flowTrack

flowTrack Technical Insight

aurologic flowTrack receives a specific fraction of traffic over ERSPAN or SPAN from internet edge routers across the aurologic network. It analyzes the same, generates session synchronization packets - either sent to flowClone or flowShield directly, as well as implements service discovery on clients egress traffic, allowing machine learning based on GeoIP meta-data.

flowTrack requires synchronous traffic and in certain cases, also manual activation. It enhances DDoS-Protection greatly by features which would be unavailable for traditional asynchronous filtering methods, while circumventing the need of routing or mirroring egress traffic onto flowShield nodes. It is also able to detect services from clients egress packets, such as if a client has a specific application running on a certain port. While it also handles service discovery, flowTrack greatly enhances DDoS-Protection by machine learning capabilities.

Using flowtrack with asynchronous traffic

Customers can get a license for flowtrack, deploying their own appliance within customer infrastructure, while using the aurologic network for DDoS-Protection to absorb large attacks. It is beneficial to keep ingress traffic with aurologic, e.g. to run your own peerings/upstreams for egress, while benefiting from machine learning and service discovery, enriching DDoS-Protection capabilities. The customer deployed flowTrack infrastructure requires a local SPAN cloning any egress traffic meta-data to aurologic. Hardware sizing depends on the customer infrastructure but should be no less than a last generation AMD Ryzen processor with 16 cores.

For more details please contact sales.