doug Dineley


StealthWatch Xe
Lancope
Cost: Starts at $9,995
Available: Now; StealthWatch System 5.0 due in June


Read more about networking in InfoWorld's Networking Channel.

Close

On Twitter now

Networking

Powered by Twitter

On Twitter now

additional resources
White Paper - How to Improve Delivery of Advanced Web Applications

White Paper

Virtual Workforce: The Key to Expanding The Business While Cutting Costs

Get the independent advice and expertise you need to support a virtual workforce.

Go inside:
The three-step approach to making a virtual workforce a reality.
The four flavors of client virtualization technologies.
The three key initiatives that solve IT challenges.
Download now »
White Paper: Successfully Secure Your Wireless LAN With Wi-Fi firewalls.

White Paper

Addressing Linux Threats Leveraging Fewer Resources

The increase in Linux popularity has increased the frequency and sophistication of malware attacks. Read this 2 page white paper now to learn how you can protect your Linux environment with real-time protection that is certified by all major Linux vendors.

Download now »
White Paper - The 2009 Handbook of Application Delivery

White Paper

The 2009 Handbook of Application Delivery

Ensuring acceptable application delivery will become even more difficult over the next few years. As a result, IT organizations need to ensure that the approach that they take to resolving the current application delivery challenges can scale to support the emerging challenges. This handbook elaborates on the key tasks associated with planning, optimization, management and control and provides decision criteria to help IT organizations choose appropriate solutions.

Download now »
White Paper - Is Your Backup System Outdated?

White Paper

Mid-range Storage Considerations

A common misconception is that mid-range storage requirements are dramatically different than that of a larger enterprise. Mid-range storage users may require less capacity, but they have similar functionality and management requirements. This ESG paper examines mid-range storage needs and reviews a new solution that adjusts size while retaining value, performance and functionality.

Download now »

Today's Headlines: First Look Newsletter

Find out what will be news for the day, with our first-thing-in-the-morning briefing.

©1994-2010 Infoworld, Inc.