Solutions We Provide

Network Behavior Analysis & Anomaly Detection

 

The Arbor Peakflow X solution uses innovative network behavior analysis (NBA) technology to detect and react to anomalies as they occur. That means you can identify developing network security threats early on—even those stemming from the newest mobility and social media vulnerabilities—before signatures are created.

Through its real-time NBA capabilities, Peakflow X identifies the normal behavior of all network applications and traffic, including voice over IP (VoIP) and peer-to-peer (P2P). It then automatically alerts you to abnormalities due to traffic and usage violations, malicious activity, misconfigurations and even virulent zero-day threats that do not yet have signatures—enabling you to identify and deflect new virulent attacks that can slip by your existing antivirus and intrusion detection systems.

Network Behavior Analysis (NBA) Advantages of Peakflow X
As an enterprise-class NBA solution, Peakflow X provides valuable features, including:
  • Real-Time Risk Assessment: Peakflow X automatically calculates a risk index that identifies the hosts or users involved in multiple activities. This risk index uses sophisticated algorithms to pinpoint which hosts present the largest risk to network security. It also saves time by automatically prioritizing issues by impact.
  • Network Visibility: Network operators can view interfaces for the entire network, or for a selected router or service. From a graphical user interface, users can investigate an interface’s top services, hosts and connections—and respond to security threats as they happen. During a worm outbreak, for example, users can quickly identify the most endangered routers and interfaces, and promptly shut them down to ensure safe quarantine.
  • Flexible Identity Tracking: Peakflow X keeps a history of traffic by host and user, as well as associated alerts. Users gain both real-time and historic visibility into identity mappings—enabling them to see who is using an IP address at any given moment, along with a history of identity login/logoff times.
  • Virtually Limitless Offline Storage for Compliance and Analysis: Enterprises can store nearly infinite amounts of data offline on storage area networks (SANs) to monitor compliance and enable “back-in-time” analysis.