All Security Operations

How to Detect Flame: Host Reputation

The Flame threat is basically a virtual, digitized spy tool that does what a human spy would do: recording phone calls, snapping photos, and siphoning...

A Firewall Monitoring Tool You Didn’t Know Existed: NetFlow and IPFIX

IT professionals have been looking for better ways to monitor and store firewall logs for years. Properly handled, firewall events can give insight into...

Zenoss NetFlow Zenpack

Have you been looking for a Zenpack that would allow seamless integration of Zenoss and the NetFlow tool Scrutinizer? Well you have come to...

Application Performance Management Done Right

What is Application Performance Management (APM)? Like a lot of good questions, it depends on your business needs.  What is the goal of an ideal...

NetFlow vs. sFlow for Network Monitoring and Security: The Final Say

We’ve blogged about the differences between NetFlow and sFlow before but this debate continues to come up often enough and has been going on...

Barracuda IPFIX Support: Network Threat Detection

Earlier this year Barracuda Networks enabled IPFIX support on their NG Series firewalls. This export provides great visibility into your network traffic as well...

Juniper XGS 5000 IPFIX Support: It’s really NetFlow

I got this google alert the other day and it caught my attention because it talked about configuring IPFIX and the link went to...

Astaro IPFIX Reporting: Astaro NetFlow Support

Apparently some of our customers are calling in asking for Astaro IPFIX Reporting support.  It’s always fun to work with a new flow vendor...

SIEM NetFlow Support: Don’t Sell Yourself Short

This is a conversation I find myself having more and more lately so I thought it would make sense to discuss in detail just...

Packet Length Report using NetFlow / IPFIX

We figured out how to report on packet length with NetFlow.  All you have to do is enter “match ipv4 length total” in the...