WANGUARD 5.2 User Manual & Administrator's Guide
IP Traffic Monitoring, Anomalies Detection & DDoS Mitigation
with WANGUARD
Unforeseen trafc paterns afect user satsfacton, pressure over-subscripton plans, and clog costly transit
links. Providing high performance and reliable network services is central to the success of today's organizatons. As
the business cost of network malfunctons contnues to increase, rapid identfcaton and mitgaton of threats to
network performance and reliability becomes critcal in order to meet expected SLAs and network availability
requirements. Such threats can include propagatng worms, botnet atacks, Denial Of Service atacks ( SYN food,
UDP food etc.), misuse of services, and data trafc interfering with real-tme trafc. WANGUARD's network-wide
surveillance of complex, multlayer, switched and routed environments together with its unique combinaton of
features is specifcally designed to meet the challenge of pin-pointng and resolving any such threats.
WANGUARD Key Features & Benefits
●
DDOS DETECTION & MITIGATION – It contains an innovatve anomaly detecton engine that you can
use to defne trafc policies, detect atacks and flter them.
●
POWERFUL ALERTING – You can automate responses to threats using pre-defned, extensible actons:
send emails, announce prefxes in BGP, null-routng, send SNMP traps etc.
●
DETAILED ATTACK INFORMATION – View atack details with atackers and packet samples. Atack
reports can be emailed automatcally to you or to your customers.
●
TRAFFIC MONITORING – Supports the latest trafc monitoring technologies: 10 Gbps packet snifng,
NetFlow v5, v7 and v9, sFlow, IPFIX, NetStream, jFlow and more.
●
FULLY-FEATURED CONSOLE – Consolidated management through a single, interactve and confgurable
web portal with custom Dashboards and user Roles.
●
COMPLEX ANALYTICS – Provides the most complex Reports with aggregated data for hosts,
departments, interfaces, applicatons, ports, protocols etc.
●
REAL-TIME REPORTING – The fastest soluton on the market with an accuracy of just 5 seconds. The
high accuracy makes trafc graphs appear animated.
●
HISTORICAL REPORTING – You view the last half hour to last 10 years Reports, and also select any
custom tme period. Supports 95th percentle.
●
SCHEDULED REPORTING – You can generate Scheduled Reports and email them to you or to your
customers at preconfgured intervals of tme.
●
NETFLOW ANALYZER – Provides a fully featured NetFlow Analyzer and Collector. Also works with
sFlow, jFlow, cFlow, NetStream and IPFIX.
●
PACKET SNIFFER – A distributed Packet Snifer can save packet dumps from diferent parts of your
network. Access the dumps from a Wireshark-like web interface.
●
ADVANCED CONFIGURATION – You can fne-tune most parameters, from the accuracy of IP graphs and
authentcaton methods to the data retenton intervals.
- 4 -
Summary of Contents for Wanguard 5.2
Page 1: ......