Intelligent IT operation system which can fully integrate 3 major network and security management technologies, and build up dynamic reasonable threshold by event log and flow historical records automatic learning technology, and then trigger an alert when abnormal usage is detected.
Product Type
N-Partner has world-leading intelligent IT operation systems that correlate three main technologies, SNMP, Flow, and Syslog in network management and log analysis in one platform. Also, using auto learning, the systems make a baseline to detect anomalies, helping IT administrators have a comprehensive understanding for user behaviors and security events and fix issues in real time. With N-Partner, users can not only greatly improve the efficiency of IT operation but also reduce the cost. Now, besides storing data for statistics and analyzing to detect anomaly instantly, we take a step forward, making prediction by analyzing received data, providing hardware status and system performance alerts before any anomaly happens.
Whether network performance is good is based on if users are satisfied or not; however, it is hard for service administrators to understand users' actual network experience by only monitoring device status like CPU or bandwidth utilization, etc. with operation tools. It is common that there is nothing abnormal about devices, but users keep complaining about the efficiency. It is because users and operation tools are in different location; when users connect to a website, they need to pass many route points, and if any of them makes the connection unstable, the latency will lead to negative perception.
N-Partner currently has two ways to monitor network latency. The first one is sending ICMP ping packets to collect round trip time (RTT) information of each network node, and the other is imitating people’s behavior of visiting the monitored web services and recording responding time to do analysis.
N-Reporter/N-Cloud of N-Partner can send ICMP ping packets from their management IP to collect RTT data; also, they can send access requests to web services and record the latency of every stage. To know users’ actual network experience, administrators can deploy N-Probe in different places, such as in OA network, offices of branches, wireless LAN, telecommunications facilities of ISP, etc. By monitoring the connection status of different nodes, administrators can have an instant, comprehensive understanding about web service performance. N-Probe can monitor both RTT with ICMP ping and web service performance.
Nowadays, IT systems are widely applied by enterprises, and using Windows login as management tool for identity verification is generally accepted. However, this can lead to a security disadvantage; anyone has the Windows account/password can log in, view classified information and verify the system. Brute-force attack becomes one of the most common attacking types.
N-Partner’s big data analysis can do historical data automatic learning. It records Windows AD log, and if there is login failure event explosion, real-time alerts will be sent to IT administrators. The alerts include source IP (attacker) and which account hackers are using to invade the system. Besides login failure alerts, alerts will also be sent when there is login success right after lots of login failure, for it may mean the system is invaded. IT Department has to receive alerts instantly especially when the invaded account has high authority of the system and set new password right away; otherwise, there will be great loss if attackers log in the system successfully.
Are you wondering how we can predict the future?
Is it possible to know the future, and even to prepare in advance?
By collecting complete historical data and making analysis, not only can network anomaly be detected in real time, but early warning can also be sent.
CYBERSEC 2023 uses cookies to provide you with the best user experience possible. By continuing to use this site, you agree to the terms in our Privacy Policy .