About Us  |  Services  | Recruitment  |  Advertise  | Contact

 

Computer Network Defence Ltd

IDS & IPS Products
Scanning Products
Scanners Overview
Vulnerability Alert Services
Network Enumerators
Passive Fingerprinters
Active Fingerprinters
Vulnerability Exploitation
Network Scanners
Distributed Scanners
Host Scanners
Website Scanners
Database Scanners
Wardialers
Wireless Tools
Bluetooth Scanners
VPN & Firewall Products
Forensics Solutions
Content Protection
Training Courses
Raw Packets
Bug Sweeping / TSCM
Miscellaneous
Services


Enterprise Network Mapping Tools


Network enumerators abound, yet often they provide more information than can be waded through, especially in a large business environment. The Enterprise Network Mapping category contains products and tools that provide network discovery and the resulting network map in a visual format. Many of the network mapping tools can export network map information to other imaging software packages. Others are partnered with monitoring or vulnerability assessment functionality.

We have tried to include only the packages capable of managing a large business/enterprise, but the marketing hype around "Enterprise" can be difficult to separate from actual functionality. YMMV, buyer beware, and free trials should be utilized to ensure the package will meet your particular needs.

Last Reviewed by Michele Jordan 09 Jul 2007




Links to Products

SolarWinds LANsurveyor

IPsonar

RedSeal Security Risk Manager

SNMPc Enterprise Edition

Centennial Enterprise.Suite

LANState

QualysGuard Enterprise

Insightix Visibility

Rocket NetCure


SolarWinds LANsurveyor

 

SolarWinds Network Management Solutions

http://www.solarwinds.net

Automated discovery, topology mapping, and documentation of your entire network

LANsurveyor provides Automated discovery, topology mapping, and documentation of your entire network LANsurveyor fills a critical need for network professionals by automatically discovering and mapping every device on the network. LANsurveyor leverages a unique multi-level discovery technique to produce comprehensive, easy-to-view network maps that can be exported into Microsoft Office® Visio®, eliminating the need to ever draw a network map by hand again!

Key features include:
* Automatically discovers and diagrams network topology
* Generates network maps in Microsoft Office® Visio®
* Automatically detects new devices and changes to network topology
* Performs inventory management for hardware and software assets
* Directly addresses PCI compliance and other regulatory requirements

Commercial

 

Information updated: 06 Jul 07


IPsonar

 

Lumeta Corporation

http://www.lumeta.com

Obtaining global network visibility requires accurate measurement of four factors: network topology, address space, leaks and device fingerprints.

Lumeta's IPsonar actively scans the network to collect all data related to these factors via Network Discovery, Host Discovery, Leak Discovery and Device Fingerprint Discovery. Network and security managers and executives can accurately visualize what's on the network, drilling down to analyze potential areas of risk and identify appropriate corrective actions.

Network Discovery - Given the frequency of change in large networks, and the error-prone way in which changes are made, organizations struggle to assure that all network assets are under management. Unmanaged assets increase risk of intrusion and service outages.

Host Discovery - The network is a collection of IP addresses that IT organizations are responsible for securing. Yet unknown IP addresses exist in every large network, often going undiscovered until they cause an outage, breach or audit issue. Lumeta's IPsonar detects all known and previously unknown network address, helping IT executives align their area of visibility with their area of responsibility.

Leak Discovery - Leaks are devices with unauthorized inbound or outbound connectivity to the Internet or sub-networks. The more complex a network, the more likely that leaks exists. Defending information and operations from threats requires that IT organizations proactively identify leaks, such as unsecured routers exposed to the Internet or open links to former business partners. Lumeta's IPsonar reveals all unauthorized connections, identifying whether access is outbound, inbound or both.

Device Fingerprint Discovery - Assessing risk requires more than a census of assets and their interdependencies. To determine whether assets are non-compliant or vulnerable to a specific threat, IT organizations must understand their attributes, such as a server's OS or whether a device or host has a particular service enabled. Fingerprinting capabilities within Lumeta's IPsonar achieve this, detecting services, wireless access points and operating system information - without disrupting asset operations. Fingerprinting is an important complement to leak discovery, prioritizing vulnerability and patch management efforts to vulnerable devices that have exposure to the Internet.

Multi-tier Enterprise Architecture - Because it is a network appliance, Lumeta's IPsonar requires no installation or disruption to operations in order to completely scan a network - no matter how far-flung or numerous the resources are. IPsonar's three-tiered architecture is proven at the world's most complex networks and has been used to scan the entire Internet.

All appliances use a pre-loaded, hardened configuration to simplify and assure security. Communication between appliances is via HTTPS (SSL) and available in several configurations, so that no changes to firewalls or network access control are required. IPsonar’s User Interface support signed digital certificates.

Commercial

 

Information updated: 06 Jul 07


RedSeal Security Risk Manager

 

RedSeal Systems Inc.

http://www.redseal.net

RedSeal Systems has automated proactive security management with a system that is easy to deploy, intuitive to use, and that yields actionable information within hours of installation. With RedSeal, enterprises can:
* Increase the security of the network and the efficiency of the IT team
* Reduce the time and resources spent on remediation
* Produce on demand non repudiable evidence of the network's security posture

RedSeal's SRM 3000 appliance does this by:
* Identifying firewall and router configuration errors and deviations from best practices
* Graphically showing which systems and hosts are at highest risk of attack
* Computing and reporting the risk scores of network elements

At the core of RedSeal's SRM 3000 is a powerful engine which can sit anywhere in the network. It automatically collects configuration and server data from firewalls, routers, VA scanners and patching systems and uses this information to build a comprehensive network model which shows network interconnectivity, traffic flows, attack paths, and those areas most at risk. All of this is accomplished within minutes to an hour — a fraction of the time that it would take network and security engineers to perform the same analysis manually. Most importantly, the results of the risk analysis are obtained on-demand and ahead of a security event or breach, allowing IT administrators to truly manage the security posture proactively.

RedSeal's SRM helps enterprises of all sizes stay ahead of security risk by providing:
* A unified view of the network topology and filtering policies
* A thorough audit of the configurations of firewalls and other filtering devices
* A precise map of security risk exposure based upon network access and system vulnerabilities
* Guidance on how to proactively mitigate any security problems
* Detailed reports on the risk scores and trends for hosts, servers, subnets, key assets

Commercial

 

Information updated: 06 Jul 07

Click Here To Go To The Top Of The Page

SNMPc Enterprise Edition

 

ExtraLAN Ltd.

http://www.extralan.co.uk

SNMPc Network Manager is a scalable, distributed management suite for managing small to large sized networks. SNMPc Enterprise Edition employs multiple components running on different computers, and uses distributed database technology to provide a high performance platform regardless of the size or configuration of your network.

Key Product Features
* Runs under Windows 2000, NT, & 98
* Full RMON-1 Application
* Automatic Baseline Alarms
* MIB Expressions (e.g., Utilization)
* Email/Pager Event Notification
* Advanced Event Actions
* Network Discovery
* Real Time Tabular/Graphical Displays
* Device Specific Applications
* Programming Interfaces
* Optional Multiple Console Logins
* Optional Distributed Polling Agents
* Optional WEB/Printed Reports
* Optional JAVA Console

Commercial

 

Information updated: 09 Jul 07


Centennial Enterprise.Suite

 

Centennial Software Limited

http://www.centennial-software.com

Centennial Enterprise.Suite provides an organization with a complete solution to find, track and report on assets (both in use and retired) across the entire network. With Enterprise.Suite, IT managers and other key stakeholders can:
* Automatically find and track all hardware and software assets
* Graphically map assets and visualize network layouts
* Monitor assets throughout their complete lifecycle
* Fully understand the nature of software assets

Through a unique combination of discovery technology, graphical network mapping and online software information, Centennial Enterprise.Suite ensures that IT staff and other key stakeholders are fully informed about the state of the network at any given time.

How Enterprise.Suite benefits you
Full visibility of the IT estate - From finding and recording all hardware assets through to understanding the installation, configuration and usage of individual software applications on the network, Enterprise.Suite ensures that IT staff are always in control.
Better cost controls - By identifying under-used or mis-allocated assets, or highlighting unauthorized IT purchases, Enterprise.Suite can help organizations make significant cost savings across their IT operations.
Better project management - Enterprise.Suite ensures that managers know exactly where they are at before undertaking any significant IT projects. What’s more, staff can track progress visually with intuitive network mapping technologies.
Full lifecycle management - For organizations in regulated industries, Enterprise.Suite plays a critical role in records management and compliance by maintaining an accurate record of all IT assets, even after they have been retired, disposed or re-deployed.

Centennial Discovery and Centennial Discovery.Visual are included in Enterprise.Suite, but these products can also be purchased separately.

Commercial

 

Information updated: 09 Jul 07


LANState

 

10-Strike Software

http://www.10-strike.com

10-Strike LANState is a network mapping, monitoring, management, and administration software solution for corporate Microsoft Windows networks. LANState generates the network map, which speeds up accessing to remote hosts' properties and resources, and managing those. Scan your network, find hosts, place them on a network diagram, and monitor their state! The program can export network diagram to graphic image, Microsoft Visio, and XML scheme.

LANState contains the following modules:
# Network diagram builder: Create network diagram automatically and export it to Visio
# Network monitor: Monitor hosts and servers and be notified on its failures
# Connection monitor: Audit connections to your shared resources

The program also includes a number of useful features for obtaining information on remote computers.

LANState has rich host monitoring functionality with multiple types of host checks, which allows you to see the state of your network at any time. The program displays a network map, monitoring device's state (active/inactive) in real-time. You just click a tray icon at any time, and see which servers and computers are switched on, and which do not respond. Web access is also supported (LANState Pro).

Employing LANState makes it essentially easier to administer and monitor processes in networks of any ranges or sizes.

Commercial

 

Information updated: 09 Jul 07

Click Here To Go To The Top Of The Page

QualysGuard Enterprise

 

Qualys Inc.

http://www.qualys.com

Qualys® offers network security audits and vulnerability management to organizations of all sizes. QualysGuard®, the company's flagship solution, is an on demand solution that enables organizations to:
* Discover and prioritize all network assets
* Proactively identify and fix security vulnerabilities
* Prevent worms, viruses & trojan horses
* Manage & reduce business risk
* Ensure compliance with laws, regulations and corporate security policies

QualysGuard Enterprise enables organizations to measure and reduce risk by providing a proactive solution to track and remediate security vulnerabilities used for exploitation. According to CERT, 99% of attacks exploit known vulnerabilities. With QualysGuard Enterprise, CSOs and other executives can monitor the vulnerability management process, track remediation and ensure policy compliance through comprehensive reporting. Fully extensible APIs allow organizations to export data from QualysGuard for use with other security applications.

QualysGuard Enterprise is an enterprise class, on demand solution, ideal for large, distributed networks that require support for an unlimited number of IPs, appliances for internal scanning and users with hierarchical authorization rights.

Delivered as a service over the Web, QualysGuard eliminates the burden of deploying, maintaining, and updating vulnerability management software or implementing ad-hoc security applications. Clients securely access QualysGuard through an easy-to-use Web interface.

QualysGuard offers proactive network protection through lifecycle vulnerability management, including asset discovery, asset prioritization, vulnerability assessment & analysis, remediation, verification and policy compliance. The on demand solution reliably scales to handle the largest, most complex, and globally distributed networks. Best of all, QualysGuard can be deployed today!

Managed Service

 

Information updated: 09 Jul 07


Insightix Visibility

 

Insightix

http://www.insightix.com

Insightix Visibility – Stateful IT Visibility

Insightix Visibility obtains a complete inventory of all network devices, including firewalled, unmanaged and virtual devices, and provides location information and a full list of associated properties. Insightix Visibility also generates an accurate physical network topology map of the entire IT infrastructure.

The contextual information obtained by Insightix Visibility allows IT professionals to easily baseline their networks and successfully plan a range of critical IT initiatives, ensuring they are accurately deployed across their entire IT infrastructures.

Insightix Visibility offers additional value by significantly improving the response times to IT helpdesk inquires, asset tracking, performance issues, policy violations and security events.

Insightix Visibility provides the following key features:
* Complete IT Asset Discovery - delivers a comprehensive inventory of every device on the network, including firewalled, unmanaged and virtual devices, and provides location information and a full list of associated properties.
* Accurate Network Topology Map - maps the entire physical network topology, including all devices, such as workstations, servers, printers, wireless access points, VoIP phones, switches, routers and more
* Real-Time Change Detection - continuously monitors the network for any changes made to the network and/or any of the devices on the network

Insightix Visibility provides the following key benefits:
* Cost Savings - provides on-demand access to network information for IT professionals to complete routine IT tasks that were previously time consuming and relied on manual input
* Agentless - obtains critical network information without the deployment of software agents
* Rapid Deployment - is installed and generates results in a matter of hours

Commercial

 

Information updated: 09 Jul 07


Rocket NetCure

 

Rocket Software Inc.

http://www.rocketsoftware.com

The NetCure product family consists of three products: NetCure Discovery, NetCure Audit, and NetCure Enterprise.

NetCure Discovery is a free version of NetCure that autodiscovers your network from layer-2 to layer-7. Use NetCure Discovery to browse and print images of your network topology.

NetCure Audit is a network audit, asset management, and reporting application. NetCure Audit discovers your entire network from layer-2 to layer-7 and provides browsing, query and reporting facilities that enable you to keep track of changes to your network.

NetCure Enterprise is a complete network management and service assurance application for enterprises and service providers. NetCure Enterprise provides end-to-end management of your business-critical infrastructure by correlating events across traditional management boundaries.

Auto-discovery features of NetCure include:
Layer-2, Layer-3, Layer-7, LAN, WAN, VoIP, VPN, VLAN, UNIX and Windows servers, Disks, Partitions, and Volumes. It also includes Rediscovery policies, scheduled rediscovery, and notification of new HW & SW.

Visualization and Export features include:
Graphical network layout, Drill down WAN to wiring, Export and print schematics, Export to CSV or clipboard, Asset DB query: Interactive, Asset DB query: SQL.

Other features of NetCure include Monitoring, Event Correlation, Automated Actions, Performance & Availability Reporting.

Commercial, NetCure Discovery is free

 

Information updated: 09 Jul 07

Click Here To Go To The Top Of The Page

Click Here To Go To The Top Of The Page

Last page update:  09 July 2007

Computer Network Defence Ltd
Information Security Consultancy and Recruiting
enquiries@securitywizardry.com 

Copyright © 2004 Computer Network Defence Ltd. All Rights Reserved.

PO Box 2680, Corsham, Wiltshire, SN13 0ZR, UK
Phone       0870 3219014
International +44 (0) 1225 811806