inner_whatwedo

Peakflow X: Enterprise Network Security

Protection, Monitoring and Visibility for the Enterprise Network

In today’s networked world, the financial performance of a company hinges on the operational performance of its network. Yet these business-critical networks are increasingly vulnerable to malicious threats that imperil enterprise success. With its unsurpassed network visibility and real-time threat detection, the Arbor Peakflow X solution optimizes the performance and security of today’s largest enterprise and Internet data center networks – including those based on multiprotocol label switching (MPLS).

Image

Peakflow X constructs a system-wide view of enterprise and Internet data center networks, auto-learning host behaviors to determine who talks to whom – and how. It enables you to address a wide range of internal and external threats while maintaining business continuity. In addition to the real-time security information of Arbor’s Active Threat Feed (ATF) service, Peakflow X also integrates data from Arbor’s Active Threat Level Analysis System (ATLAS) – providing contextualized threat intelligence from a global and local perspective.

A Cost-Effective Solution for Identifying and Stopping Threats and Improving Performance

Peakflow X provides a cost-effective approach to unparalleled macro- and micro-level network visibility by leveraging IP flow technology in existing network devices. It analyzes flow statistics to define normal network behavior. Then, in real time, its embedded Network Behavioral Analysis (NBA) technology identifies abnormal activity that can indicate a developing security attack long before its signature is created. To stop these threats, network security personnel can utilize Peakflow X features, such as:

  • Layer 2 Mitigation and Visibility: Quickly view where a host is connected to the network and stop threats at the source. Peakflow X also enables the auto-discovery of enterprise switches and elimination of troubled hosts from the network without affecting other hosts.
  • Real-Time Risk Assessment: Quickly pinpoint the biggest threats on your network by calculating a risk index that identifies which hosts or users are involved in multiple activities.
  • Flexible Identity Tracking: In real time, view the actual user name of the IP address accessing your servers at that moment, along with a history of identity login/logoff times.

Built-In Application Intelligence

With its integrated Application Intelligence collector, Peakflow X extends its network-wide visibility up to the application layer – enabling you to understand the behavior of over 100 types of network applications and traffic, including Voice over IP (VoIP), peer-to-peer (P2P) and HTTP/HTTPS. This micro-level visibility helps you maximize the performance, reliability and security of key applications; reduce cost and downtime by quickly resolving network issues; avoid over-provisioning your network to meet application demands; and expand application usage across geographically dispersed networks without risking bandwidth or security issues.

A Single Solution for Network Security and Operations Teams

With its unmatched network monitoring, Peakflow X offers a single solution for both network security and operations personnel.

Network security teams can use Peakflow X to:

  • Track down and eradicate phishing solicitations.
  • Harden networks against future threats.
  • Control user access and eliminate insider misuse.

Network operations teams can use Peakflow X to:

  • Improve network performance, traffic engineering and capacity planning.
  • Determine if application performance anomalies or misconfigurations are causing network problems.
  • Identify who consumes costly network bandwidth.
  • Reduce the cost, complexity and time of problem resolution.
  • Successfully expand and manage network topography and application installations.

Ease the Burden of Meeting Industry Compliance

Many enterprises and data center operators struggle with meeting the internal use policies or industry and government regulations being imposed on them (e.g., PCI DSS, HIPAA, NERC CIP, EU Data Retention Directive, ITIL, ISO 17799, etc.). The robust real-time and historical reporting capabilities of Peakflow X track all network conversations, thereby easing the burden associated with gaining compliance. In addition, extensible flow storage capabilities allow you to leverage the storage area networks (SANs) that exist in many of today’s enterprises and data centers to archive virtually limitless amounts of raw IP flow-based data for forensic analysis and compliance monitoring.

Leverage the Benefits of Virtualization

Cloud computing, virtualization and infrastructure — as-a-service: these are all the latest industry buzz words that promise enterprises and service providers reduced capital and operating expenses, improved efficiency, service agility and business continuity. Peakflow X Virtual is a version of the Peakflow X solution that runs on VMware ’s ESX and ESXi hypervisors. Peakflow X Virtual offers many of the same network visibility and security features as the appliance-based solution, but in a more cost-efficient manner by leveraging the benefits of a virtualized environment.

A Platform for Managed Security Services

If you are a network or hosting service provider, you are undoubtedly facing increased competition and diminishing revenue due to the commoditization of network and hosting services. Therefore, it is imperative that you offer more IP-based services that can create new revenue opportunities for your company. Via IP flow analysis of PE or CPE edge routers, Peakflow X complements existing IP VPN- and CPE-based managed security solutions. With Peakflow X, you can:

  • Provide your IP VPN customers visibility and security services with customized portals.
  • Complement your existing CPE-based security services by utilizing the NBA capabilities in Peakflow X to ensure that customer internal use policies are met and detect threats that are unknown to your signature-based security solutions, such as IDS/IPS or anti-virus.
  • Leverage the historical reporting and offloading of raw IP flow data for post-event forensics services.
  • Deliver anti-botnet or data loss prevention services.
  • Offer a full suite of regulatory compliance services by utilizing the pervasive visibility and reporting features that provide the ability to audit all network and data center communications and security violations.

To make your Peakflow X-based managed security service even more profitable, you can deploy Peakflow X Virtual to take advantage of the benefits of virtualization and cloud computing that enable you to easily add new customers and reduce the operational expenses associated with your Peakflow X-based managed security service.