Network Computing is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them. Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

QRadar 3.0 Updates NBAD Device: Page 4 of 4

Although the reports aren't detailed, they provide a good overview of network traffic. Reports also can be created on the current view and can trend as far back as 30 days.

QRadar's interface includes options on the right-click menus, adjustable time periods for data mining and a network diagram based on network definition. However, the interface lacks an application definition, and there's no an easy way to build app signatures from packet capture in the data-mining view.

Because QRadar offers a view of network traffic that a NIDS won't show, it can be used by network admins for traffic monitoring and as a basis for capacity planning.

Mike Fratto is editor of sister publication Secure Enterprise. Write to him at [email protected].