cancel
Showing results for 
Search instead for 
Did you mean: 

StealthWatch

StealthWatch

Alexandr_P
Valued Contributor
Hello, all!

Can you tell me, please, what analog of Cisco's StealthWatch we have?

Thank you!
8 REPLIES 8

Alexandr_P
Valued Contributor
Another question is - how SIEM integrate with NetSight?

Sorry, but I have little knowledge about Extreme's SIEM.

Thank you!

Zdeněk_Pala
Extreme Employee
Hi. Extreme SIEM is able to do the same = behavioral analysis based on flows. In advance SIEM is able to correlate flows with logs from firewall and antivirus and more => much better from the false positive point of view. Regards Z.
Regards Zdeněk Pala

We can use flow based switches = does have unsampled NetFlow on each and every port without performance degradation.

We can use X460-G2 = does have ipfix support

We can use any other Extreme Switch with SFLOW support.

Extreme SIEM does support sflow, netflow, jflow, ipfix, cflowd, qflow, raw data...
Regards Zdeněk Pala

Hello, Pala!

In Cisco switches work with StealthWatch (Bundle Catalyst 3650, Lancope StealthWatch).
Where switches work with StealthWatch Appliance as a sensor.
We have to do this with IPFIX on our switches G2?
Or there is other way?

Thank you!
GTM-P2G8KFN