Top Five Things You Should Know About Network Forensics

Email     |     Share  
1 | 2 | 3 | 4 | 5 | 6 | 7
Next Top Five Things You Should Know About Network Forensics-6 Next

What you need to implement network forensics

Three essential capabilities are required to properly facilitate network forensics:

  • Data Capture and Recording: The ability to capture and store multiple terabytes of data from high-throughput networks, including 10G and even 40G, without dropping or missing any packets.
  • Data Discovery: Once data are recorded on the storage media, the solution should provide a means of filtering particular items of interest, for example, by IP address, application, context, etc. IT engineers rely on discovery tools for sifting through terabytes of data to find specific network conversations or individual packets in a timely fashion.
  • Data Analysis: Automated analysis, including expert analysis that explains the context of network events, helps IT engineers quickly identify anomalous or otherwise significant network events. Once these are identified, they can go in and make the appropriate fix.

Network forensics is the process of capturing, storing and analyzing activity that takes place on a computer network. While it’s often associated with solving network security breaches, the practice can also help solve far more common network issues, like spikes in utilization, drops in VoIP call quality, identifying rogue activity, and improving both network and application performance.

In this slideshow, WildPackets, provider of network and application performance analysis solutions, explains the basics of network forensics and how it can be used to improve network performance at all organizations.

 

Related Topics : Unisys, Stimulus Package, Security Breaches, Symantec, Electronic Surveillance

 
More Slideshows

PAM PAM Solutions: Critical to Securing Privileged Access

To protect the company from those insiders who abuse their privileged access and from hackers with stolen credentials, many companies are turning to a privileged access management (PAM) solution. ...  More >>

Fake news How Can We Fix the Fake News Problem?

Is fake news a security issue? Some say yes, as it can be used as a social engineering tool to spread disinformation and conceivably to get unsuspecting users to click on malicious links. ...  More >>

blockchain The World According to Blockchain

Blockchain comes with many costs and is surrounded by confusion. Here, we examine realistic use cases, drawbacks and the potential of blockchain. ...  More >>

Subscribe to our Newsletters

Sign up now and get the best business technology insights direct to your inbox.