https://catalogartifact.azureedge.net/publicartifacts/gigamon-inc.microsoft-sentinel-solution-gigamon-d60f2a8c-1c79-47c7-aee5-f0352d142478/000fe503-1f00-41e7-831d-4107330eae74_Gigamon_logo_Azure.png

Gigamon Connector for Microsoft Sentinel Data Lake (CCF Push)

Autor: Gigamon, Inc

Gigamon Connector exports up to 6,000 application metadata attributes to Microsoft Sentinel

The Gigamon Connector for Microsoft Sentinel Data Lake (CCF Push) solution requires Gigamon GigaVUE Cloud Suite for Azure.

In the AI era, visibility is no longer enough. What’s required is deep observability infused with AI — delivering the ability to extract, analyze, and act on the most relevant network-derived telemetry and insights, along with AI traffic visibility and control.

Gigamon Application Metadata Intelligence (AMI) is a pioneering set of capabilities for getting the visibility and context across the Gigamon Deep Observability Pipeline needed to discover, manage, and secure even complex, multi-tier applications regardless of location: on-premises or in multi-cloud deployments.

The Gigamon Connector exports network-derived telemetry, generated by AMI, into Microsoft Sentinel for analysis. AMI produces rich contextual information about your applications and protocols. Using deep packet inspection, AMI extracts and summarizes data from up to 6,000 attributes spanning over 4,000 apps. AMI empowers Microsoft Sentinel to rapidly spot suspicious activities across hybrid, multi-cloud environments.

Application Metadata Intelligence (AMI) helps you monitor and manage complex digital applications for your digital transformation initiatives. Benefits include:

Derive Actionable Insights
Extract close to 6,000 app-related metadata elements from deep packet inspection to gain deeper context for improved performance and faster troubleshooting.

Boost Security Posture
Discover suspicious network activity, weak ciphers, expired TLS certificates, DNS tunneling, shadow AI usage, and rogue user activity such as crypto mining.

Enhance Situational Awareness
Augment logs with application metadata and business context for monitoring critical environments, workloads and microsegments.