redborder at mobile world congress 2015

31
Iñaki Murcia CEO imurcia @redBorder.net

Upload: redborder

Post on 04-Aug-2015

218 views

Category:

Technology


2 download

TRANSCRIPT

Page 1: redBorder at Mobile World Congress 2015

Iñaki MurciaCEO

[email protected]

Page 2: redBorder at Mobile World Congress 2015

Architecture

Jaime NebreraCTO

[email protected]

Page 3: redBorder at Mobile World Congress 2015

Apps

Layers

Page 4: redBorder at Mobile World Congress 2015

IPS

Snort 2.9 based

Performance enhancements

IDS / IPS / IDS Forwarding

Barnyard2 to kafka

Feature enhancements (reputation GeoIP)

Page 5: redBorder at Mobile World Congress 2015

Traffic visibility

Netflow v5, v9, IPFIX, Flexible Netflow

Layer 7 – Cisco AVC / Palo Alto AppID

Based on nProbe libraries

Flow

Page 6: redBorder at Mobile World Congress 2015

Malware

Interception – IPS / Email / Web / EP

Centrallized analysis

Static – Hashing, Fuzzy, AV, Cloud, Yara

Dynamic - Cuckoo

Correlation

Available 4Q2015

Page 7: redBorder at Mobile World Congress 2015

Vault

Syslog – Event Log

Normalization

Metadata extraction

Correlation

Available 3Q2015

Page 8: redBorder at Mobile World Congress 2015

Ecosystem

Page 9: redBorder at Mobile World Congress 2015

Chaos

Page 10: redBorder at Mobile World Congress 2015

Performance

Reliability

Persistance

Message “normalization”

Once in, everything is Kafka

Message

Page 11: redBorder at Mobile World Congress 2015

Stream

Page 12: redBorder at Mobile World Congress 2015

Enrich

Page 13: redBorder at Mobile World Congress 2015

Mine

Page 14: redBorder at Mobile World Congress 2015

Correlate

Page 15: redBorder at Mobile World Congress 2015

Store

Page 16: redBorder at Mobile World Congress 2015

Scale Out

Real time – Hystorical

Slice & Dice – OLAP

Aggregated / Persistent data

Schemaless

HyperLogLog & q-digest

Tranquility – Storm / Samza

Store

Page 17: redBorder at Mobile World Congress 2015

View

Page 18: redBorder at Mobile World Congress 2015

Manage

Page 19: redBorder at Mobile World Congress 2015

Programmatic configuration

Recipes isolate knowledge domains

Performance

Reliability

Manage

Page 20: redBorder at Mobile World Congress 2015

BridgerB FlowrB Vault

Netflow

SyslogSNMP

Legacy

NativerB IPS

rB Malware

Legacy formats

Apache Kafka

HTTP

Page 21: redBorder at Mobile World Congress 2015

Community

Maria NicholasCustomer Experience - International

[email protected]

Page 22: redBorder at Mobile World Congress 2015

Extend

Page 23: redBorder at Mobile World Congress 2015

Solve

Page 24: redBorder at Mobile World Congress 2015

Innovate

Page 25: redBorder at Mobile World Congress 2015

Share

Page 26: redBorder at Mobile World Congress 2015

Collaborate

Page 27: redBorder at Mobile World Congress 2015

Educate

Page 28: redBorder at Mobile World Congress 2015

Augment

Page 29: redBorder at Mobile World Congress 2015

Accelerate

Page 30: redBorder at Mobile World Congress 2015

How

www.linkedin.com/company/redborder

@redBorder_net

github.com/redBorder/

www.redBorder.net

Page 31: redBorder at Mobile World Congress 2015

Questions?Questions?