Network Traffic Analysis Software

Traffic analysis

LANGuardian uses Deep Packet Inspection techniques to inspect the contents (payload) of data packets in addition to the packet header. This feature of our network traffic analysis software will allow you to identify threats that cannot be identified using standard networking components alone.

LANGuardian implements DPI at full wire speed and does not slow down the network. The LANGuardian DPI engine has two components, traffic analysis and intrusion detection, which analyze the network traffic in parallel.

The traffic analysis engine identifies traffic flows in two ways:

  • The 5-tuple that uniquely identifies the TCP/IP connection – source IP address, source port, destination IP address, destination port, and protocol (TCP or UDP).
  • The source and destination hardware addresses, and the IP protocol used (IPv4 or IPv6).

It also extracts other details from the traffic flows, for example:

  • Local services in use on the network.
  • Operating system information.

The traffic analysis engine aggregates all of this information into its own proprietary internal flow representation, which it stores in the LANGuardian database.

Find out more

If you have any questions about how LANGuardian can help you with your network monitoring requirements, please contact us. If you would like to see LANGuardian's network traffic analysis software in action, please try our online demo system or download a free 30-day trial to try it on your own network with your own data.

\n