Security visibility | NETSCOUT nGenius 4200 series

nGenius 4200 Series Packet Flow Switch

Hardware-accelerated packet optimization for service assurance and security systems on 40G networks.
  • Simplify operational complexity
  • Enhance efficiency of security systems
  • Easily scalable your visibility plane with self-organizing mesh architecture
  • Add, test, and change security systems without network disruption
  • Filter and forward only the traffic of interest to each monitoring or security system
  • Manage a variety of network protocols, including encrypted packets
  • Buffer and mitigate issues resulting from bursty traffic conditions
QUICK LOOK
DATASHEET
CONTACT US
REQUEST DEMO
 

Overview

Enhance efficiency of security systems

Reduce costs, workloads, and risks by gaining 100 percent packet visibility across your network. Easily test, add, or change your security systems to stay on top of cybersecurity threats. With the nGenius 2200 series packet flow switch, deploy active, passive or active inline security system chains in your infrastructure, without network disruption. Features such as fail-safe active security enforce your organization’s security policies, even during a power loss.

Simplify operational complexity

The nGenius 4200 series packet flow switches provide optimized network traffic to monitoring systems, including the nGeniusONE Service Assurance platform, and to cyber security systems.

As network architectures and data centers evolve to 40G, you need to ensure your security systems and monitoring tools receive the packets they require to function. Environments with large multi-site, multi-city deployments or where different network protocols are used make managing operations difficult. With the nGenius 4200 series packet flow switch, you can create a unified packet visibility plane that simplifies operations of monitoring systems.

Scalable architecture

The nGenius 4200 series packet flow switch provides flexibility and modularity to deploy just what you need. Enable scalable link-layer visibility and data access via a system-level architecture comprised of many participating devices and hundreds of ports in a single logical system.

nGenius 4200 series packet flow switch helps you:

  • Add, test, and change security systems without network disruption
  • Filter and forward only the traffic of interest to each monitoring or security system
  • Manage a variety of network protocols, including encrypted packets
  • Buffer and mitigate issues resulting from bursty traffic conditions
 

Features

Flexible ports
  • Supports 40G, 10G, and 1G access at full line rates
  • Ports configurable (I/O) for network access or monitor output
Non-blocking traffic forwarding
  • Selective aggregation (any-to-any port mapping)
  • Filtering: hardware-based, user-independent on OSI layers 2-7 (includes custom offset, ingress and egress, and overlapping filters)
  • Session-based/flow-aware load balancing (includes Inner Layer 3 and Layer 4 GTP, MPLS, and VLAN load balancing)
  • vStack+™ Network Intelligence Optimization System building (stacking) over LANs and WANs
Granular traffic visibility
  • VLAN tagging
  • Port and time stamping (NTP, GPS, 1PPS, PTP sync)
  • High data-burst buffering
  • Microburst detection
Advanced traffic conditioning
  • Conditional packet slicing / trimming by packet type
  • Protocol (FabricPath, GRE/NVGRE, GTP, MAC-in-MAC, MPLS L2/L3, TRILL, VLAN, VN-tag, and VXLAN) stripping / de-encapsulation
  • Duplicate packet removal
Active security traffic forwarding
  • Active inline bidirectional traffic access with bypass (PowerSafe) for fail-safe operation
  • Tool health-checking at application level
  • Policy-based event triggering, alerting, and actions
Comprehensive management
  • Local, remote management: API, CLI, and GUI (HTTP/HTTPS, Telnet/SSH, SNMPv1-3)
  • AAA security (RADIUS, TACACS+)
  • Multi-user access with defined privileges, unique screen views, and management accessibility restrictions
Redundancy & resilience
  • Dual, redundant, universal power supplies (AC and DC hot-swappable options)
  • NEBS Level 3 certified
 

Documents

Brochures

Title/Description Download  
nGenius 4200 Series Packet Flow Switch - Quick Look
Download PDF
761.62 KB
Service Assurance Solution For Dummies
Wake up to the fact that There Is No Off, and you need a new solution to manage this reality. Unless you’re still using a rotary phone, your company’s network is the water supply to your business. While the strategic importance of delivering IP‐based services is constantly increasing, enterprises and service providers are being pressured to find ways to deliver these services faster, with higher quality, while reducing operating cost.
Download PDF
3.19 MB

Data Sheets

Title/Description Download  
nGenius 4200 Series Packet Flow Switch
Hardware-accelerated packet optimization for performance monitoring and security systems on 40G networks
Download PDF
664.76 KB

Solution Briefs

Title/Description Download  
Optimize Security and Monitoring Systems for 10G and 40G Networks
Want to transition to 10G and 40G networks, but the existing investment in 1G tools is giving you pause? Learn how!
Download PDF
594.06 KB
Security Visibility: 10 Things to Ask Your Vendor
This checklist will help you formulate your requirement when designing a packet flow architecture for security.
Download PDF
411.5 KB

White Papers

Title/Description Download  
Advancing Security Maturity With Unified Packet Visibility
Packet flow switching for the new threat landscape
Download PDF
1.51 MB
 

WEBINARS

On Demand  

Sept 21, 2016

Advance Security Maturity with Unified Packet Visibility

Learn how to advance your security maturity with packet visibility using the the Cyber security Capability Maturity Model (C2M2). We’ll cover deployment case studies that explain how packet flow switches enable you to accelerate your security posture:

  • How to formulate your requirements when designing a packet flow architecture for security
  • What are the key criteria that a security visibility solution must meet
  • What are the differences between designing for active vs passive security
June 28, 2016

How to Select a Security Visibility Solution

In this webinar, we will discuss the key questions to ask potential vendors when evaluating a security visibility solution. During the webinar, we will cover:

  • How to formulate your requirements when designing a packet flow architecture for security
  • What are the key criteria that a security visibility solution must meet
  • What are the differences between designing for active vs passive security
 
Jun 22, 2016

Enterprise Networks: No Tool Left Behind

Want to transition to 10G and 40G networks, but the existing investment in 1G tools is giving you pause? Learn how you can extend the life of your tools, while gaining unified packet visibility across your entire network.

We'll also discuss how to combine real-time, actionable traffic-based intelligence with high-density monitoring at line rate—for a holistic view of the network. Spend less time in administering your infrastructure, and more time in research and resolution.

June 8, 2016

Emerging Trends in Incident Response and Survey Results

Join us for the "Incident Response Capabilities in 2016 - Part 1: The Current Threat Landscape and Survey Results" webinar on-demand.

The third annual SANS survey on incident response will look at the continuing evolution of incident response, how tactics and tools have changed in the last three years and how security professionals are dealing with increasing numbers and kinds of attacks.

 
April 28, 2016

Case Studies in Advanced Threat Network Protection

Learn how our customers are using threat intelligence combined with Arbor Spectrum and packet flow switches from NETSCOUT to see everything and protect against advanced threats. We will dive into:

  • Insights and trends from the findings of Arbor's ATLAS security research
  • Real uses cases on how customers are defending their networks
  • Role of unified packet visibility in accelerating your security infrastructure
March 31, 2016

Datacenter Evolved

The 40G and 100G evolution. Worried? Get answers Join our 45-minute webinar Datacenter Evolved that will present the recent datacenter trends, driven by this transition. Learn how to combine real-time, actionable traffic-based intelligence with high-density monitoring at line rate – for a holistic view of the network.