WildPackets
Home > Solutions > Real World Applications > Network Forensics Overview

Network Forensics Overview

Analyze Hours or Even Days of Network Traffic with WildPackets Network Forensics Solutions

  • Analyze traffic events that occurred hours or even days ago.
  • Capture terabytes of data for analysis.
  • Track down hard-to-find intermittent network problems on wired or wireless networks.
  • Troubleshoot or verify business transactions in busy data centers.
  • Analyze security threats and attacks.
  • Take advantage of the same powerful features WildPackets offers for real-time troubleshooting.
Security Attack Analysis HR and Policy Compliance Transaction Analysis Network Troubleshooting
  • Detect and characterize attacks—whether they’ve just begun or occurred days ago
  • Apply filters to isolate malicious behavior
  • Equip your network IT team with a powerful incident response tool
more info »
  • Detect and analyze violations of HR policies or industry regulations
  • Support compliance efforts for SOX, Gramm-Leach-Bliley, HIPAA, and other industry regulations
  • Collect evidence when breaches occur
more info »
  • Create the ultimate audit trail for business transactions—not just server activity but the business transactions enacted by clients and servers
  • Troubleshoot the transaction problems that server logs miss
more info »
  • Capture and analyze intermittent network problems
  • Troubleshoot problems that occurred hours or days ago
  • Find the patterns that ad hoc, reactive troubleshooting will miss
more info »

Find it Faster with WildPackets' Integrated Solution

When you're searching through gigabytes or terabytes of data, these unique WildPackets features make the difference between a quick, convenient search and a laborious, time-consuming search involving multiple tools and large transfers of data.

  • Support for frame decodes during capture
  • Support for on-the-fly capture filters
  • Support for Selected Related filters
  • Support for name table entry and aliases
  • Support for SAN for storage requirements greater than 5 TB on a single appliance
  • Support for multiple simultaneous capture windows
  • Ability to sort by number of problems, top talkers, most delays, etc.
  • Ability to organize flows by application type
  • Ability to organize flows by client/server pair
  • Ability to capture from multiple simultaneous NICs
  • Ability to capture from 802.11 wireless LANs
  • Ability to store packets in a MySQL database
  • Conversation Map at the point of capture
  • Built-in Experts for recognizing security attacks such as Gin, Jolt, Land, Oversize IP, and WinNuke

While other network forensics products force you to capture with one product, then transfer gigabytes or terabytes of data to another product for analysis, the WildPackets OmniPeek Product Family enables you to analyze data at the point of capture, and eliminates the need for large data transfers that consume time and bandwidth. By utilizing Intelligent Data Transport, OmniPeek minimizes traffic loads on the network — and lets you find the data you're looking for, quickly and easily.

The WildPackets Network Forensics solution features the OmniPeek Product Family with OmniEngine Enterprise running on an Omnipliance data recorder. Data can be analyzed within the Omnipliance. Customers do not need to transfer data to another product for analysis.

For more details or to arrange a demo, please call (925) 937-3200 or write to sales@wildpackets.com.

Copyright © 2008 WildPackets, Inc
All registered and unregistered trademarks are the sole property of their respective owners