ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ืœืื—ืจื•ื ื” ื ื™ืชืŸ ืœืžืฆื•ื ื‘ืื™ื ื˜ืจื ื˜ ื›ืžื•ืช ืขืฆื•ืžื” ืฉืœ ื—ื•ืžืจื™ื ื‘ื ื•ืฉื. ื ื™ืชื•ื— ืชืขื‘ื•ืจื” ื‘ื”ื™ืงืฃ ื”ืจืฉืช. ื™ื—ื“ ืขื ื–ืืช, ืžืฉื•ื ืžื” ื›ื•ืœื ืฉื›ื—ื• ืœื’ืžืจื™ ื ื™ืชื•ื— ืชื ื•ืขื” ืžืงื•ืžื™, ื•ื–ื” ืœื ืคื—ื•ืช ื—ืฉื•ื‘. ืžืืžืจ ื–ื” ืžืชื™ื™ื—ืก ื‘ื“ื™ื•ืง ืœื ื•ืฉื ื–ื”. ืœื“ื•ื’ืžื” Flowmon Networks ื ื–ื›ื•ืจ ืืช Netflow ื”ื™ืฉื ื” ื•ื”ื˜ื•ื‘ื” (ื•ื”ื—ืœื•ืคื•ืช ืฉืœื”), ื ืกืชื›ืœ ืขืœ ืžืงืจื™ื ืžืขื ื™ื™ื ื™ื, ื—ืจื™ื’ื•ืช ืืคืฉืจื™ื•ืช ื‘ืจืฉืช ื•ื ื’ืœื” ืืช ื™ืชืจื•ื ื•ืช ื”ืคืชืจื•ืŸ ื›ืืฉืจ ื›ืœ ื”ืจืฉืช ืคื•ืขืœืช ื›ื—ื™ื™ืฉืŸ ื™ื—ื™ื“. ื•ื”ื›ื™ ื—ืฉื•ื‘, ื ื™ืชืŸ ืœื‘ืฆืข ื ื™ืชื•ื— ื›ื–ื” ืฉืœ ืชืขื‘ื•ืจื” ืžืงื•ืžื™ืช ืœื’ืžืจื™ ื‘ื—ื™ื ื, ื‘ืžืกื’ืจืช ืจื™ืฉื™ื•ืŸ ื ื™ืกื™ื•ืŸ (ื™ืžื™ 45). ืื ื”ื ื•ืฉื ืžืขื ื™ื™ืŸ ืื•ืชืš, ื‘ืจื•ืš ื”ื‘ื ืœื—ืชื•ืœ. ืื ืืชื” ืขืฆืœืŸ ืžื›ื“ื™ ืœืงืจื•ื, ืื–, ื‘ืžื‘ื˜ ืงื“ื™ืžื”, ืืชื” ื™ื›ื•ืœ ืœื”ื™ืจืฉื ืกืžื™ื ืจ ืžืงื•ื•ืŸ ืงืจื•ื‘, ืฉื ื ืฆื™ื’ ื•ื ืกืคืจ ืœื›ื ื”ื›ืœ (ืชื•ื›ืœื• ื’ื ืœืœืžื•ื“ ืฉื ืขืœ ื”ื“ืจื›ืช ืžื•ืฆืจื™ื ืงืจื•ื‘ื™ื).

ืžื”ื™ Flowmon Networks?

ืงื•ื“ื ื›ืœ, Flowmon ื”ื™ื ืกืคืงื™ืช IT ืื™ืจื•ืคืื™ืช. ื”ื—ื‘ืจื” ื”ื™ื ืฆ'ื›ื™ืช, ืขื ืžื˜ื” ื‘ื‘ืจื ื• (ื ื•ืฉื ื”ืกื ืงืฆื™ื•ืช ืืคื™ืœื• ืœื ืžื•ืขืœื”). ื‘ืžืชื›ื•ื ืชื” ื”ื ื•ื›ื—ื™ืช, ื”ื—ื‘ืจื” ื ืžืฆืืช ื‘ืฉื•ืง ืžืฉื ืช 2007. ื‘ืขื‘ืจ ื–ื” ื”ื™ื” ืžื•ื›ืจ ืชื—ืช ื”ืžื•ืชื’ Invea-Tech. ืื– ื‘ืกืš ื”ื›ืœ, ื›ืžืขื˜ 20 ืฉื ื” ื”ื•ืฉืงืขื• ื‘ืคื™ืชื•ื— ืžื•ืฆืจื™ื ื•ืคืชืจื•ื ื•ืช.

Flowmon ืžืžื•ืงืžืช ื›ืžื•ืชื’ A. ืžืคืชื—ืช ืคืชืจื•ื ื•ืช ืคืจื™ืžื™ื•ื ืœืœืงื•ื—ื•ืช ืืจื’ื•ื ื™ื™ื ื•ืžื•ื›ืจ ื‘ืชื™ื‘ื•ืช Gartner ืœื ื™ื˜ื•ืจ ื•ืื‘ื—ื•ืŸ ื‘ื™ืฆื•ืขื™ ืจืฉืช (NPMD). ื™ืชืจื” ืžื›ืš, ื‘ืื•ืคืŸ ืžืขื ื™ื™ืŸ, ืžื›ืœ ื”ื—ื‘ืจื•ืช ื‘ื“ื•ื—, Flowmon ื”ื™ื ื”ืกืคืงื™ืช ื”ื™ื—ื™ื“ื” ืฉืฆื•ื™ื ื” ืขืœ ื™ื“ื™ ื’ืจื˜ื ืจ ื›ื™ืฆืจื ื™ืช ืฉืœ ืคืชืจื•ื ื•ืช ื”ืŸ ืœื ื™ื˜ื•ืจ ืจืฉืช ื•ื”ืŸ ืœื”ื’ื ืช ืžื™ื“ืข (Network Behavior Analysis). ื–ื” ืขื“ื™ื™ืŸ ืœื ืชื•ืคืก ืืช ื”ืžืงื•ื ื”ืจืืฉื•ืŸ, ืื‘ืœ ื‘ื’ืœืœ ื–ื” ื”ื•ื ืœื ืขื•ืžื“ ื›ืžื• ื›ื ืฃ ื‘ื•ืื™ื ื’.

ืื™ืœื• ื‘ืขื™ื•ืช ื”ืžื•ืฆืจ ืคื•ืชืจ?

ื‘ืขื•ืœื, ืื ื• ื™ื›ื•ืœื™ื ืœื”ื‘ื—ื™ืŸ ื‘ืžืื’ืจ ื”ืžืฉื™ืžื•ืช ื”ื‘ื ืฉื ืคืชืจ ืขืœ ื™ื“ื™ ืžื•ืฆืจื™ ื”ื—ื‘ืจื”:

  1. ื”ื’ื‘ืจืช ื”ื™ืฆื™ื‘ื•ืช ืฉืœ ื”ืจืฉืช, ื›ืžื• ื’ื ืžืฉืื‘ื™ ื”ืจืฉืช, ืขืœ ื™ื“ื™ ืžื–ืขื•ืจ ื–ืžืŸ ื”ื”ืฉื‘ืชื” ื•ื—ื•ืกืจ ื”ื–ืžื™ื ื•ืช ืฉืœื”ื;
  2. ื”ื’ื“ืœืช ื”ืจืžื” ื”ื›ื•ืœืœืช ืฉืœ ื‘ื™ืฆื•ืขื™ ื”ืจืฉืช;
  3. ื”ื’ื“ืœืช ื”ื™ืขื™ืœื•ืช ืฉืœ ื›ื•ื— ืื“ื ืื“ืžื™ื ื™ืกื˜ืจื˜ื™ื‘ื™ ื‘ืฉืœ:
    • ืฉื™ืžื•ืฉ ื‘ื›ืœื™ ื ื™ื˜ื•ืจ ืจืฉืช ื—ื“ืฉื ื™ื™ื ืžื•ื“ืจื ื™ื™ื ื”ืžื‘ื•ืกืกื™ื ืขืœ ืžื™ื“ืข ืขืœ ื–ืจื™ืžื•ืช IP;
    • ืžืชืŸ ื ื™ืชื•ื— ืžืคื•ืจื˜ ืœื’ื‘ื™ ืชืคืงื•ื“ ื•ืžืฆื‘ ื”ืจืฉืช - ืžืฉืชืžืฉื™ื ื•ื™ื™ืฉื•ืžื™ื ื”ืคื•ืขืœื™ื ื‘ืจืฉืช, ื ืชื•ื ื™ื ืžืฉื•ื“ืจื™ื, ืžืฉืื‘ื™ื ืžืงื™ื™ืžื™ื ืื™ื ื˜ืจืืงืฆื™ื”, ืฉื™ืจื•ืชื™ื ื•ืฆืžืชื™ื;
    • ืชื’ื•ื‘ื” ืœืื™ืจื•ืขื™ื ืœืคื ื™ ืฉื”ื ืงื•ืจื™ื, ื•ืœื ืœืื—ืจ ืฉืžืฉืชืžืฉื™ื ื•ืœืงื•ื—ื•ืช ืžืื‘ื“ื™ื ืฉื™ืจื•ืช;
    • ืฆืžืฆื•ื ื”ื–ืžืŸ ื•ื”ืžืฉืื‘ื™ื ื”ื ื“ืจืฉื™ื ืœื ื™ื”ื•ืœ ื”ืจืฉืช ื•ืชืฉืชื™ื•ืช ื”-IT;
    • ืคื™ืฉื•ื˜ ืžืฉื™ืžื•ืช ืคืชืจื•ืŸ ื‘ืขื™ื•ืช.
  4. ื”ื’ื‘ืจืช ืจืžืช ื”ืื‘ื˜ื—ื” ืฉืœ ื”ืจืฉืช ื•ืžืฉืื‘ื™ ื”ืžื™ื“ืข ืฉืœ ื”ืืจื’ื•ืŸ, ื‘ืืžืฆืขื•ืช ืฉื™ืžื•ืฉ ื‘ื˜ื›ื ื•ืœื•ื’ื™ื•ืช ืฉืื™ื ืŸ ื—ืชื•ืžื•ืช ืœื–ื™ื”ื•ื™ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื•ื–ื“ื•ื ื™ืช ื‘ืจืฉืช, ื•ื›ืŸ "ื”ืชืงืคื•ืช ื‘ื™ื•ื ืืคืก";
  5. ื”ื‘ื˜ื—ืช ื”ืจืžื” ื”ื ื“ืจืฉืช ืฉืœ SLA ืขื‘ื•ืจ ื™ื™ืฉื•ืžื™ ืจืฉืช ื•ืžืกื“ื™ ื ืชื•ื ื™ื.

ืชื™ืง ื”ืžื•ืฆืจื™ื ืฉืœ Flowmon Networks

ืขื›ืฉื™ื• ื‘ื•ืื• ื ืกืชื›ืœ ื™ืฉื™ืจื•ืช ืขืœ ืกืœ ื”ืžื•ืฆืจื™ื ืฉืœ Flowmon Networks ื•ื ื’ืœื” ืžื” ื‘ื“ื™ื•ืง ื”ื—ื‘ืจื” ืขื•ืฉื”. ื›ืคื™ ืฉืจื‘ื™ื ื›ื‘ืจ ื ื™ื—ืฉื• ืžื”ืฉื, ื”ื”ืชืžื—ื•ืช ื”ืขื™ืงืจื™ืช ื”ื™ื ื‘ืคืชืจื•ื ื•ืช ืœื ื™ื˜ื•ืจ ืชืขื‘ื•ืจื” ื–ืจื™ืžื”, ื‘ืชื•ืกืคืช ืžืกืคืจ ืžื•ื“ื•ืœื™ื ื ื•ืกืคื™ื ื”ืžืจื—ื™ื‘ื™ื ืืช ื”ืคื•ื ืงืฆื™ื•ื ืœื™ื•ืช ื”ื‘ืกื™ืกื™ืช.

ืœืžืขืฉื”, Flowmon ื™ื›ื•ืœื” ืœื”ื™ืงืจื ื—ื‘ืจื” ืฉืœ ืžื•ืฆืจ ืื—ื“, ืื• ืœื™ืชืจ ื“ื™ื•ืง, ืคืชืจื•ืŸ ืื—ื“. ื‘ื•ืื• ื ื‘ื™ืŸ ืื ื–ื” ื˜ื•ื‘ ืื• ืจืข.

ืœื™ื‘ืช ื”ืžืขืจื›ืช ื”ื™ื ื”ืืกืคืŸ, ื”ืื—ืจืื™ ืขืœ ืื™ืกื•ืฃ ื”ื ืชื•ื ื™ื ื‘ืืžืฆืขื•ืช ืคืจื•ื˜ื•ืงื•ืœื™ ื–ืจื™ืžื” ืฉื•ื ื™ื, ื›ื’ื•ืŸ NetFlow v5/v9, jFlow, sFlow, NetStream, IPFIX... ื–ื” ื“ื™ ื”ื’ื™ื•ื ื™ ืฉืขื‘ื•ืจ ื—ื‘ืจื” ืฉืื™ื ื” ืงืฉื•ืจื” ืœืืฃ ื™ืฆืจืŸ ืฆื™ื•ื“ ืจืฉืช, ื—ืฉื•ื‘ ืœื”ืฆื™ืข ืœืฉื•ืง ืžื•ืฆืจ ืื•ื ื™ื‘ืจืกืœื™ ืฉืื™ื ื• ืงืฉื•ืจ ืœืืฃ ืชืงืŸ ืื• ืคืจื•ื˜ื•ืงื•ืœ ืื—ื“.

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks
ืืกืคืŸ Flowmon

ื”ืืกืคืŸ ื–ืžื™ืŸ ื”ืŸ ื›ืฉืจืช ื—ื•ืžืจื” ื•ื”ืŸ ื›ืžื›ื•ื ื” ื•ื™ืจื˜ื•ืืœื™ืช (VMware, Hyper-V, KVM). ืื’ื‘, ืคืœื˜ืคื•ืจืžืช ื”ื—ื•ืžืจื” ืžื™ื•ืฉืžืช ืขืœ ืฉืจืชื™ DELL ืžื•ืชืืžื™ื ืื™ืฉื™ืช, ืžื” ืฉืžื‘ื˜ืœ ืื•ื˜ื•ืžื˜ื™ืช ืืช ืจื•ื‘ ื”ื‘ืขื™ื•ืช ื‘ืื—ืจื™ื•ืช ื•ื‘-RMA. ืจื›ื™ื‘ื™ ื”ื—ื•ืžืจื” ื”ืงื ื™ื™ื ื™ื™ื ื”ื™ื—ื™ื“ื™ื ื”ื ื›ืจื˜ื™ืกื™ ืœื›ื™ื“ืช ืชืขื‘ื•ืจื” FPGA ืฉืคื•ืชื—ื• ืขืœ ื™ื“ื™ ื—ื‘ืจืช ื‘ืช ืฉืœ Flowmon, ื”ืžืืคืฉืจื™ื ื ื™ื˜ื•ืจ ื‘ืžื”ื™ืจื•ื™ื•ืช ืฉืœ ืขื“ 100 Gbps.

ืื‘ืœ ืžื” ืœืขืฉื•ืช ืื ืฆื™ื•ื“ ืจืฉืช ืงื™ื™ื ืื™ื ื• ืžืกื•ื’ืœ ืœื™ื™ืฆืจ ื–ืจื™ืžื” ืื™ื›ื•ืชื™ืช? ืื• ืฉื”ืขื•ืžืก ืขืœ ื”ืฆื™ื•ื“ ื’ื‘ื•ื” ืžื“ื™? ืื™ืŸ ื‘ืขื™ื”:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks
Flowmon Prob

ื‘ืžืงืจื” ื–ื”, Flowmon Networks ืžืฆื™ืขื” ืœื”ืฉืชืžืฉ ื‘ื‘ื“ื™ืงื•ืช ืžืฉืœื” (Flowmon Probe), ื”ืžื—ื•ื‘ืจื•ืช ืœืจืฉืช ื“ืจืš ื™ืฆื™ืืช SPAN ืฉืœ ื”ืžืชื’ ืื• ื‘ืืžืฆืขื•ืช ืžืคืฆืœื™ TAP ืคืกื™ื‘ื™ื™ื.

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks
ืืคืฉืจื•ื™ื•ืช ื™ื™ืฉื•ื SPAN (ื™ืฆื™ืืช ืžืจืื”) ื•-TAP

ื‘ืžืงืจื” ื–ื”, ื”ืชืขื‘ื•ืจื” ื”ื’ื•ืœืžื™ืช ืฉืžื’ื™ืขื” ืœ-Flowmon Probe ืžื•ืžืจืช ืœ-IPFIX ืžื•ืจื—ื‘ ื”ืžื›ื™ืœ ื™ื•ืชืจ 240 ืžื“ื“ื™ื ืขื ืžื™ื“ืข. ืืžื ื ืคืจื•ื˜ื•ืงื•ืœ NetFlow ื”ืกื˜ื ื“ืจื˜ื™ ืฉื ื•ืฆืจ ืขืœ ื™ื“ื™ ืฆื™ื•ื“ ืจืฉืช ืžื›ื™ืœ ืœื ื™ื•ืชืจ ืž-80 ืžื“ื“ื™ื. ื–ื” ืžืืคืฉืจ ื ืจืื•ืช ืคืจื•ื˜ื•ืงื•ืœ ืœื ืจืง ื‘ืจืžื•ืช 3 ื•-4, ืืœื ื’ื ื‘ืจืžื” 7 ืœืคื™ ืžื•ื“ืœ ISO OSI. ื›ืชื•ืฆืื” ืžื›ืš, ืžื ื”ืœื™ ืจืฉืช ื™ื›ื•ืœื™ื ืœืคืงื— ืขืœ ืชืคืงื•ื“ื ืฉืœ ื™ื™ืฉื•ืžื™ื ื•ืคืจื•ื˜ื•ืงื•ืœื™ื ื›ื’ื•ืŸ ื“ื•ืืจ ืืœืงื˜ืจื•ื ื™, HTTP, DNS, SMB...

ืžื‘ื—ื™ื ื” ืงื•ื ืกืคื˜ื•ืืœื™ืช, ื”ืืจื›ื™ื˜ืงื˜ื•ืจื” ื”ืœื•ื’ื™ืช ืฉืœ ื”ืžืขืจื›ืช ื ืจืื™ืช ื›ืš:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื”ื—ืœืง ื”ืžืจื›ื–ื™ ืฉืœ ื›ืœ ื”"ืืงื•ืกื™ืกื˜ื" ืฉืœ Flowmon Networks ื”ื•ื ื”-Collector, ืฉืžืงื‘ืœ ืชืขื‘ื•ืจื” ืžืฆื™ื•ื“ ืจืฉืช ืงื™ื™ื ืื• ื‘ื“ื™ืงื•ืช ืžืฉืœื• (Probe). ืื‘ืœ ืขื‘ื•ืจ ืคืชืจื•ืŸ Enterprise, ืืกืคืงืช ืคื•ื ืงืฆื™ื•ื ืœื™ื•ืช ืจืง ืœื ื™ื˜ื•ืจ ืชืขื‘ื•ืจืช ืจืฉืช ืชื”ื™ื” ืคืฉื•ื˜ื” ืžื“ื™. ื’ื ืคืชืจื•ื ื•ืช ืงื•ื“ ืคืชื•ื— ื™ื›ื•ืœื™ื ืœืขืฉื•ืช ื–ืืช, ืื ื›ื™ ืœื ืขื ื‘ื™ืฆื•ืขื™ื ื›ืืœื”. ื”ืขืจืš ืฉืœ Flowmon ื”ื ืžื•ื“ื•ืœื™ื ื ื•ืกืคื™ื ื”ืžืจื—ื™ื‘ื™ื ืืช ื”ืคื•ื ืงืฆื™ื•ื ืœื™ื•ืช ื”ื‘ืกื™ืกื™ืช:

  • ืžื•ื“ื•ืœ ืื‘ื˜ื—ืช ื’ื™ืœื•ื™ ื—ืจื™ื’ื•ืช - ื–ื™ื”ื•ื™ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช, ืœืจื‘ื•ืช ื”ืชืงืคื•ืช ืฉืœ ื™ื•ื ืืคืก, ื‘ื”ืชื‘ืกืก ืขืœ ื ื™ืชื•ื— ื”ื™ื•ืจื™ืกื˜ื™ ืฉืœ ืชืขื‘ื•ืจื” ื•ืคืจื•ืคื™ืœ ืจืฉืช ื˜ื™ืคื•ืกื™;
  • ืžื•ื“ื•ืœ ื ื™ื˜ื•ืจ ื‘ื™ืฆื•ืขื™ ื™ื™ืฉื•ืžื™ื - ื ื™ื˜ื•ืจ ื‘ื™ืฆื•ืขื™ ื™ื™ืฉื•ืžื™ ืจืฉืช ืžื‘ืœื™ ืœื”ืชืงื™ืŸ "ืกื•ื›ื ื™ื" ื•ืœื”ืฉืคื™ืข ืขืœ ืžืขืจื›ื•ืช ื™ืขื“;
  • ืžื•ื“ื•ืœ ืžืงืœื™ื˜ ืชื ื•ืขื” โ€“ ื”ืงืœื˜ืช ืฉื‘ืจื™ ืชืขื‘ื•ืจืช ืจืฉืช ืขืœ ืคื™ ืžืขืจื›ืช ื›ืœืœื™ื ืžื•ื’ื“ืจื™ื ืžืจืืฉ ืื• ืขืœ ืคื™ ื˜ืจื™ื’ืจ ืžืžื•ื“ื•ืœ ADS, ืœื”ืžืฉืš ืคืชืจื•ืŸ ื‘ืขื™ื•ืช ื•/ืื• ื—ืงื™ืจื” ืฉืœ ืื™ืจื•ืขื™ ืื‘ื˜ื—ืช ืžื™ื“ืข;
  • ืžื•ื“ื•ืœ ื”ื’ื ืช DDoS โ€“ ื”ื’ื ื” ืขืœ ื”ื™ืงืฃ ื”ืจืฉืช ืžืคื ื™ ื”ืชืงืคื•ืช DoS/DDoS ืžื ื™ืขืช ืฉื™ืจื•ืช ื ืคื—ื™ื•ืช, ื›ื•ืœืœ ื”ืชืงืคื•ืช ืขืœ ื™ื™ืฉื•ืžื™ื (OSI L3/L4/L7).

ื‘ืžืืžืจ ื–ื”, ื ื‘ื—ืŸ ื›ื™ืฆื“ ื”ื›ืœ ืขื•ื‘ื“ ื‘ืฉื™ื“ื•ืจ ื—ื™ ื‘ืืžืฆืขื•ืช ื”ื“ื•ื’ืžื” ืฉืœ 2 ืžื•ื“ื•ืœื™ื - ื ื™ื˜ื•ืจ ื•ืื‘ื—ื•ืŸ ื‘ื™ืฆื•ืขื™ ืจืฉืช ะธ ืื‘ื˜ื—ืช ื’ื™ืœื•ื™ ื—ืจื™ื’ื•ืช.
ื ืชื•ื ื™ื ืจืืฉื•ื ื™ื™ื:

  • ืฉืจืช Lenovo RS 140 ืขื hypervisor VMware 6.0;
  • ืชืžื•ื ืช ืžื›ื•ื ื” ื•ื™ืจื˜ื•ืืœื™ืช ืฉืœ Flowmon Collector ืฉืืชื” ื™ื›ื•ืœ ื”ื•ืจื“ ื›ืืŸ;
  • ื–ื•ื’ ืžืชื’ื™ื ื”ืชื•ืžื›ื™ื ื‘ืคืจื•ื˜ื•ืงื•ืœื™ ื–ืจื™ืžื”.

ืฉืœื‘ 1. ื”ืชืงืŸ ืืช Flowmon Collector

ืคืจื™ืกื” ืฉืœ ืžื›ื•ื ื” ื•ื™ืจื˜ื•ืืœื™ืช ื‘-VMware ืžืชืจื—ืฉืช ื‘ืฆื•ืจื” ืกื˜ื ื“ืจื˜ื™ืช ืœื—ืœื•ื˜ื™ืŸ ืžืชื‘ื ื™ืช OVF. ื›ืชื•ืฆืื” ืžื›ืš, ืื ื• ืžืงื‘ืœื™ื ืžื›ื•ื ื” ื•ื™ืจื˜ื•ืืœื™ืช ื”ืžืจื™ืฅ CentOS ื•ืขื ืชื•ื›ื ื” ืžื•ื›ื ื” ืœืฉื™ืžื•ืฉ. ื“ืจื™ืฉื•ืช ื”ืžืฉืื‘ื™ื ื”ืŸ ืื ื•ืฉื™ื•ืช:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื›ืœ ืฉื ื•ืชืจ ื”ื•ื ืœื‘ืฆืข ืืชื—ื•ืœ ื‘ืกื™ืกื™ ื‘ืืžืฆืขื•ืช ื”ืคืงื•ื“ื” sysconfig:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ืื ื• ืžื’ื“ื™ืจื™ื IP ืขืœ ื™ืฆื™ืืช ื”ื ื™ื”ื•ืœ, DNS, ื–ืžืŸ, ืฉื ืžืืจื— ื•ื™ื›ื•ืœื™ื ืœื”ืชื—ื‘ืจ ืœืžืžืฉืง WEB.

ืฉืœื‘ 2. ื”ืชืงื ืช ืจื™ืฉื™ื•ืŸ

ืจื™ืฉื™ื•ืŸ ื ื™ืกื™ื•ืŸ ืœื—ื•ื“ืฉ ื•ื—ืฆื™ ื ื•ืฆืจ ื•ืžื•ืจื™ื“ ื™ื—ื“ ืขื ืชืžื•ื ืช ื”ืžื›ื•ื ื” ื”ื•ื™ืจื˜ื•ืืœื™ืช. ื ื˜ืขืŸ ื“ืจืš ืžืจื›ื– ื”ืชืฆื•ืจื” -> ืจื™ืฉื™ื•ืŸ. ื›ืชื•ืฆืื” ืžื›ืš ืื ื• ืจื•ืื™ื:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื”ื›ืœ ืžื•ื›ืŸ. ืืชื” ื™ื›ื•ืœ ืœื”ืชื—ื™ืœ ืœืขื‘ื•ื“.

ืฉืœื‘ 3. ื”ื’ื“ืจืช ื”ืžืงืœื˜ ืขืœ ื”ืงื•ืœื˜

ื‘ืฉืœื‘ ื–ื” ื™ืฉ ืœื”ื—ืœื™ื˜ ื›ื™ืฆื“ ื”ืžืขืจื›ืช ืชืงื‘ืœ ื ืชื•ื ื™ื ืžืžืงื•ืจื•ืช. ื›ืคื™ ืฉืืžืจื ื• ืงื•ื“ื, ื–ื” ื™ื›ื•ืœ ืœื”ื™ื•ืช ืื—ื“ ืžืคืจื•ื˜ื•ืงื•ืœื™ ื”ื–ืจื™ืžื” ืื• ื™ืฆื™ืืช SPAN ื‘ืžืชื’.

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื‘ื“ื•ื’ืžื” ืฉืœื ื•, ื ืฉืชืžืฉ ื‘ืงืœื™ื˜ืช ื ืชื•ื ื™ื ื‘ืืžืฆืขื•ืช ืคืจื•ื˜ื•ืงื•ืœื™ื NetFlow v9 ื•-IPFIX. ื‘ืžืงืจื” ื–ื”, ืื ื• ืžืฆื™ื™ื ื™ื ืืช ื›ืชื•ื‘ืช ื”-IP ืฉืœ ืžืžืฉืง ื”ื ื™ื”ื•ืœ ื›ื™ืขื“ - 192.168.78.198. ืžืžืฉืงื™ื eth2 ื•-eth3 (ืขื ืกื•ื’ ืžืžืฉืง ื ื™ื˜ื•ืจ) ืžืฉืžืฉื™ื ืœืงื‘ืœืช ืขื•ืชืง ืฉืœ ื”ืชืขื‘ื•ืจื” ื”"ื’ื•ืœืžื™ืช" ืžื™ืฆื™ืืช SPAN ืฉืœ ื”ืžืชื’. ื ืชื ื• ืœื”ื ืœืขื‘ื•ืจ, ืœื ื”ืžืงืจื” ืฉืœื ื•.
ืœืื—ืจ ืžื›ืŸ, ืื ื• ื‘ื•ื“ืงื™ื ืืช ื™ืฆื™ืืช ื”ืืกืคืŸ ืœืืŸ ืฆืจื™ื›ื” ื”ืชื ื•ืขื” ืœืœื›ืช.

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื‘ืžืงืจื” ืฉืœื ื•, ื”ืืกืคืŸ ืžืื–ื™ืŸ ืœืชืขื‘ื•ืจื” ื‘ื ืžืœ UDP/2055.

ืฉืœื‘ 4. ื”ื’ื“ืจืช ืฆื™ื•ื“ ืจืฉืช ืœื™ืฆื•ื ื–ืจื™ืžื”

ื”ื’ื“ืจืช NetFlow ื‘ืฆื™ื•ื“ ืฉืœ Cisco Systems ื™ื›ื•ืœื” ื›ื ืจืื” ืœื”ื™ืงืจื ืžืฉื™ืžื” ื ืคื•ืฆื” ืœื—ืœื•ื˜ื™ืŸ ืขื‘ื•ืจ ื›ืœ ืžื ื”ืœ ืจืฉืช. ืœื“ื•ื’ืžื” ืฉืœื ื•, ื ื™ืงื— ืžืฉื”ื• ื™ื•ืฆื ื“ื•ืคืŸ ื™ื•ืชืจ. ืœื“ื•ื’ืžื”, ื”ื ืชื‘ MikroTik RB2011UiAS-2HnD. ื›ืŸ, ื‘ืื•ืคืŸ ืžื•ื–ืจ, ืคืชืจื•ืŸ ืชืงืฆื™ื‘ ื›ื–ื” ืœืžืฉืจื“ื™ื ืงื˜ื ื™ื ื•ื‘ื™ืชื™ื™ื ืชื•ืžืš ื’ื ื‘ืคืจื•ื˜ื•ืงื•ืœื™ NetFlow v5/v9 ื•-IPFIX. ื‘ื”ื’ื“ืจื•ืช, ื”ื’ื“ืจ ืืช ื”ื™ืขื“ (ื›ืชื•ื‘ืช ืืกืคืŸ 192.168.78.198 ื•ื™ืฆื™ืื” 2055):

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื•ื”ื•ืกืฃ ืืช ื›ืœ ื”ืžื“ื“ื™ื ื”ื–ืžื™ื ื™ื ืœื™ื™ืฆื•ื:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื‘ืฉืœื‘ ื–ื” ืื ื• ื™ื›ื•ืœื™ื ืœื•ืžืจ ืฉื”ื”ื’ื“ืจื” ื”ื‘ืกื™ืกื™ืช ื”ื•ืฉืœืžื”. ืื ื• ื‘ื•ื“ืงื™ื ื”ืื ืชื ื•ืขื” ื ื›ื ืกืช ืœืžืขืจื›ืช.

ืฉืœื‘ 5: ื‘ื“ื™ืงื” ื•ืชืคืขื•ืœ ืฉืœ ืžื•ื“ื•ืœ ื ื™ื˜ื•ืจ ื•ืื‘ื—ื•ืŸ ื‘ื™ืฆื•ืขื™ ื”ืจืฉืช

ืืชื” ื™ื›ื•ืœ ืœื‘ื“ื•ืง ืืช ื ื•ื›ื—ื•ืช ื”ืชื ื•ืขื” ืžื”ืžืงื•ืจ ื‘ืงื˜ืข ืžืจื›ื– ื ื™ื˜ื•ืจ Flowmon โ€“> ืžืงื•ืจื•ืช:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ืื ื—ื ื• ืจื•ืื™ื ืฉื”ื ืชื•ื ื™ื ื ื›ื ืกื™ื ืœืžืขืจื›ืช. ื–ืžืŸ ืžื” ืœืื—ืจ ืฉื”ืืกืคืŸ ืฆื‘ืจ ืชืขื‘ื•ืจื”, ื”ื•ื•ื™ื“ื’'ื˜ื™ื ื™ืชื—ื™ืœื• ืœื”ืฆื™ื’ ืžื™ื“ืข:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื”ืžืขืจื›ืช ื‘ื ื•ื™ื” ืขืœ ืขื™ืงืจื•ืŸ ื”ืงื™ื“ื•ื—. ื›ืœื•ืžืจ, ื”ืžืฉืชืžืฉ, ื‘ื‘ื—ื™ืจืช ืงื˜ืข ืขื ื™ื™ืŸ ื‘ืชืจืฉื™ื ืื• ื’ืจืฃ, "ื ื•ืคืœ" ืœืจืžืช ืขื•ืžืง ื”ื ืชื•ื ื™ื ืฉื”ื•ื ืฆืจื™ืš:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ืขื“ ืœืžื™ื“ืข ืขืœ ื›ืœ ื—ื™ื‘ื•ืจ ื•ื—ื™ื‘ื•ืจ ืœืจืฉืช:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ืฉืœื‘ 6. ืžื•ื“ื•ืœ ืื‘ื˜ื—ื” ืœื–ื™ื”ื•ื™ ืื ื•ืžืœื™ื•ืช

ืžื•ื“ื•ืœ ื–ื” ื™ื›ื•ืœ ืœื”ื™ืงืจื ืื•ืœื™ ืื—ื“ ื”ืžืขื ื™ื™ื ื™ื ื‘ื™ื•ืชืจ, ื”ื•ื“ื•ืช ืœืฉื™ืžื•ืฉ ื‘ืฉื™ื˜ื•ืช ื ื˜ื•ืœื•ืช ื—ืชื™ืžื•ืช ืœืื™ืชื•ืจ ื—ืจื™ื’ื•ืช ื‘ืชืขื‘ื•ืจืช ืจืฉืช ื•ืคืขื™ืœื•ืช ื–ื“ื•ื ื™ืช ื‘ืจืฉืช. ืื‘ืœ ื–ื” ืœื ืื ืœื•ื’ื™ ืœืžืขืจื›ื•ืช IDS/IPS. ื”ืขื‘ื•ื“ื” ืขื ื”ืžื•ื“ื•ืœ ืžืชื—ื™ืœื” ื‘"ืื™ืžื•ืŸ" ืฉืœื•. ืœืฉื ื›ืš, ืืฉืฃ ืžื™ื•ื—ื“ ืžืคืจื˜ ืืช ื›ืœ ื”ืจื›ื™ื‘ื™ื ื•ื”ืฉื™ืจื•ืชื™ื ื”ืขื™ืงืจื™ื™ื ืฉืœ ื”ืจืฉืช, ื›ื•ืœืœ:

  • ื›ืชื•ื‘ื•ืช ืฉืขืจ, ืฉืจืชื™ DNS, DHCP ื•-NTP,
  • ื›ืชื•ื‘ืช ื‘ืงื˜ืขื™ ืžืฉืชืžืฉื™ื ื•ืฉืจืชื™ื.

ืœืื—ืจ ืžื›ืŸ, ื”ืžืขืจื›ืช ืขื•ื‘ืจืช ืœืžืฆื‘ ืื™ืžื•ืŸ, ืฉื ืžืฉืš ื‘ืžืžื•ืฆืข ื‘ื™ืŸ ืฉื‘ื•ืขื™ื™ื ืœื—ื•ื“ืฉ. ื‘ืžื”ืœืš ื–ืžืŸ ื–ื”, ื”ืžืขืจื›ืช ืžื™ื™ืฆืจืช ืชืขื‘ื•ืจื” ื‘ืกื™ืกื™ืช ื”ืกืคืฆื™ืคื™ืช ืœืจืฉืช ืฉืœื ื•. ื‘ืžื™ืœื™ื ืคืฉื•ื˜ื•ืช, ื”ืžืขืจื›ืช ืœื•ืžื“ืช:

  • ืื™ื–ื• ื”ืชื ื”ื’ื•ืช ืื•ืคื™ื™ื ื™ืช ืœืฆืžืชื™ ืจืฉืช?
  • ืื™ืœื• ื›ืžื•ื™ื•ืช ื ืชื•ื ื™ื ืžื•ืขื‘ืจื•ืช ื‘ื“ืจืš ื›ืœืœ ื•ื”ืŸ ืชืงื™ื ื•ืช ืœืจืฉืช?
  • ืžื”ื• ื–ืžืŸ ื”ื”ืคืขืœื” ื”ืื•ืคื™ื™ื ื™ ืœืžืฉืชืžืฉื™ื?
  • ืื™ืœื• ืืคืœื™ืงืฆื™ื•ืช ืคื•ืขืœื•ืช ื‘ืจืฉืช?
  • ื•ืขื•ื“ ื”ืจื‘ื”..

ื›ืชื•ืฆืื” ืžื›ืš, ืื ื• ืžืงื‘ืœื™ื ื›ืœื™ ืฉืžื–ื”ื” ื—ืจื™ื’ื•ืช ื‘ืจืฉืช ืฉืœื ื• ื•ื—ืจื™ื’ื•ืช ืžื”ืชื ื”ื’ื•ืช ืื•ืคื™ื™ื ื™ืช. ื”ื ื” ื›ืžื” ื“ื•ื’ืžืื•ืช ืฉื”ืžืขืจื›ืช ืžืืคืฉืจืช ืœืš ืœื–ื”ื•ืช:

  • ื”ืคืฆื” ืฉืœ ืชื•ื›ื ื•ืช ื–ื“ื•ื ื™ื•ืช ื—ื“ืฉื•ืช ื‘ืจืฉืช ืฉืื™ื ืŸ ืžื–ื•ื”ื•ืช ืขืœ ื™ื“ื™ ื—ืชื™ืžื•ืช ืื ื˜ื™ ื•ื™ืจื•ืก;
  • ื‘ื ื™ื™ืช DNS, ICMP ืื• ืžื ื”ืจื•ืช ืื—ืจื•ืช ื•ื”ืขื‘ืจืช ื ืชื•ื ื™ื ืขื•ืงืคืช ื—ื•ืžืช ื”ืืฉ;
  • ื”ื•ืคืขืช ืžื—ืฉื‘ ื—ื“ืฉ ื‘ืจืฉืช ื”ืžืชื—ื–ื” ืœืฉืจืช DHCP ื•/ืื• DNS.

ื‘ื•ื ื ืจืื” ืื™ืš ื–ื” ื ืจืื” ื‘ืฉื™ื“ื•ืจ ื—ื™. ืœืื—ืจ ืฉื”ืžืขืจื›ืช ืฉืœืš ื”ื•ื›ืฉืจื” ื•ื‘ื ืชื” ืงื• ื‘ืกื™ืก ืฉืœ ืชืขื‘ื•ืจืช ืจืฉืช, ื”ื™ื ืžืชื—ื™ืœื” ืœื–ื”ื•ืช ืชืงืจื™ื•ืช:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื”ืขืžื•ื“ ื”ืจืืฉื™ ืฉืœ ื”ืžื•ื“ื•ืœ ื”ื•ื ืฆื™ืจ ื–ืžืŸ ื”ืžืฆื™ื’ ืื™ืจื•ืขื™ื ืฉื–ื•ื”ื•. ื‘ื“ื•ื’ืžื” ืฉืœื ื•, ืื ื• ืจื•ืื™ื ืกืคื™ื™ืง ื‘ืจื•ืจ, ื‘ืขืจืš ื‘ื™ืŸ 9 ืœ-16 ืฉืขื•ืช. ื‘ื•ืื• ื ื‘ื—ืจ ืื•ืชื• ื•ื ืกืชื›ืœ ื‘ื™ืชืจ ืคื™ืจื•ื˜.

ื”ื”ืชื ื”ื’ื•ืช ื”ื—ืจื™ื’ื” ืฉืœ ื”ืชื•ืงืฃ ื‘ืจืฉืช ื ืจืื™ืช ื‘ื‘ื™ืจื•ืจ. ื”ื›ืœ ืžืชื—ื™ืœ ื‘ืขื•ื‘ื“ื” ืฉื”ืžืืจื— ืขื ื”ื›ืชื•ื‘ืช 192.168.3.225 ื”ื—ืœ ื‘ืกืจื™ืงื” ืื•ืคืงื™ืช ืฉืœ ื”ืจืฉืช ื‘ื™ืฆื™ืื” 3389 (ืฉื™ืจื•ืช Microsoft RDP) ื•ืžืฆื 14 "ืงื•ืจื‘ื ื•ืช" ืคื•ื˜ื ืฆื™ืืœื™ื™ื:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ะธ

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื”ืชืงืจื™ืช ื”ืžืชื•ืขื“ืช ื”ื‘ืื” - ืžืืจื— 192.168.3.225 ืžืชื—ื™ืœ ื‘ื”ืชืงืคืช ื›ื•ื— ื’ืก ืœืกื™ืกืžืื•ืช ื›ื•ื— ื’ืก ื‘ืฉื™ืจื•ืช RDP (ื™ืฆื™ืื” 3389) ื‘ื›ืชื•ื‘ื•ืช ืฉื–ื•ื”ื• ืงื•ื“ื ืœื›ืŸ:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื›ืชื•ืฆืื” ืžื”ืชืงื™ืคื”, ืžืชื’ืœื” ื—ืจื™ื’ืช SMTP ื‘ืื—ื“ ื”ืžืืจื—ื™ื ืฉื ืคืจืฆื•. ื‘ืžื™ืœื™ื ืื—ืจื•ืช, SPAM ื”ืชื—ื™ืœ:

ื ื™ื˜ื•ืจ ืจืฉืช ื•ืื™ืชื•ืจ ืคืขื™ืœื•ืช ื—ืจื™ื’ื” ื‘ืจืฉืช ื‘ืืžืฆืขื•ืช ืคืชืจื•ื ื•ืช Flowmon Networks

ื“ื•ื’ืžื” ื–ื• ื”ื™ื ื”ื“ื’ืžื” ื‘ืจื•ืจื” ืฉืœ ื™ื›ื•ืœื•ืช ื”ืžืขืจื›ืช ื•ืžื•ื“ื•ืœ ื”ืื‘ื˜ื—ื” ืœื’ื™ืœื•ื™ ืื ื•ืžืœื™ื•ืช ื‘ืคืจื˜. ืฉืคื•ื˜ ื‘ืขืฆืžืš ืืช ื”ืืคืงื˜ื™ื‘ื™ื•ืช. ื‘ื›ืš ืžืกืชื™ื™ืžืช ื”ืกืงื™ืจื” ื”ืคื•ื ืงืฆื™ื•ื ืœื™ืช ืฉืœ ื”ืคืชืจื•ืŸ.

ืžืกืงื ื”

ื‘ื•ืื• ื ืกื›ื ืื™ืœื• ืžืกืงื ื•ืช ืื ื• ื™ื›ื•ืœื™ื ืœื”ืกื™ืง ืœื’ื‘ื™ Flowmon:

  • Flowmon ื”ื•ื ืคืชืจื•ืŸ ืคืจื™ืžื™ื•ื ืœืœืงื•ื—ื•ืช ืขืกืงื™ื™ื;
  • ื‘ื–ื›ื•ืช ื”ืจื‘ื’ื•ื ื™ื•ืช ื•ื”ืชืื™ืžื•ืช ืฉืœื•, ืื™ืกื•ืฃ ื ืชื•ื ื™ื ื–ืžื™ืŸ ืžื›ืœ ืžืงื•ืจ: ืฆื™ื•ื“ ืจืฉืช (Cisco, Juniper, HPE, Huawei...) ืื• ื‘ื“ื™ืงื•ืช ืžืฉืœืš (Flowmon Probe);
  • ื™ื›ื•ืœื•ืช ื”ืžื“ืจื’ื™ื•ืช ืฉืœ ื”ืคืชืจื•ืŸ ืžืืคืฉืจื•ืช ืœืš ืœื”ืจื—ื™ื‘ ืืช ื”ืคื•ื ืงืฆื™ื•ื ืœื™ื•ืช ืฉืœ ื”ืžืขืจื›ืช ืขืœ ื™ื“ื™ ื”ื•ืกืคืช ืžื•ื“ื•ืœื™ื ื—ื“ืฉื™ื, ื›ืžื• ื’ื ืœื”ื’ื“ื™ืœ ืืช ื”ืคืจื•ื“ื•ืงื˜ื™ื‘ื™ื•ืช ื”ื•ื“ื•ืช ืœื’ื™ืฉื” ื’ืžื™ืฉื” ืœืจื™ืฉื•ื™;
  • ื‘ืืžืฆืขื•ืช ืฉื™ืžื•ืฉ ื‘ื˜ื›ื ื•ืœื•ื’ื™ื•ืช ื ื™ืชื•ื— ืœืœื ื—ืชื™ืžื•ืช, ื”ืžืขืจื›ืช ืžืืคืฉืจืช ืœืš ืœื–ื”ื•ืช ื”ืชืงืคื•ืช ืฉืœ ื™ื•ื ืืคืก ืืคื™ืœื• ืœื ื™ื“ื•ืขื•ืช ืœืื ื˜ื™-ื•ื™ืจื•ืกื™ื ื•ืžืขืจื›ื•ืช IDS/IPS;
  • ื”ื•ื“ื•ืช ืœ"ืฉืงื™ืคื•ืช" ืžืœืื” ืžื‘ื—ื™ื ืช ื”ื”ืชืงื ื” ื•ื”ื ื•ื›ื—ื•ืช ืฉืœ ื”ืžืขืจื›ืช ื‘ืจืฉืช - ื”ืคืชืจื•ืŸ ืื™ื ื• ืžืฉืคื™ืข ืขืœ ืคืขื•ืœืชื ืฉืœ ืฆืžืชื™ื ื•ืจื›ื™ื‘ื™ื ืื—ืจื™ื ืฉืœ ืชืฉืชื™ืช ื”-IT ืฉืœืš;
  • Flowmon ื”ื•ื ื”ืคืชืจื•ืŸ ื”ื™ื—ื™ื“ ื‘ืฉื•ืง ื”ืชื•ืžืš ื‘ื ื™ื˜ื•ืจ ืชืขื‘ื•ืจื” ื‘ืžื”ื™ืจื•ื™ื•ืช ืฉืœ ืขื“ 100 Gbps;
  • Flowmon ื”ื•ื ืคืชืจื•ืŸ ืœืจืฉืชื•ืช ื‘ื›ืœ ืงื ื” ืžื™ื“ื”;
  • ื™ื—ืก ื”ืžื—ื™ืจ/ืคื•ื ืงืฆื™ื•ื ืœื™ื•ืช ื”ื˜ื•ื‘ ื‘ื™ื•ืชืจ ืžื‘ื™ืŸ ืคืชืจื•ื ื•ืช ื“ื•ืžื™ื.

ื‘ืกืงื™ืจื” ื–ื•, ื‘ื“ืงื ื• ืคื—ื•ืช ืž-10% ืžืกืš ื”ืคื•ื ืงืฆื™ื•ื ืœื™ื•ืช ืฉืœ ื”ืคืชืจื•ืŸ. ื‘ืžืืžืจ ื”ื‘ื ื ื“ื‘ืจ ืขืœ ื”ืžื•ื“ื•ืœื™ื ื”ื ื•ืชืจื™ื ืฉืœ Flowmon Networks. ื‘ืืžืฆืขื•ืช ืžื•ื“ื•ืœ ื ื™ื˜ื•ืจ ื‘ื™ืฆื•ืขื™ ื™ื™ืฉื•ืžื™ื ื›ื“ื•ื’ืžื”, ื ืจืื” ื›ื™ืฆื“ ืžื ื”ืœื™ ื™ื™ืฉื•ืžื™ื ืขืกืงื™ื™ื ื™ื›ื•ืœื™ื ืœื”ื‘ื˜ื™ื— ื–ืžื™ื ื•ืช ื‘ืจืžืช SLA ื ืชื•ื ื”, ื›ืžื• ื’ื ืœืื‘ื—ืŸ ื‘ืขื™ื•ืช ื‘ืžื”ื™ืจื•ืช ื”ืืคืฉืจื™ืช.

ื›ืžื• ื›ืŸ, ื‘ืจืฆื•ื ื ื• ืœื”ื–ืžื™ืŸ ืื•ืชืš ืœืกืžื™ื ืจ ื”ืžืงื•ื•ืŸ ืฉืœื ื• (10.09.2019/XNUMX/XNUMX) ื”ืžื•ืงื“ืฉ ืœืคืชืจื•ื ื•ืช ืฉืœ ื”ืกืคืง Flowmon Networks. ืœื”ืจืฉืžื” ืžืจืืฉ, ืื ื• ืžื‘ืงืฉื™ื ืžื›ื ื”ื™ืจืฉื ื›ืืŸ.
ื–ื” ื”ื›ืœ ืœืขืช ืขืชื”, ืชื•ื“ื” ืขืœ ื”ื”ืชืขื ื™ื™ื ื•ืช!

ืจืง ืžืฉืชืžืฉื™ื ืจืฉื•ืžื™ื ื™ื›ื•ืœื™ื ืœื”ืฉืชืชืฃ ื‘ืกืงืจ. ืœื”ืชื—ื‘ืจื‘ื‘ืงืฉื”.

ื”ืื ืืชื” ืžืฉืชืžืฉ ื‘-Netflow ืœื ื™ื˜ื•ืจ ืจืฉืช?

  • ื›ืŸ

  • ืœื, ืื‘ืœ ืื ื™ ืžืชื›ื ืŸ

  • ืœื

9 ืžืฉืชืžืฉื™ื ื”ืฆื‘ื™ืขื•. 3 ืžืฉืชืžืฉื™ื ื ืžื ืขื•.

ืžืงื•ืจ: www.habr.com

ื”ื•ืกืคืช ืชื’ื•ื‘ื”