Cisco Stealthwatch
Combining the EndaceProbe Analytics Platform™ with Cisco Stealthwatch® delivers powerful security threat detection, network and application performance monitoring with one-click access to rich forensic evidence.
Stealthwatch can be integrated with the Network History recorded by EndaceProbes, enabling SecOps and NetOps analysts to click on alerts to go directly to the related packet-level Network History in EndaceVisionTM, streamlining and accelerating issue investigation and resolution.
EndaceVision lets SecOps and NetOps teams analyze traffic using a range of data visualization tools and view decoded packet data in EndacePackets, the built-in packet decode tool or download for analysis in Wireshark®
Integrating Cisco Stealthwatch and EndaceProbes
Integrating Stealthwatch with EndaceProbes lets analysts jump directly from Stealthwatch alerts to examine the underlying packet-level evidence recorded by the EndaceProbes on your network.
For instructions on enabling this integration, login to the Endace Support Portal. If you don't have a Support Portal account, you can request a Support Portal account here.
How about a Demo?
Find out how to integrate Network History with Cisco Stealthwatch for fast, accurate, investigation of security and network alerts.