Wednesday, October 20, 2021

Best tool for baselining network activity?

Best tool for baselining network activity? As part of a project on security I'm asked as the network tool to find a decent product for this purpose. These are the players I've found. Palo Alto and Aruba/HP shop.

Solarwinds NetflowSplunk feeding into a log aggregatorAuvikDatadog

Task: Baseline and analyze network activity over a period of months to determine behavioral patterns so that normal, legitimate activity can be more easily distinguished from anomalous network activity (e.g., normal vs anomalous account activity). Keep cost in mind.

Any experience with these, recommendations, or tips? Thanks.



No comments:

Post a Comment