Watch that flow go!
Updated July 05, 2022
Watch that flow go!

Score 7 out of 10
Vetted Review
Verified User
Overall Satisfaction with Cisco Secure Network Analytics (Stealthwatch)
StealthWatch is currently being used to analyze NetFlow in our organization. This gives us important insight into what kinds of traffic is going through our network devices and allows us to provide this information to other departments in a much easier and digestible way than before. We have used it to help other departments in their decision making and analytics.
Pros
- StealthWatch is very good at capturing NetFlow.
- Stealthwatch is very good at presenting NetFlow data in easy to understands graphs and charts.
- StealthWatch makes reporting on traffic much easier.
Cons
- The StealthWatch interface is clunky and broken into 2 parts, both an HTML console and a JAVA console. This causes issues as one is completely different than the other.
- Licenses are eaten up very quickly and can be pricey.
- Upgrading StealthWatch is more tedious and time consuming than it should be.
- StealthWatch helps other departments make decisions quickly based on NetFlow data.
- StealthWatch can bring a lot of reporting to the table that can be used to advance project necessities and prove data necessities to management.
I haven't used any other products like StealthWatch in the past.
Resilience and Reliability
Cisco Secure Network Analytics can definitely provide more visibility into your network environment, allowing you to monitor East-West traffic as well as North-South traffic. This can be essential for a NOC or your I.T Security team and well worth the investment in setting up the netflows across your environment in order to get the most out of this product.
Leaders need to realize that we are long past the point where just an egress firewall is enough to maintain a good security posture. Corporations need to monitor the traffic both coming into their network and the traffic traversing inside of their network. Products like this allow a lot more visibility into your network that is not availability with just a firewall or syslog.
- We've used CSNA to track traffic of medical devices that we didn't have visibility into previously.
Comments
Please log in to join the conversation