Network Visibility Solution
You can't defend against what you can't see: security depends on visibility
To prevent cyberattacks, one must first know what abnormal changes in network traffic look like. Take an airport for example. An airport is equipped with many X-ray machines that inspect luggage and expose any hidden contraband. But if any luggage manages to bypass the X-ray inspection stations, having the best X-ray equipment in the world won't do much good. If we replace luggage with network packets and X-ray inspection devices with intrusion detection and prevention systems (IPS/IDS), then network visibility is the mechanism for ensuring that “all luggage passes through the X-ray inspection stations.” Visibility is without a doubt the cornerstone of security.
NPB visibility solution
NetFlow is a network packet exchange protocol introduced by Cisco. The protocol was first used to accelerate the exchange of data between network devices. It can also simultaneously implement the measurement and tracking of IP data flow during high-speed switching. Over the years, the data acceleration function of NetFlow was gradually taken over by dedicated application-specific integrated circuit (ASIC) chips, thus increasing efficiency. Netflow’s ability to measure and track IP flow information through network devices has matured and it is now the industry standard for IP traffic analysis, statistics and billing.
Business organizations faced with cyber threats need software that can receive and analyze NetFlow data. Analysis of NetFlow data enables
- More detailed traffic information
- Identification of abnormal network behavior such as distributed denial-of-service (DDoS) attacks