Network monitoring-packet slicing and data desensitization

challenge

Over the years, with the rapid increase in security incidents and data breaches, people’s demands for secure communications and privacy standards have increased. With the development of encrypted traffic, standard compliance and reduced liability, enterprises are facing many challenges. Advances in encryption technologies such as TLS 1.3 and more personal devices in the workplace mean that the amount of potentially encrypted traffic on corporate networks will increase, and companies cannot obtain encryption keys, so they cannot see these encryptions. flow.

This puts an unnecessary burden on the monitoring system and adds additional traffic payloads that provide no additional value. At the same time, companies will eventually collect a large amount of PII (personal identifiable information) due to need or for other reasons. If a data leak occurs, this may put employees and customers at risk and increase the company's responsibilities. The new standards and legislation surrounding PII protection impose severe penalties for non-compliance. In addition, the loss of PII alone may lead to serious reputation damage and litigation, while also exposing important employees and customers to fraud.

Cubro's solution

Cubro provides two solutions to these increasing modern challenges. Packet slicing is a function that allows users to discard the part of the packet that exceeds the defined offset. It can delete the encrypted payload from the packet, so that the monitoring system can still receive the packet header (the only part that is still useful). At the same time improve the efficiency of tools and reduce resource usage (such as storage space).

You can also choose to discard the payload of traffic containing harmful and potentially sensitive information to reduce the organization’s responsibility and/or maximize available resources. Data masking allows users to obfuscate sensitive information in the payload of a data packet, which may be for compliance reasons, or it may be to reduce liability and protect employees and customers in the event of violations.

benefit

  • Reduce liability by deleting sensitive data and PII
  • Enhanced data leakage protection 
  • Maintain compliance with security and privacy standards

Products involved in the solution

EXA8

EXA40

Network Packet Broker (NPB)

EXA24160

 

Guess you like

Origin blog.csdn.net/HongkeTraining/article/details/108702671