Visualization

  • Flash-based web interface
  • Real-time display of honeynet interactions
  • Alert system notifies users of suspicious network activity and recommends responses
  • Intuitive exploration of forensic data
  • Instant updates to existing IDS/IPS infrastructure
  • Unified administration, configuration, and tuning of Q5

The Q5 lets network administrators adapt to attacks in real time, thanks to NeuralUI, our next-generation administration and visualization tool. NeuralUI gives administrators complete control of all aspects of the Q5 appliance and provides a real-time view of all events transpiring on the honeynet, right down to an ‘atomic’ process level.

Worlds of forensic data can be quickly analyzed and visually explored in myriad ways, allowing users to customize their experience for maximal efficiency. Administrators then use this customized information to tune the Q5’s behavior and apply updates to existing intrusion detection and prevention systems (IDS/IPS) at the press of a button.

A Flash-based web interface alleviates the need to pore through endless logs and facilitates real-time forensic analysis. By representing attack data visually, including three dimensionally, administrators are better able to track and analyze interactions with the honeynet, allowing them to respond to these interactions on very short timescales.

Patterns of activity that are not immediately caught by the signature generation engine can be identified by administrators visually. Administrators can then ‘teach’ the Q5 how to defend itself against these attacks in the future and issue alerts when it encounters variants. This collaborative feedback allows administrators to gain a level of deep forensic insight and operational agility that is simply unavailable anywhere else.