Average Ratings 0 Ratings
Average Ratings 1 Rating
Description
LiveWire is an advanced platform for network packet capture and forensic analysis that meticulously gathers and archives detailed packet information across physical, virtual, on-premises, and cloud environments. It aims to provide Network Operations and Security teams with comprehensive insights into network traffic, spanning from data centers to SD-WAN edges, remote locations, and cloud infrastructures, effectively addressing the gaps left by monitoring that relies solely on telemetry. Featuring real-time packet capture capabilities, LiveWire allows for selective storage and analysis through sophisticated workflows, visualizations, and correlation tools; it intelligently identifies encrypted traffic and only retains essential data such as headers or metadata, optimizing disk space while maintaining forensic integrity. The platform further supports "intelligent packet capture," transforming packet-level information into enriched flow-based metadata, known as LiveFlow, which can seamlessly integrate with the associated monitoring tool, BlueCat LiveNX. Overall, LiveWire enhances the ability to analyze network traffic efficiently while ensuring critical data is preserved for future investigations.
Description
Snort stands as the leading Open Source Intrusion Prevention System (IPS) globally. This IPS utilizes a collection of rules designed to identify harmful network behavior, matching incoming packets against these criteria to issue alerts to users. Additionally, Snort can be configured to operate inline, effectively blocking these malicious packets. Its functionality is versatile, serving three main purposes: it can act as a packet sniffer similar to tcpdump, function as a packet logger that assists in troubleshooting network traffic, or serve as a comprehensive network intrusion prevention system. Available for download and suitable for both personal and commercial use, Snort requires configuration upon installation. After this setup, users gain access to two distinct sets of Snort rules: the "Community Ruleset" and the "Snort Subscriber Ruleset." The latter, created, tested, and validated by Cisco Talos, offers subscribers real-time updates of the ruleset as they become available to Cisco clients. In this way, users can stay ahead of emerging threats and ensure their network remains secure.
API Access
Has API
No
API Access
Has API
No
Integrations
Elastic Observability
No
EndaceProbe
No
Joe Sandbox
No
NXLog
No
Palo Alto ATP
No
Panaseer
No
Picus
No
Project Ares
No
ThreatQ
No
Integrations
Elastic Observability
Yes
EndaceProbe
Yes
Joe Sandbox
Yes
NXLog
Yes
Palo Alto ATP
Yes
Panaseer
Yes
Picus
Yes
Project Ares
Yes
ThreatQ
Yes
Pricing Details
No price information available.
Free Trial
No
Free Version
No
Pricing Details
No price information available.
Free Trial
No
Free Version
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Deployment
Web-Based
Yes
On-Premises
No
iPhone App
No
iPad App
No
Android App
No
Windows
No
Mac
No
Linux
No
Chromebook
No
Customer Support
Business Hours
No
Live Rep (24/7)
No
Online Support
Yes
Customer Support
Business Hours
No
Live Rep (24/7)
No
Online Support
Yes
Types of Training
Training Docs
Yes
Webinars
Yes
Live Training (Online)
Yes
In Person
No
Types of Training
Training Docs
Yes
Webinars
No
Live Training (Online)
No
In Person
No
Vendor Details
Company Name
BlueCat
Founded
2001
Country
United States
Website
bluecatnetworks.com/products/livewire/
Vendor Details
Company Name
Cisco
Founded
1984
Country
United States
Website
www.snort.org
Product Features
Network Monitoring
Bandwidth Monitoring
No
Baseline Manager
No
Diagnostic Tools
No
IP Address Monitoring
No
Internet Usage Monitoring
No
Real Time Analytics
No
Resource Management
No
SLA Monitoring
No
Server Monitoring
No
Uptime Monitoring
No
Web Traffic Reporting
No
Network Traffic Analysis (NTA)
Anomalous Behavior Detection
No
High Bandwidth Usage Monitoring
No
Historical Behavior Data
No
Identify High Network Traffic Sources
No
Network Transaction Visibility
No
Stream Data to IDR or Data Lake
No
Traffic Decryption
No