Being faced with a continuously growing and
gradually complex network environment nowadays, Network Service
Providers extremely hunger for a more powerful and efficient
network management system to integrate traffic analysis information
including Flows, SNMP polling, and BGP routing respects for
operation and business decision-making. Moreover, increasingly-rampant
deliberate attacks have seriously impacted and threaten the
network service performance and the operation of information
system. Many security technology products, such as Protocol
Analyzer, Firewall, IDS, and so on, have been the most popular
security solution, however, they are incapable of solving all
threats and fulfilling most needs especially for a Network Service
Provider’s large-scale architecture, an efficient solution
demanded by a high-capacity backbone network, and the important
relevant security technologies for a large-scale network (like
BGP security issues). GenieATM 6000 is exactly the total solution
which can help xSPs to improve the quality of decision-making
in network service operation and to ensure a better network
security. Intelligent Network
Traffic Modeling
Built-in modeling can quickly and precisely classify various
network flows, appropriately analyze received flow packets,
automatically generate various related pre-defined traffic
reports with the accurate traffic statistics, and hence users
can monitor network operation effortlessly and efficiently.
Anomaly Traffic Detections & Mitigation
The Anomaly Traffic Detection engine can quickly detect network
attacks (such as DoS/DDoS) originate from internal and external
networks, promptly locate suspicious attackers and attackees. In addition to the early detection, GenieATM also provides several measures for mitigating and resolving the detected threats timely to reduce the impacts. The mitigation options include proper ACL command suggestions, Black-hole routing, and working with 3rd-party traffic cleaning devices (e.g. Cisco Guard) to block the anomalous traffic.
Supported BGP Security Mechanism
GenieATM 6000 can monitor BGP update messages on neighbor
ASes and issue alarm notifications once any abnormal changes
or BGP Hijack events are detected, and the analyzed statistics
can be used for routing management decision-making.
Convenient Traffic Snapshot
Compare with the auto-analysis of the built-in Network Traffic
Modellings, the Snapshot function is an elastic & efficacious
troubleshooting solution. It not only has abundant analysis
criteria for users to flexibly choose but also provides various
aggregation methods to present. Moreover, it can narrow down
the anomaly traffic scope gradually to precisely find out
the attacking sources. Meanwhile, the system could generate
a set of ACL commands as a suggestive solution for network
operators to block the anomaly traffic.
Distributed Deployment, Centralized
Management
GenieATM
6000 can collect IP flow information of routing switches and
routers from GenieATM Collectors distributed in every regional
network, and then analyze the collected flow information as
well as deliver the analyzed traffic flow to the GenieATM
Controller.
|