Anomalous Traffic Detection

181340

Micro Focus Micro Focus Community

Micro Focus | Micro Focus Community

The Anomalous Traffic Detection use case helps you identify sudden spikes in network traffic so that you can detect potential malicious activity. Sudden spikes in traffic can be caused by scheduled backups or virus scanner updates inside your LAN.
775 downloads

Description

The Anomalous Traffic Detection use case helps you identify sudden spikes in network traffic so that you can detect potential malicious activity. Sudden spikes in traffic can be caused by scheduled backups or virus scanner updates inside your LAN. However, these spikes might also be caused by something different, such as malware outbreaks, rogue FTP servers, peer to peer traffic or hacking attempts. Using the ESM monitoring and investigation tools, you can observe these peaks in network activity and Identify/respond to threats. The Anomalous Traffic Detection use case provides a dashboard for routine monitoring to see what type of abnormal activity is taking place. You can monitor sudden spikes in incoming and outgoing traffic permitted through a firewall, and investigate further to remediate potential threats. ArcSight Connectors supported:

  • Check Point FW-1
  • Cisco PIX Firewall
  • Cisco PIX/ASA Syslog, version 8.5, 8.6
  • F5 BIG-IP Application Security Manager
  • Juniper Networks (Altor Networks Virtual Firewall)
  • Juniper Network Security Manager (NetScreen)
  • Juniper Network Security Manager Syslog, version 2011.4
  • Juniper Networks Firewall and VPN
  • Lucent Managed Firewall
  • McAfee Desktop Firewall
  • Secure Computing Gauntlet Firewall/ VPN

Releases

Release
Size
Date
Anomalous_Traffic_Detection_1.0.0.1 1.0.0.1
337.1 KB
  |  
Aug 17, 2018
More info Less info
Product Compatibility
ESM
Version 6.8 · 6.9.1 · 6.11.0
Version 7.0
Release Notes

  Micro Focus rebranding changes  

Languages
English
Anomalous Traffic Detection 1.0
337.2 KB
  |  
Aug 19, 2015
More info Less info
Product Compatibility
ESM
Version 6.8
Release Notes

Initial Version.

Languages
English

Resources

Unsubscribe from notifications

You are receiving release updates for this item because you have subscribed to the following products:
If you unsubscribe, you will no longer receive any notifications for these products.
Tip: to update your subscription preferences, go to Manage Subscriptions from your Dashboard, uncheck the products you no longer want to receive notifications for, and click 'Save'.
Your browser is not supported!

Please upgrade to one of the following broswers: Internet Explorer 11 (or greater) or the latest version of Chrome or Firefox