FEATRUES
The EmbedWay slicing method truncates packets while preserving the necessary packet headers for network analysis.
Packet Slicing removes irrelevant payload content that is not essential for network monitoring and analysis purposes. It can effectively parse variable header packets, initiating the slicing process after a specified header (such as IP, TCP, inner IP, inner TCP) with or without VLAN and other tags.
Packet Slicing can
→ improve tool performance by dropping unneeded packet payload
→ reduce needed disk space for backup
→ increases storage capacity
→ increase data retention time on network recorders
→ remove sensitive data before forwarding to tolls and database
There are multiple tap and aggregation points strategically placed throughout the data center to capture essential traffic results in packet duplication, leading to the creation of redundant packet copies. The EmbedWay De-duplication function is designed to specifically target, identify, and eliminate duplicate packets while simultaneously sending optimized flows to your network monitoring tools. By offloading the de-duplication task from these tools, EmbedWay allows you to centralize this function while providing multiple tools with the same feed.
EmbedWay De-duplication offers precision and customization options for tuning duplicate detection to enhance accuracy and effectiveness. For example, you can specify whether two packets that are identical except for specific headers or fields (such as TCP flags, TCP seq_number, and ack_number) should be considered duplicates.
Duplicate packets can
→ takes up vital monitoring infrastructure bandwidth
→ weigh down the tool computing power
→ result in false positives by tools
→ add storage burdens
The Masking feature of EmbedWay ensures the protection of sensitive information by obfuscating specific packet fields with a predetermined pattern, thereby safeguarding data integrity during packet analysis. EmbedWay offers customizable data protection solutions that permanently obscure data before transmitting it to monitoring tools.
The Masking can
→ helpful to protection regulations
→ protects engineers from inadvertently being exposed to confidential data
→ make users more reassuring
While data protection is paramount, encryption can also impede the effectiveness of application monitoring tools. The decryption of TLS/SSL traffic is essential for these tools; however, it requires significant computational resources and may introduce network latency. EmbedWay offers a centralized solution for SSL decryption that decrypts the traffic once and distributes it to all relevant tools, thereby minimizing the need for multiple decryption processes while ensuring compliance with legal and privacy regulations.
Embedway decryption can
→ detect any port of SSL/TLS
→ support 1Gb to 100Gb interface
→ decrypt once, then share with any tools as many times
→ centralize key management and validation
→ Strong crypto support for most of key