Friday, November 6, 2020

identifying what is actually using CDN traffic

we manage wan and internet connectivity for a number of clients, and as im sure plenty on this form have ran into before, we see lots of traffic from CDN networks like Akamai. when ever there is congestion on a link and we check netflow (we use solarwinds), theres a pretty good chance there will be a good amount of traffic going to CDNs. Were well aware that CDNs are hosting all sorts of content. But ultimately when there is high bandwidth usage and the flows are full of Akamai destinations, the clients start asking us to help identify what the traffic is. Unfortunately, i have yet to find a good way to really help clients identify the actual use of this traffic, such as being able to say "oh thats adobe udates" or "thats facebook traffic" oh what ever may be getting hosted by akamai since its all encrypted and it all just shows up in net flow as what ever CDN.

the only thing i have really come across is plixer having some sort of solution that claims to be able to analyze traffic to determine what its atually for. is there any other methods, tools or solutions out there for identifying the actual CDN traffic?



No comments:

Post a Comment