<img height="1" width="1" style="display:none;" alt="" src="https://px.ads.linkedin.com/collect/?pid=2975524&amp;fmt=gif">

Visibility Solutions

Garland Technology is committed to educating the benefits of having a strong foundation of network visibility and access. By providing this insight we protect the security of data across your network and beyond.

Resources

Garland Technology's resource library offers free use of white papers, eBooks, use cases, infographics, data sheets, video demos and more.

Blog

The TAP into Technology blog provides the latest news and insights on network access and visibility, including: network security, network monitoring and appliance connectivity and guest blogs from Industry experts and technology partners

Partners

Our extensive technology partnership ecosystem solves critical problems when it comes to network security, monitoring, application analysis, forensics and packet inspection.

Company

Garland Technology is dedicated to high standards in quality and reliability, while delivering the greatest economical solutions for enterprise, service providers, and government agencies worldwide.

Contact

Whether you are ready to make a network TAP your foundation of visibility or just have questions, please contact us. Ask us about the Garland Difference!

Corelight

Comprehensive Network Detection and Response At Scale

Expecting a PDF?

We created this solution brief as a web page for better mobile optimization and accessibility. If you'd still like a PDF version of this use case, you can download it here: 

Capture all data on the wire, transforming high volume traffic into high fidelity security data and insights

When most cyber-attacks must cross the network, extracting relevant data from network traffic is essential for security operations. Many security teams have limited or no traffic visibility at the perimeter, leaving them blind to attackers who hide and establish malicious C2 server communications, deploy malware, and exfiltrate sensitive data.

Finding a way to reliably and cost-effectively capture and transform traffic into usable security data can be challenging, especially in environments with limited data center space and high throughput traffic. The Corelight and Garland solution takes minutes, not months, to deploy and emit actionable insights. The solution provides 100% visibility of your network for up to 10x peak performance gains and is packed with additional enterprise functionality from the creators and maintainers of Zeek.

Base Deployment for Network Visibility and Security

  1. Garland Technology’s compact, high-performance network TAPs provide 100% wire data.

  2. A complete copy of network traffic is delivered to the out-of-band Corelight Sensor.

  3. The Corelight Sensor captures and converts traffic for comprehensive protocol logs via the power of the Zeek Network Security Monitor.

Corelight - Portable TAP Diagram

A Scalable Deployment For Growing Network Infrastructures

Corelight
  1. The scalable design of a multi-network with satellite locations enables easy deployment of Garland Technology network TAPs to provide 100% wire data from the primary and remote locations.

  2. Multiple tapped links send the copied traffic to Garland’s PacketMAXTM Advanced Aggregator where the data is aggregated, load-balanced, filtered, and distributed.

  3. The aggregated traffic is delivered to the Corelight Sensors and other tools in the data center from the primary location.

  4. Corelight Sensors transform captured traffic into comprehensive protocol logs for analysis that provides critical security context.

Network Visibility in Hybrid Cloud Environments

  1. Garland Prisms vTAP provides packet mirroring in virtual environments, so corporate traffic in private and public cloud environments including AWS, Google Cloud Platform, and Azure can be captured.

  2. The traffic is delivered to the Garland Technology PacketMAX network packet broker through VXLAN / GRE tunneling.

  3. The cloud traffic is transmitted and streamed to a Corelight Sensor to be transformed into logs, extracted files, and security insights.

Corelight Cloud MultiCloud083120

IT and Sec Ops Team Benefits

  • Full visibility across on-premise data centers and private, public (AWS, Azure, Google), or multi-cloud environments.
  • Easy access and monitoring of network traffic from physical, virtual, and cloud networks.
  • Reduce network downtime, improve reliability, reduce costs, and gain better device utilization by spreading the load data across multiple tools.
  • Extract over 400 fields of data from network traffic in real-time across 35+ protocols from Layer 3 to 7 (HTTP, DNS, SSL, ext.) .
  • The logs provide nearly the fidelity of full traffic at less than 1% of the file size.
  • Logs are organized by protocol with fields extracted specifically for SOC / DFIR teams so that they can make fast sense of their network to threat hunt and resolve incidents more efficiently.
  • Preloaded with the Core Collection, a set of Zeek packages curated and certified for performance and stability.
  • Provide specific threat detection, data enrichment, and operational insight capabilities, such as identifying port scanning behavior or extracting URLs from email bodies for filtering.

Integration Benefits

The Corelight and Garland Technology solution offers a scalable way to capture and efficiently make sense of 100% the network traffic no matter the environment. By dramatically accelerating network security operations with Zeek data, the solution reliably reduces blind spots in the network and the risk of any malicious data on the wire. Whether a lean or robust security team, the easy deployment and infinite features with Zeek data provide a comprehensive solution for security performance.

About Corelight

Defenders have always sought the high ground in order to see farther and turn back attacks. Corelight delivers a commanding view of your network so you can outsmart and outlast adversaries. We capture, interpret, and connect the data that means everything to defenders. For more information please visit: corelight.com

Corelight200

Corelight Webinar

Corelight solution

Garland Technology and Corelight provide a comprehensive network detection and response solution. Looking to add this solution, but not sure where to start? Join us for a brief network Design-IT Demo or consultation. No obligation - it’s what we love to do.