Security Analytics

cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Cisco CyberSecurity


Welcome to the Security Analytics Board!

Please take a look at our Stealthwatch Information Hub and our Stealthwatch Use Cases.

Forum Posts

Hi guys, The FS is capturing the traffic from the Switch with the help of the SPAN protocol. Few CPU cores show the CPU utilization close to 90%. This usage is in the range of 82%-90% always. So I just want to know if is this normal behavior or if I ...

Vishnu_RR_0-1693821747333.png
Vishnu_RR by Level 3
  • 1057 Views
  • 1 replies
  • 0 Helpful votes

Hi all,I'm new in the communinty, thanks in advance for any help you'd like to provide me.My customer is using Secure Network Analytics version 7.4.2, the product have been licensed, also the license for Threat Intelligence is authorized but the alar...

aradano by Frequent Visitor
  • 2135 Views
  • 2 replies
  • 0 Helpful votes

Hello! We're interested in having a visual representation of the number of connections within a specific subnet. Specifically, if we search for a subnet, such as 192.168.1.0/24, our goal is to have a diagram or chart that illustrates all the hosts wi...

llomjaria by Level 2
  • 1886 Views
  • 2 replies
  • 0 Helpful votes

Hi all,I have  a problem when I try to update the identity certificate of the Manager to a custom one of my own CA.When I update it, I loose the connection to the appliance and I get "Config Channel Down" And according to the documentation, I should ...

Barakat_1-1683897904108.png Barakat_0-1683897852610.png
Barakat by Community Member
  • 1969 Views
  • 5 replies
  • 0 Helpful votes

Stealthwatch flow duration time declare the sesion establishment timing for perticular source ip to destination ip and service.If the connection will stop for 5 min stealthwatch will show the session is stoped and show the time accordingly in flow du...

rajdeep by Frequent Visitor
  • 813 Views
  • 1 replies
  • 0 Helpful votes

We have a "Exfiltration" alarm that triggers between several source hosts and a single target host. For example, I've created a host group A for the source hosts and host group B for the target hosts.How can I stop the "Exfiltration" alarm from trigg...

stipend_0-1680545999096.png
stipend by Frequent Visitor
  • 2443 Views
  • 6 replies
  • 0 Helpful votes