OpenText
1807 Case Studies
A OpenText Case Study
Hewlett Packard Enterprise (HPE) needed a way to detect malicious activity buried in the nonstop stream of traffic across its massive global network—roughly 16,000 switches, 10,000 routers and 300,000 users across 600 sites—generating about 150,000 data flows per second. The challenge was to spot anomalies quickly (for example, fast-spreading worms) without adding costly monitoring hardware or creating long query lag times for security analysts.
HPE deployed Lancope StealthWatch with an embedded Vertica Analytics Platform to collect NetFlow/sFlow/IPFix data from existing network devices, deduplicate and analyze flows in real time, and feed alerts into HPE ArcSight and Tipping Point for coordinated response. The result: faster detection and containment of threats, lower monitoring costs by using existing gear, improved forensic and historical analysis to refine anomaly detection, and better collaboration between network and application teams.
Gaddiel Torres
Network Security Architect