| |
| Overview |
Along with the explosive growth of Internet,
all the networks are encountering more than ever difficult challenges
– unpredictable attacks from network worms and DoS/DDoS,
and also fast spreading spam-mails, all those are severely impacting
the service quality as well as the overall security of your
managed network.
Perhaps, you have already deployed some kinds of network security
equipments like firewalls, IDSs, and protocol analyzers for
protection. In fact, you also know that even firewalls/IDSs
are not ensuring your network 100% free from the zero-day attacks
which are actually even burning down your security devices.
Furthermore, the fast spreading abnormal traffic and/or DoS/DDoS
attacks residing in your network will keep downgrading the network
service quality dramatically unless you could react instantly
and take solid control on it.
Therefore, except the traditional security devices installed,
you do also need one more powerful tool for network security
reinforcement. GenieATM 2310
is going to provide you the solution for locating network
security problems instantly and better network traffic analysis
with network-wide visibility. Through inspecting the collected
traffic flow information from core/access routers or backbone
switches, it enables the possibility on locating the source/destination
of DoS/DDoS attacks, spam-mails, illegal servers, and also
providing user-behaviors, and load balance analysis. With
clear visibility on network traffic analysis, both network
optimization and expansion works become easier and more efficient
GenieATM 2310 is designed with
hardened network appliance architecture, which delivers outstanding
performance and ease of deployment. Its friendly operating
interface is easy to use. The multilingual GUI support allows
you to monitor and analyze your network traffic statistics
anytime and anywhere through Web access. It also provides
various traffic analysis reporting formats like Standard,
Comparison, and Trend reports with selectable time intervals
like Daily, Weekly, Monthly, Quarterly, and Yearly.
The embedded database is configured to operate intelligently
with self-maintenance capability. The system operation/maintenance
cost is remained low by useful system administration functions
as well as the support of remote system upgrade.
GenieATM 2310 provides
3 models for users to satisfy all scales of network requirements.
Actually, it has been selected and widely deployed as one
of the key tools on analyzing network traffic flows in many
organizations, such as enterprises, educational campuses,
governments, financial services, banking and manufacturers.
|
| Features |
Appliance
Architecture: Ease of system set-up
and configurations. All modules integrated in one box which
could perform all functions independently. No any extra
hardware or software is required.
- Long-term Traffic Monitor:
Network-wide traffic monitor and in-depth analysis are enabled
by “rule-based” analysis capability. Except
filters figured with various analysis criteria (IP addr.,
IP blocks, interfaces) to monitor network traffic in longer
term, further filter combinations are also available through
“And-Or-Not” logic computing.
- Two-level Threshold Alarm:
Two-level threshold alarms mechanism for real-time display
on monitor reports, and could also issue SNMP traps to the
Fault Management System of NMS for integration.
- In-depth Traffic Analysis:Multi-tiered
Top-N ranking reports that being updated at every 5-minute
interval and is also available by drag-down functions. The
offline analysis on the historical raw data residing in
system is also applicable.
- Instant Traffic Snapshot:
Abnormal traffic, worms, and the source and destination
of attacks are easily been identified and located by the
unique traffic snapshot function.
- Web-based Interface:
The system could be accessed from anywhere
anytime only with web-client and Internet access. The GUI
design would also make the operations friendly to users
and quick to learn.
- Command Line Interface:In
Addition to CLI, the remote Telnet and SSH accesses are
also available for operating the system configurations and
upgrades securely.
- Comprehensive Reports:Various
types of the report supported:Line, Bar, and Pie charts;HTML,
PDF, and CSV formats;Daily, Weekly, Monthly, Quarterly,
and Yearly reports;Standard, Comparison, and Trend reports.
- Remote Software Upgrade:
The system software upgrade
could be easily performed by remote access and/or by replacing
the build-in flash card on-site locally.
- User Account Management:Four
levels of account authority are defined for management of
system access, which enables the system suitable for system
sharing applications to multi-user environment.
- Multi-lingual Support:Per-user
language selection for English, Japanese, Traditional Chinese
and Simplified Chinese.
- Flow Record Format: NetFlow™
V1, V5, V7, and sFlow® flow formats are supported.
- Built-in Probe: An
alternative by performing packet capture over the Ethernet
links to be monitored, either just listening to the links
through network taps or connecting to the mirroring/span
port on switches.
- Multiple Exporter Sources:The
system could be configured to collect flow traffic from
multiple exporters simultaneously, that makes traffic monitor
and analysis applicable to the aggregated network traffic.
- Ease of Deployment: The
system will work easily in any network with IP connectivity
for data collection and management connection, with no impact
to user’s existing network environment.
- Flow Relay: Forwarding
all the received NetFlow/sFlow data to other NetFlow/sFlow
collectors.
- Data Export with ODBC:Through
ODBC links, the DB data of “Traffic Monitor Report”
and “Traffic Analysis Report” are available
for users to retrieve for further integration with customers’
business support system (BSS).
|
NetFlow™ is a trademark of Cisco
Systems, Inc.
sFlow ® is registered as a trademark of InMon Corp.
|
|
|