<img height="1" width="1" style="display:none;" alt="" src="https://px.ads.linkedin.com/collect/?pid=2975524&amp;fmt=gif">
BLOG

Don’t let snags unravel IT network deployments

December 7, 2022

network-deployments

Maximizing the merriment in December requires Santa-like scheduling superpowers. There are friends and family to visit, gifts to buy, cookies to bake, and Hallmark movies to binge.

Likely, there’s also a holiday sweater to dig out and dust off to flaunt your festive self. But, it’s hard to eat, drink, and be merry when you spot a snag or two slowly unraveling your favorite snowman sweater.

Regardless of the level of merrymaking on your calendar, you still have that day job to look after: managing your company’s IT network. And, if you’re like me, you’ll take a sweater snag over a snag in a new IT network deployment every single time. Those little unplanned surprises can get costly quickly.

Have you recently deployed a new
NDR, IDS, SIEM, Lawful Intercept, or DLP on your IT network? Do any of these snags sound familiar?

  1. The newly installed tool - receiving mirrored packets off a SPAN port on a switch - is underperforming because it isn’t seeing all of the network traffic
  2. You’re surprised by a previously unknown network requirement, such as network speeds, cable types, the quantity of links, or other tools connected to the network.
  3. You encounter a problematic network switch and it’s impossible to install the new out-of-band tool in your network using that switch.

These obstacles are not project-enders by any means, but they do introduce delays. Delays are costly and annoying. Good news! Network TAPs can help take the annoy out of deployment.

Network TAPs are plug-and-play devices that immediately start sending copies of network traffic to out-of-band tools like NDR, IDS, SIEM, Lawful Intercept, and DLP. Using a TAP to connect a new tool ensures the tool receives all of the required network traffic.

TAPs are a proven best practice for feeding packets to tools. SPAN ports can drop packets when oversubscribed, which prevents connected tools from delivering on their promise of performance.

Network TAPs come in a wide variety of types and specifications, so you can overcome unexpected network requirements ... without missing the holiday party. TAPs can be passive or active, and can breakout, aggregate, and regenerate traffic. They’re available in various media types including copper, fiber, SFP, SFP+. TAPs come in various speeds from 10/100/1000M all the way to 100G. Form factors include pocket-size portable, rack mount portable, 1U and 2U modular, and high-density chassis.

TAPs are easy to install and manage. They just need to be connected to the network via the correct media cable. Once turned on, they provide 24/7 access to all of the data at that link in the network. Certain types of TAPs can be configured via dip switches or a user-friendly GUI. SPAN ports on a switch require configuration. They can easily be misconfigured or even accidentally shut off. Alvin!

TAP-vs-SPAN

Should you encounter a snag in your deployment of a new NDR, IDS, SIEM, Lawful Intercept, or DLP don’t sweat it. The versatility and reliability of network TAPs can restart your delayed project, without additional surprises. Be prepared to share some details about your project to help identify the correct TAP solution quickly. For example:

  • Is using a SPAN port on a Switch a non-negotiable?
  • What is the network speed?
  • What is the media type and/or connector type?
  • Are there other out-of-band monitoring tools that require copies of network traffic?

An expert in network TAPs can guide you through the selection process to identify the correct the solution for your deployment.

Garland Technology has the largest portfolio of network TAPs in the industry. There are no license fees or hidden long-term commitments. The majority of our network TAPs are in-stock and ready to ship. Also, Garland Technology’s team of expert Engineers are available to discuss any deployment snags you encounter. Often a 15-minute conversation can get your install back on track, without breaking the budget.

Don’t get your tinsel in a tangle this holiday season. Connect with one of our expert Engineers to ensure your next IT network installation is smooth and snag-free. Join us for a brief network Design-IT evaluation or demo. No obligation - it’s what we love to do.

TAP vs SPAN

See Everything. Secure Everything.

Contact us now to secure and optimized your network operations

Heartbeats Packets Inside the Bypass TAP

If the inline security tool goes off-line, the TAP will bypass the tool and automatically keep the link flowing. The Bypass TAP does this by sending heartbeat packets to the inline security tool. As long as the inline security tool is on-line, the heartbeat packets will be returned to the TAP, and the link traffic will continue to flow through the inline security tool.

If the heartbeat packets are not returned to the TAP (indicating that the inline security tool has gone off-line), the TAP will automatically 'bypass' the inline security tool and keep the link traffic flowing. The TAP also removes the heartbeat packets before sending the network traffic back onto the critical link.

While the TAP is in bypass mode, it continues to send heartbeat packets out to the inline security tool so that once the tool is back on-line, it will begin returning the heartbeat packets back to the TAP indicating that the tool is ready to go back to work. The TAP will then direct the network traffic back through the inline security tool along with the heartbeat packets placing the tool back inline.

Some of you may have noticed a flaw in the logic behind this solution!  You say, “What if the TAP should fail because it is also in-line? Then the link will also fail!” The TAP would now be considered a point of failure. That is a good catch – but in our blog on Bypass vs. Failsafe, I explained that if a TAP were to fail or lose power, it must provide failsafe protection to the link it is attached to. So our network TAP will go into Failsafe mode keeping the link flowing.

Glossary

  1. Single point of failure: a risk to an IT network if one part of the system brings down a larger part of the entire system.

  2. Heartbeat packet: a soft detection technology that monitors the health of inline appliances. Read the heartbeat packet blog here.

  3. Critical link: the connection between two or more network devices or appliances that if the connection fails then the network is disrupted.

NETWORK MANAGEMENT | THE 101 SERIES