NetScout provides a comprehensive range of products and capabilities that support the continuous capture and recording of all network traffic for deep-dive, back-in-time, forensic analysis activities. Supporting high-speed, zero packet-loss packet capture and recording and seamless packet analysis activities, NetScout’s nGenius and Sniffer solutions enables IT technicians to perform granular and highly optimized packet data mining to fully exploit the valuable information contained within network packets. Packet level analysis provides a powerful view from data contained within IP network packets that reveals granular information about user sessions, network and application interactions and response time and latency metrics.
Optimized for use by expert users, nGenius and Sniffer solutions support several key network forensic use cases including:
- Network and application deep-dive analysis – enabling the examination and assessment of native packet flows to understand specific application transactions or reconstruct a user session
- Packet-level forensic analysis enabling deep-packet visibility and granular back-in time historical analysis to resolve the most difficult application and service delivery problems
- CyberSecurity Incident response – enabling a understanding of the complete context of a user session to identify entry point, path and effected application and network elements.
Leveraging network traffic collected by the nGenius InfiniStream appliance deployed on critical network links, deep-dive network forensic activities can be performed within a number of NetScout products including:
- nGeniusONE Unified Performance Management platform
- nGenius Service Assurance Solution
- Sniffer Analysis products
To streamline and accelerate analysis activities, and reduce related network traffic impact, all packet analysis, mining and decode of captured traffic is performed locally within the nGenius InfiniStream appliance.
Key network forensic capabilities provided by nGenius and Sniffer products include:
- View and analyze native packet data for unrestricted data mining to perform detailed forensic analysis on network traffic
- Quickly and intuitively search through Terabytes of packet and statistical history
- Drill down into the specific user sessions or conversations
- Focus down to micro-second granularity and launch a packet decode for the most subtle problems
- Automated indexing and linking of relevant data with a thumbnail overview of traffic over time
- Visualize which packet and statistical time slices are available for retrieval
- Automatically launch packet decodes for detailed protocol and packet analysis
Products