por Zoltan Techy 5 anos atrás
548
Mais informações
Views, RESTful API cookbooks?
DNS names, IP addresses per-view
Can't set up with MS AD
Complicated options
Assesment, sizing need my input
How to conduct: ineffective existing habits, needed to redo
Agreement on key points
1 st preso
talk about them
Stories
DDoS PoC coming with 3T Collector
Looking to provide value added services for select customers
Billing
4x 10G uplink
Cisco and Arista routers
Arista: sFlow
Cisco: NetFlow
~130k fpm
Business
4x 10G, 130 k fpm
DDoS Defender module
Collector 3TB
Are we suitable for multitenant services as managed?
WanGuard
Mitigation?
No local support
DiData
Tarr Kft
Two systems are running in parallel
Flowmon ADS
Need to present
Traffic Recorder
Present in Hungarian
Config check
Can we get to 30 sec alerting time
Let us see if everything is properly set up
E.g. proxy settings
110-120k users
New looks requested
DDoS Defender case
2018.08.24
Ready to listen to BGP updates
NCS 5k
Juniper type commits
IPV4 IPV6 addresses separate processing
How do we log in
Very positive feedback on vendor interaction
NMHH onsite only
Budapest airport 2 days, very positive feedback
Probe under sale for ADS
What happens if licenses expire? NFR up to 2021
NFR licenses on demo hw
Perpetual?
30 days' licenses
Posta 1 VLAN
KSH probe
SZTE case
Customer knowing more about the filesystem than the partner
User identity cookbook
APM problems
MPLS decapsulation
Probe in BIX
2018.08.17
Profiles
15-20 sources
30-40 profiles
Roadmap
REST API
Business use
General
Critique
Mobile app
Zoltan Gal
Jozsef Fodor
RESTMan
Had errors
Tested REST API
tech
mgmt
3rd of 4th in municipal services
Ahead of Digi
Multiple 10G
10x ASR 9k
Local peering
BIX
NFSen
Develpoment costs a ton of $
5min
Tamás Makláry
Development roadmap check
Will show the new dashboard
ACL based response
Tarr did not report back
Resources for the virtual collector
Bring the probe to BIX and mirror the peering point
Check with what is available on probe 10G
Call Vojta
Reference visit, call
Orange
UPC
O2, MSSP
Fibers, trains
Ask Pavel
Testing
Available on support portal
Hping based machine
Mitigation strategies tiered
Already released in beta
ADS
Review ADS detection methods
Sampled flows could be limiting
Triggered packet captures
Definitions
As subnets
Way to differentiate between customers
Subject to change, more manual config
As AS numbers
sFlow devices as sources
We lose half the methods if no TCP flags
Discuss with PreSales
OOB mitigation is a value
CD Telematika
ADS inclusion
Security part reselled
Cyso case
Aspire case
Multitenancy
Create profile
Try to limit access to Flowmon boxes
Reports, information
Mitigation strategy
Do not compare to Arbor!
30s protected segments subject to further sizing
Questions
Clear with Jiri if parent profile for DDoS profile can be type shadow
Working with colleagues & exp sharing
cases
@support.flowmon
Hands on
Mitigation as a service
Branding
Multi-tenancy
Realistic amount of tenants at this moment?
Channels, views
Sets of profiles
ADS addon
Are carriers interested?
Sizing
Experience with 5 min batch, 30 sec batch, stream?
Data retention times
DDoS defender per 10 Gbps
ADS per 5k fps
16 vCores, 24 GB RAM
Roadmap items
Who to talk to
Resources
Prof services
"I need this and that view"
REST API?
Any guidelines/experiences?
Predetermined prof services according to specifications
T&M
Any key features
Mitigation via existing devices
IOS XR
Stream processing
Quarterly
Business breakfast
Flowmon channel on YouTube
Topics
Why would I use?
DDoS
NPMD
APM
ADS security use cases
What do I need for Flowmon?
What can we do with flowmon?
Enduser training
Flowmon marketing helps
Regular updates
40-50 min
Do we need to register?
On the crowd presentation
Arpi, Tamas Szelinger; demo
Both days
Tech demo
Small groups
We can approve ITBN registrations
VIP tickets
1 presentation, Roman Cupka
Supporters with ALEF, together with F5
Partners
99999
Delta
Dimension Data
Distri
Discuss immediate activities with Laszlo
ZOHO account
KBC
Issues with forward payment
Do we keep bills
Bills with backward payment e.g. mobile
Internet and mobile tariff, i.e. parking
Docking station WD15
Will be discussed with Pavel
Stationery (folders, pens, papers)
Commute
Private
Public transportation
Discuss with RSM
VAT bill and taxes
Currency conversion (?)
Update RSM every month
DDoS lab
Licensing portal
Waiting for confirmation
Migrate disk image
Update
Install packages
Discuss pruchase
Found own
Purchase locally
Ask if someone can pick it up
Take one from HQ, september