Dark Reading is part of the Informa Tech Division of Informa PLC

This site is operated by a business or businesses owned by Informa PLC and all copyright resides with them.Informa PLC's registered office is 5 Howick Place, London SW1P 1WG. Registered in England and Wales. Number 8860726.

Vulnerabilities / Threats

Deep-Packet Offerings Proliferate

Ellacoya, Sandvine join Allot in launching new tools for deep packet inspection

CHICAGO -- Globalcomm 2006 -- Service providers' security monitoring capabilities could improve significantly in the near future, if those providers take advantage of new deep packet inspection (DPI) tools rolled out this week at the Globalcomm conference.

Ellacoya Networks and Sandvine Inc., two providers of carrier-class bandwidth and performance monitoring tools, both advanced their DPI offerings, which can be used to study client behavior down to the end user level. The two vendors joined Allot, which demonstrated its newest DPI technology here earlier this week. (See Allot Goes Deep on Packets.)

Agilent Technologies and Ellacoya Networks, a leading provider of carrier-grade IP service control solutions, announced the availability of a joint solution for monitoring, managing, and controlling broadband IP networks. (See Agilent Integrates Ellacoya .) The solution combines Ellacoya's deep packet inspection (DPI) technology, which identifies and classifies service use and performance information at gigabit rates, with Agilent's deep packet analysis (DPA) technology, which monitors and manages key services, to optimize network planning, improve troubleshooting, and deliver service assurance to multi-service IP networks.

Combined, the deep-packet inspection and deep-packet analysis technologies could enable service provider customers to study end user behavior and identify malicious or risky activity in real time.

The two companies have entered into a worldwide agreement under which Agilent has become an original equipment manufacturer (OEM) of Ellacoya's IP Service Control System. Agilent will integrate Ellacoya's system with its broad portfolio of IP solutions. The joint solution initially supports VOIP for wireline and wireless service providers, with support for video, gaming, and IP data services in future releases. The integrated solution will enable the deployment of a single monitoring and control solution for all IP-based services.

The integration of these two technologies brings a unique combination of capabilities. Ellacoya's DPI technology enables service providers to categorize all users and all services all the time; it inspects all application traffic with patented methods and extracts a subset for further analysis. Agilent's DPA analyzes this information to report on application-specific features or traffic patterns for selected users and services. In-context drill-down into the signaling messages enables rapid troubleshooting. The integrated solution also enables the ability to control traffic based on DPI or DPA findings so service providers can provide higher bandwidth and service levels to users of premium services.

Separately, Sandvine Incorporated, a leading provider of intelligent broadband network solutions, launched its PTS 14000 platform: a powerful platform enabling per-subscriber DPI-based policy solutions in service provider networks that are migrating to 10-Gig connectivity. (See Sandvine Intros 10-Gbit/s Traffic Mgr.)

Continued broadband subscriber growth combined with mass market adoption of what were once early-adopter applications like P2P file-sharing, VOIP, online gaming, and other multimedia applications demand increased intelligence in the broadband access pipe, Sandvine officials say. Sandvine’s PTS 14000 platform helps service providers identify the sources of resource contention, including unwanted malicious traffic in the network.

"The increase in bandwidth consumption due to media-rich applications, such as video streaming, along with peer-to-peer file sharing, places a high premium on a service provider's ability to identify and manage traffic," says Vince Vittore, Senior Analyst, Broadband Access Technologies, Yankee Group. "As broadband is increasingly vital to the consumer's daily life, higher capacity and carrier-grade equipment is a requirement for success."

Light Reading staff

Organizations mentioned in this story

  • Agilent Technologies Inc. (NYSE: A)
  • Allot Communications (Nasdaq: ALLT)
  • Ellacoya Networks Inc.
  • Sandvine Inc. (London: SAND; Toronto: SVC)

    Tim Wilson is Editor in Chief and co-founder of Dark Reading.com, UBM Tech's online community for information security professionals. He is responsible for managing the site, assigning and editing content, and writing breaking news stories. Wilson has been recognized as one ... View Full Bio

    Comment  | 
    Print  | 
    More Insights
  • Comments
    Newest First  |  Oldest First  |  Threaded View
    Sodinokibi Ransomware: Where Attackers' Money Goes
    Kelly Sheridan, Staff Editor, Dark Reading,  10/15/2019
    Data Privacy Protections for the Most Vulnerable -- Children
    Dimitri Sirota, Founder & CEO of BigID,  10/17/2019
    State of SMB Insecurity by the Numbers
    Ericka Chickowski, Contributing Writer,  10/17/2019
    Register for Dark Reading Newsletters
    White Papers
    Video
    Cartoon
    Current Issue
    7 Threats & Disruptive Forces Changing the Face of Cybersecurity
    This Dark Reading Tech Digest gives an in-depth look at the biggest emerging threats and disruptive forces that are changing the face of cybersecurity today.
    Flash Poll
    2019 Online Malware and Threats
    2019 Online Malware and Threats
    As cyberattacks become more frequent and more sophisticated, enterprise security teams are under unprecedented pressure to respond. Is your organization ready?
    Twitter Feed
    Dark Reading - Bug Report
    Bug Report
    Enterprise Vulnerabilities
    From DHS/US-CERT's National Vulnerability Database
    CVE-2019-16966
    PUBLISHED: 2019-10-21
    An issue was discovered in Contactmanager 13.x before 13.0.45.3, 14.x before 14.0.5.12, and 15.x before 15.0.8.21 for FreePBX 14.0.10.3. In the Contactmanager class (html\admin\modules\contactmanager\Contactmanager.class.php), an unsanitized group variable coming from the URL is reflected in HTML on...
    CVE-2019-9491
    PUBLISHED: 2019-10-21
    Trend Micro Anti-Threat Toolkit (ATTK) versions 1.62.0.1218 and below have a vulnerability that may allow an attacker to place malicious files in the same directory, potentially leading to arbitrary remote code execution (RCE) when executed.
    CVE-2019-16964
    PUBLISHED: 2019-10-21
    app/call_centers/cmd.php in the Call Center Queue Module in FusionPBX up to 4.5.7 suffers from a command injection vulnerability due to a lack of input validation, which allows authenticated attackers (with at least the permission call_center_queue_add or call_center_queue_edit) to execute any comma...
    CVE-2019-16965
    PUBLISHED: 2019-10-21
    resources/cmd.php in FusionPBX up to 4.5.7 suffers from a command injection vulnerability due to a lack of input validation, which allows authenticated administrative attackers to execute any commands on the host as www-data.
    CVE-2019-18203
    PUBLISHED: 2019-10-21
    On the RICOH MP 501 printer, HTML Injection and Stored XSS vulnerabilities have been discovered in the area of adding addresses via the entryNameIn and KeyDisplay parameter to /web/entry/en/address/adrsSetUserWizard.cgi.