Flow Analytics and Internet Threats

Across hundreds of flow exporting routers and switches, Flow Analytics™ delivers on:
Top conversations, top applications, top source and destination hosts by bytes, top source and destination hosts by flows, total number of unique hosts, the total number of unique applications, internal threats and several other informative statistics

The NBA portion of Flow Analytics™ delivers on:
Which assets are under attack? What threats are being missed? Users which may not be following corporate policy. Helpful information to determine if the business is in compliance with regulations. Fast searching through massive amounts of data. Monitoring to ensure that the existing infrastructure investments are adequate. Details so that you can target areas to improve the security posture.

Moderators: scottr, Moderator Team

Anyone seeing Internet threats violations?

yes
3
75%
no
1
25%
 
Total votes : 4

Flow Analytics and Internet Threats

Postby tomp » Wed Dec 10, 2008 1:43 pm

Today I was looking at the Internet threats monitor from my Flow Analytics and I noticed that I had 14 IPs from the list scanning one of my DNS servers.

This algorithm often goes on for several days or even weeks before anything shows up. Has anyone else seen alarms from this Flow Analytics algorithm?

-Tom
User avatar
tomp
Site Admin
 
Posts: 289
Joined: Wed Jul 27, 2005 9:53 am
Location: Sunny Sanford Maine

Return to Flow Analytics

Who is online

Users browsing this forum: No registered users and 0 guests

cron

Who is online

In total there are 0 users online :: 0 registered, 0 hidden and 0 guests (based on users active over the past 5 minutes)
Most users ever online was 60 on Thu Jun 25, 2009 9:07 am

Users browsing this forum: No registered users and 0 guests