Skip Links

Network World

  • Social Web 
  • Email 
  • Close

Security appliances do more

QRadar manages security and monitors network traffic
Small Business Technology Alert By James E. Gaskin , Network World , 02/02/2006
James Gaskin
Sign up for this newsletter now!

James Gaskin helps small offices get the most out of technology

Security appliances continue to evolve, adding more features with every iteration. The newest product from Q1 Labs, the QRadar Network Security Management, continues that tradition.

More than just a security firewall, "QRadar includes an intelligent engine pulling together information on traffic and security incidents and event correlation into one common alert system." So says Jason Knight, managing partner of The Broadleaf Group, a network services and security firm in Houston with an office in Dallas.

QRadar is promoted as a new breed of security appliance that includes some general network management, traffic analysis and policy enforcement tools. Threat assessment goes beyond comparing virus signatures to incoming files and includes network behavior monitoring for atypical actions that may indicate a security problem. Q1 calls this its "Judicial System Logic" technology.

I asked Knight if that inflated-sounding title was more than just marketing speak. "It's a bit of marketing," says Knight, "but there's more to it than that." Early network monitoring tools caused as many problems as they helped solve because alerts weren't intelligent, he says. One router dropping off the network meant hundreds or thousands of alerts, each one calling attention to one device on the far side of the router that could no longer be reached. Modern tools are smarter than that, and "QRadar does a good job of integrating security and network monitoring details into a decent Web interface."

As companies and networks grow, network management often takes a budget back seat to expansion. Knight sees companies regularly that have no idea what types of traffic soaks up their bandwidth. Analysis with a QRadar or other network traffic analysis tool may show, for example, the majority of traffic consisting of peer-to-peer, music or video packets.

"We just had a customer ready to upgrade a data link from a fractional DS3 to a full DS3 for a considerably higher cost," explains Knight. "After some analysis, we found that three quarters of their traffic was non-business related."

That's Knight being polite. "Non-business related" sounds like consultant speak for, "Mr. Executive, your network's full of personal files that may be illegal, competing for bandwidth against spyware and virus payloads." Why pay hundreds or thousands of dollars per month for data lines, then fill them up with garbage?

James Gaskin writes books (16 so far), articles and jokes about technology and real life from his home office in the Dallas area.

Partner Content

Company Description

Emerson Network Power and its Liebert power and cooling technologies increase IT system flexibility and availability, while lowering the total cost of ownership.

Power and Cooling Guidelines

Learn how to optimize power and cooling in network access rooms to keep equipment operating at peak performance and proactively monitor changes.

Download this white paper

Business-Critical Continuity

Read about Sequent and how they implemented a new data center to meet current requirements while easily scaling to support projected growth.

Download this case study

Cutting Energy Costs

Reduce cooling system energy costs by 30 to 45 percent through five data center efficiency strategies.

Download this white paper

Comment
Login
Forgot your account info?
Add comment
Anonymous comments subject to approval. Register here for member benefits.
Have a NetworkWorld account? Log in here. Register now for a free account.

Videos

rssRss Feed

Whitepapers

File Integrity Monitoring: Secure Your Virtual and Physical IT Environments

Discover the capabilities your file integrity monitoring solution should have to effectively secure...

6 Simple Steps to Disaster Recovery Planning

Discover the six simple steps you can take today to create - or bolster - your disaster recovery...

The Trend from UNIX to Linux in SAP(r) Data Centers

Through our infrastructure software and ecosystem of partnerships, Novell harmoniously integrates...

Webcasts

PoE Plus: Impact on the PoE Market

The standard for Power over Ethernet (PoE), IEEE Std. 802.3af(tm)-2003, advanced networking,...

Harnessing the power of communications to increase workplace performance

Due to the convergence of IT and telecommunications technologies, the business workplace has been...

Stay out of the headlines: Detecting and preventing network intrusions

How do YOU stay out of the headlines? There is no denying that risk exists in our computer-driven...

Special Reports

The New Network/System Management Challenges

Increasingly popular technologies such as virtualization, wireless networking and data center...

How to lower software costs, complexity

Discover how Software as a Service is the economical alternative to expensive on-site software,...

Get instant email notification when white papers, webcasts, executive guides are added to our library. Stay informed and up-to-date with the latest on IT Technologies with Network World's Resource Alerts.