Fast to implement and get results. Very powerful. Ver straightforward to accomplish PCI remediations.
Use Cases and Deployment Scope
I have remediated
my PCI findings about firewall activity monitoring. On the other hand, now I
have a fast query tool for forensics and I have found specific devices that
generated useless denied traffic. I use it as a log harvesting tool. Useful for traffic shaping and top solve buggy hosts generating useless packets in the network.
Pros
- PCI compliance
- Dashboards
- Reports
Cons
- UI can be improved, not very intuitive.
- Search features can be improved too, I needed to export an excel file to perform an advanced search.
- Automatic direct updates would be great.
Return on Investment
- Fast PCI finding remediation, no consultant needed.
- Good price (u$s 695 to monitor two boxes of different brands)
- Log harvesting tool included for the same price.
Usability
Alternatives Considered
FireMon, Tufin Orchestration Suite and Oxidized
Other Software Used
Splunk Enterprise, Nagios Core, CheckPoint


