cancel
Showing results forĀ 
Search instead forĀ 
Did you mean:Ā 

Extreme Analytics providing applicaiton visibility not forensics

Extreme Analytics providing applicaiton visibility not forensics

Anonymous
Not applicable
This is a problem I come up with quite often, where users are trying to use Extreme Analytics more as something like a forensics tool rather then application visibility, and become concerned its not delivering on their expectations.

Have been trying to put some words to explain this, and some of the differences that you might expect between the two. One example is a user might being trying to get application bandwidth utilization on a per port bases i.e. know exactly what percentages of what applications, say a firewall port, might be being using. I've got as far as this:

Extreme Analytics provides application visibility, i.e. what applications are running on the network, whoā€™s using what and when and the response times for each. It allows the determination of usage patterns and root cause analysis.

Some examples of this are:

Ā· Granular insights into who is using what application, when, and where
Ā· Understand usage patterns to optimise applications
Ā· Invest only in applications that are being used
Ā· Analytics that do not slow down the network with application telemetry
Ā· Prevent shadow IT and block unwanted applications

What itā€™s not is a forensic tool, so you canā€™t for example....

Was wondering if anyone in the community could help give some advice in what those distinctions are, so that it is easier for me to layout those boundaries and complete that sentence as full as I can.

Many thanks in advance

2 REPLIES 2

Mike_Thomas
Extreme Employee
Hi Martin, I sit outside of the sales process. So I do not have much to add about how to best pitch the product and it's deliverables other than that you are correct about the nature of analytics. In the long run, it will not hold onto much in the way of forensics.
In the short run, it will hold onto application flows and associated fingerprinted application information based on the amount of RAM in the appliance. So the amount of data reaching the appliance and the amount of RAM may allow one to look at flows stored in its cache a bit longer.

Anonymous
Not applicable
Thanks Mike
GTM-P2G8KFN