Share

Related Stories

  • Look After Your SCADA Heart
    Critical national infrastructures such as the National Grid, water and other utility networks have SCADA technology at their heart, but how are these systems protected against hacker, malware and terrorist attacks? Steve Gold spoke to the major players in this important, but little-understood, side of the security industry
  • Persistent and Evasive Attacks Uncovered
    APTs – and more recently AETs – have divided industry experts in opinion and often been used to scaremonger. Davey Winder reveals the truth behind the APT and AET headlines
    Members' Content
  • Please Feed the Bear: The Growing Russian Infosec Market
    The Russian information security market is thriving, fueled by a rise in cybercrime. Some foreign security firms, however, have found it difficult to break into the market. Fred Donovan explains why
  • New DDoS defence technology launched
    Simwood has launched a defence technology that it claims can be used defend against distributed denial of service (DDoS) attacks.
  • PCI update: Your guide to Version 2.0
    The PCI Security Standards Council released the latest version of its standards in October 2010. Stephen Pritchard looks at how businesses can bring their operations in line with the new requirements

Top 5 Stories

News

Infosecurity Europe: firms get access to military grade forensics

01 May 2009

It's not often that firms supplying specialist network forensics technology to US government agencies are allowed to supply their systems software to civilian companies, especially outside of the United States, but Utah-based Solera Networks has achieved this.

Talking with Infosecurity at the Infosecurity Show in London this week, Alan Hall, the firm's marketing director - who has had several years of experience with Novell - said that his firm's technology - which is used by a variety of government agencies - allows IT managers to go beyond deep level packet inspection by logging all aspects of network traffic on both physical and virtual systems.

The resultant data, he says, can then be analysed at leisure and allows IT managers to forensically analyse how network incidents - such as unauthorised intrusions - have taken place.

And, presumably, stop such an event happening again.

Solera's deep packet capture, as it is known, is billed as streaming network data at much faster speeds than other companies.

But the appliance technology is not all about hacking forensic investigations, as it can also be used to analyse why a network element is not performing as it should be and benchmarking the network performance for future comparison.

The DS appliance can also be used, says Hall, to set up network triggers and capture the data when certain events occur.

When an event triggers, Solera's technology can send email notifications and SNMP traps.

Once a particular attack or signature has been identified, every packet comprising that event is available, both in raw packet form or accurately rendered in its original format, he explained.

Hall went on to say that the Solera DS appliances can be deployed in both physically and virtual environments, as well as installed on a closely integrated basis with existing network systems, using a set of programming APIs.

http://www.soleranetworks.com

 

 

This article is featured in:
Data Loss  • Internet and Network Security • IT Forensics

 

Comment on this article

You must be registered and logged in to leave a comment about this article.