Hello all!
We run a multi-site medium sized business. Up until know we've been
using ntop for basic network analysis using netflow probes. ntop is a
great tool, but it doesn't have the best reporting functionality and is
quite inflexible with what data you get and how you get it.
Anyways, we're migrating away from our Cisco infrastructure and netflow
is no longer going to be an option. Since we would need to make a lot
of changes to our ntop infrastructure anyway, I think now's the time to
move to a more robust solution.
I'm curious if anyone has used nSight Network Intelligence Console
(http://www.intrusense.com/products). It's supports Linux and Windows
(which is a requirement for us) and does passive network analysis (like
a sniffer).
We've been messing with it in the lab but I'm curious if anyone has any
real experience with it. Since it stores all this network information
indefinitely, I'm curious about performance if you hold data for more
than a year. It would be great if it still performs well and can
correlate data over the course of a year.
Any advice would be helpful.
Thanks.