The MantisNet Network Stream Processor (NSP) App for Splunk is an analytics solution, with integrated TA, that ingests streaming network traffic protocol metadata from MantisNet network sensor(s). Customers can continuously stream and monitor network activity to analyze in real-time.
This Community Version of the MantisNet NSP App includes a 60-day trial of MantisNet Containerized Visibility Fabric (CVF) network agents (deployed as a DaemonSet or standalone container), and the App contains dozens of reports and visualizations to observe DNS traffic on your network. The streaming DNS traffic metadata feeds NOC/SOC reports and alert systems, AI/ML models and can integrate and orchestrate with response-action workflows/playbooks to anomalies in your network. Additional network protocols (HTTP/S, DHCP, GTP, etc.) are available for inclusion within the Premium Version of the MantisNet NSP App.
Using the MantisNet NSP App for Splunk, and associated MantisNet Containerized Visibility Fabric (CVF), network traffic protocols are continuously collected, processed and streamed via highly efficient, reliable and serialized metadata into Splunk to enrich and enable SIEM analysis, NPM, NDR/NTA, MDR, feed AI / ML models, trigger alerting and orchestrated response.
Community Version of the NSP App Install and the CVF sensor 60-day trial activation:
A. Download the NSP App for Splunk
B. Deploy the CVF DNS agent/sensor trial:
- Deploy the CVF into your network
- Activate the containerized MantisNet CVF agent for DNS protocol metadata generation
- Point to the Kafka feed (or configure for HTTP Event Collector or TCP input options)
Contact us at support@mantisnet.com with any issues.
The MantisNet NSP App in conjunction with MantisNet CVF network agent sensors:
• Built to stream network protocol metadata via Kafka for optimized and efficient ingestion. TCP, JSON or HTTP Event Collector ingestion also available within the App.
• Continuously inspect and filter network traffic by protocol at the network sensor
• Ingest high-resolution streaming metadata for any protocol, at any network speed from anywhere within the compute, network or cloud infrastructure. High-resolution is more accurate, reliable and granular information into “network conversations” and characteristics such as client/server(host) validations, authentications and interactions, handshakes, etc. (available for inspection within Splunk index should you opt to index the data)
• Control the in-memory processes for parsing, inspection and filtering within the MantisNet CVF agent sensors with additional processing capabilities for packet capture, RegEx and Entropy engines to further inspect and transform live network data
Resources
Log in to report this app listing