The LANGuardian offers intuitive, easily understood coverage of many areas of the set of security standards that form the Code of Connection.
- The LANGuardian allows for the creation of multiple dashboards or tabs. These dashboards can be configured to focus on specific requirements like CoCo or they can also be assigned to logical groups within the organization.
|
 |
- The LANGuardian traffic analysis engine which accepts raw traffic and flow data allows you to focus on CoCo elements like firewalls. The report (2) above shows traffic which is inbound through the firewall.
|
 |
- CoCo element 2.9 deals with Intrusion Detection Systems (IDS) and the LANGuardian includes the Snort IDS application. The LANGuardian GUI allows for quick and easy tuning of IDS events.
|
 |
- CoCo element 2.11 deals with proxies and Internet activity. LANGuardian trends allow for the mapping of traffic against time so that you can spot unusual traffic patterns. If unusual activity is observed further info can be gained by clicking on the trend graph and drilling into user – protocol – application detail.
|
 |
- The LANGuardian includes a proxy traffic decoder engine. This allows for the passive monitoring of Internet activity which is routed through proxy servers. Reports in this section can include ‘Top Clients’, ‘Top Downloads’ and ‘Top Sites Accessed’.
|
 |
- CoCo 2.13 deals with unauthorized application access and sensitive files. The LANGuardian ‘Network File Share Monitor’ allows for the passive monitoring of documents as they move across the network. Custom reports can be created to focus on sensitive folders which may contain HR or financial data.
|
 |
- Item 2.20 deals with content analysis and mentions the checking of all incoming/outgoing traffic at the network boundary. The LANGuardian will check this traffic and report on issues like:
a. Spyware infected machines
b. Users downloading inappropriate or suspicious content from the Internet. The example shown shows a user downloading torrent files which are known to be associated with P2P applications.
|
 |