One may ask: is it real to be so stupid implementing TAPs and brokers that packets are duplicated? Yes, of course, and it doesn't indicate architects' stupidity. E.g. we need the datacenter traffic analysis. So, it is necessary to mirror datacenter uplinks (no matter Internet or corporate) to have an incoming/outgoing traffic visibility, and aggregation/service layer links according to the datacenter network design. Inbound/outbound packet has no duplicates if it is going to some segment connected via dedicated physical lines, no router/firewall on a stick etc.
Практическая информационная безопасность и защита информации | Information Security and Cyber Defense in Deed
Показаны сообщения с ярлыком architecture. Показать все сообщения
Показаны сообщения с ярлыком architecture. Показать все сообщения
четверг, 31 марта 2016 г.
воскресенье, 27 марта 2016 г.
IXIA ThreatArmor: how does it work
No advertisement (unfortunately, vendor doesn't pay me for it :) ) but for technology review only: one more IXIA solution analysis.
Подписаться на:
Сообщения (Atom)