M86 Security Reporter

The Best Reporting Goes In Depth

M86 Security Reporter

Overview:

Integrates with the M86 Secure Web Gateway 10.0 The M86 Security Reporter (SR) is the most robust, flexible reporting solution available. It manages and stores large volumes of data quickly without impacting performance. And because the M86 SR aggregates data from all SWG and/or WFR appliances in one central console, it further simplifies reporting. It enables organizations to prove compliance, manage productivity and demonstrate the value of their IT security investment easily and cost effectively.

Built on a dedicated MySQL database, the M86 Security Reporter provides customizable, at-a-glance dashboards and executive reports as well as extensive forensic, drill-down reports to prove user intent. It also delivers up-to-the-minute graphical snapshots of Web traffic and bandwidth use.

Highlights

Robust, Customizable Reporting
Choose from pre-set templates or customizable reports that can analyze thousands of data combinations precisely. Reports can be scheduled for automatic delivery to various recipients within an organization.

Flexible Deployment Options
Available as an on-premises appliance, virtual appliance or a combination of both, the M86 SR gives organizations the flexibility to deploy reporting conveniently and cost effectively.

Ease of Use
The M86 SR requires no additional hardware, software or support resources, so installation and management is a snap. Plus, its intuitive design allows a variety of users to run reports easily and quickly.

Extensive Storage Capacity
With a storage capacity of up to 12 TB, the M86 SR can store data for years, rather than the typical 30-day limits imposed by competitive reporting solutions. This enables organizations to provide long-term proof of compliance.


Features and Benefits:


Features Benefits
Robust, Customizable Reporting
Out-of-the-Box Templates or Customizable Reports
  • Intuitive executive reports
  • "Canned" reports
  • Detailed, forensic reporting
  • Trend charting
  • Translates Web traffic data into actionable information easily
  • Provides convenience by generating report types, from highly-detailed to summaries, for various levels of recipients in an organization
  • Saves time through option to schedule automatic delivery of reports
  • Demonstrates value of IT investments (ROI)
12-TB Storage Capacity
  • Uses intelligent packet inspection and monitors all TCP ports to control 100+ applications
  • Enables easy long-term proof of compliance and legal discovery
Virtual and Traditional Appliance Deployment Options
  • Minimizes costs
  • Fits existing hardware processing levels
  • Offers a fully-virtual solution when used with the M86 SWG virtual appliance
Hardware Compatibility
  • Virtual appliance is compatible with various hardware that runs VMWare ESXi 4X or higher
Extensive Processing Capability
  • Translates thousands of data point combinations without any noticeable delay in performance quickly and easily
  • Causes no performance degradation or impact to other network systems
Central Console
  • Simplifies reporting


Benefits

  • Options to Fit Virtual and/or Traditional Environments
    Available as an on-premises appliance, virtual appliance or a combination of both, it gives organizations the flexibility to deploy reporting conveniently and cost effectively.
  • Ease of Use
    The M86 SR requires no additional hardware, software or support resources, so installation and management is a snap. Plus, its intuitive design allows a variety of users to run reports easily and quickly.
  • Extensive Storage Capacity
    With a storage capacity of up to 12 TB, the M86 SR can store data for years, enabling organizations to meet regulatory compliance and legal discovery obligations.
  • Translates Web Traffic into Actionable Business Information
    Pre-set report templates make it easy to analyze thousands of data point combinations and put them into a reporting format that clearly communicates the business impact. All of this is done quickly without any noticeable delay in performance.
  • Causes No Network Performance Degradation
    Processes millions of lines of data without negatively impacting other network systems.

Features

  • Hardware Compatibility
    Virtual appliance works with various hardware that runs VMWare ESXi 4X or higher.
  • Intuitive Executive Reports
    Identify anomalous Web activities quickly through easy-to-read graphical reports.
  • Custom or "Canned" Reports
    Generate "canned" reports using pre-set templates for quick reference, then drill down for more detail and customization.
  • Detailed Forensic Reporting
    Uses detailed drill-down reporting to provide unique criteria that help organizations build compelling forensic reports. User intent is gauged by documenting the URLs visited and the search string used within a search engine text box.
  • Report Memorization, Scheduling and Distribution
    Saves or memorizes specific data inquiries for immediate or future access. Custom reports can be scheduled, executed and automatically distributed via email at a preferred frequency (e.g. daily, weekly, monthly).
  • Archiving
    For large installations or networks that generate significant Web traffic, M86 Security offers attached storage (up to 12 TB) that collects historical data for future inquiries.
  • Real-time Threat Dashboard
    Offers graphical gauge view of online activity, displaying an organizational snapshot of multiple threat categories and top offenders based on predefined thresholds and policies.
  • Alert Notification
    Delivers automatic, predefined notifications via email, SNMP, or as an alarm in the system tray for excessive URL activity or bandwidth usage.
  • Real-time Remediation
    Locks out policy violators or users who engage in potentially threatening activity. The lockout mechanism—activated manually or automatically—can be set to varying levels of restriction, from category lockout to complete quarantine.
  • Bandwidth Management and Reporting
    Provides real-time management and monitoring of inbound and outbound bandwidth activity by protocol, port and user.
  • Trend Charting
    Displays historical trending of Web activity and bandwidth usage based upon predefined categories or protocols.

Deployment Options:

The M86 Security Reporter is available as a traditional appliance, virtual appliance or combination of the two. These options give organizations the flexibility to deploy reporting in the most convenient, cost effective way possible.

  • Traditional appliance
    Deployed as an all-in-one, standalone appliance, the M86 SR requires no additional hardware, software or support resources. This minimizes costs and resources.
  • Virtual appliance
    The M86 SR virtual appliance provides the same level of robust reporting as the traditional appliance, but it deploys as a virtual appliance via VMWare ESXi4—on an organization's hardware of choice. This gives organizations the flexibility to deploy reporting that fits hardware platform requirements, capacity limitations and supported hardware costs.
  • Combination of traditional and virtual appliance
    For organizations that need more than one M86 SR unit, the M86 SR is available in any combination of traditional and virtual appliance options. For example, an enterprise could install a traditional appliance at corporate headquarters and use a virtual appliance at a satellite office that has less space or fewer IT resources.

Appliance Models:

Security Reporter Appliance

300 Series Appliances

M86 Security Reporter 300
Chassis 1/2 wide, 1U set-top or rack mountable using optional tray kit
CPU Dual Core - AMD Turion
Hard Disk 2 x 500 GB 2.5" 7200RPM 16 MB Cache SATA HDD
Memory 2 x 4 GB DDR2-533 SO-DIMM
Storage SATA (250GB available for data storage)
Maximum Users 2,500


500 Series Appliances

M86 Security Reporter 500
Chassis 1U
CPU Quad Core - Intel i7-930
Hard Disk 4 x 500 GB 7200RPM 32 MB Cache
Memory 6 x 2 GB DDR3-1066 Non ECC Unbuffered Memory DIMM
Storage ES2 SATA2 (750 GB available for data storage)
Maximum Users 7,000

M86 Security Reporter 505
Chassis 1U
CPU Quad Core - Intel Xeon processor 3440
Hard Disk 2 x 2 TB SATA
Memory 24 GB DDR3 SDRAM
Storage 1.5 TB available for data storage
Maximum Users 20,000


700 Series Appliances

M86 Security Reporter 700
Chassis 1U
CPU Dual Quad Core - Intel Xeon
Hard Disk 4 x 1 TB 7200RPM 32 MB Cache
Memory 6 x 2 GB DDR3-1066 ECC-Registered w/ Parity DIMM
Storage ES2 SATA2 (1.5 TB available for data storage)
Maximum Users 30,000

M86 Security Reporter 705
Chassis 1U
CPU Dual Quad Core - Intel Xeon
Hard Disk 5 x 1 TB HDs (4 @ RAID 5, 1 hot spare)
Memory 6 x 4 GB RDIMM
Storage 2.3 TB available for data storage
Maximum Users 30,000

M86 Security Reporter 730
Chassis 1U
CPU Dual Quad Core - Intel Xeon
Hard Disk 4 x 500 GB 7200RPM 32 MB Cache
Memory 6 x 2 GB DDR3-1066 ECC-Registered w/ Parity DIMM
Storage ES2 SATA2 HDD (Attached Storage Options)
Maximum Users 30,000

M86 Security Reporter 735
Chassis 2U
CPU Dual Quad Core - Intel Xeon
Hard Disk 5 x 250 GB HDs (4 @ RAID 5, 1 hot spare)
Memory 6 x 4 GB RDIMM
Storage Varies based on attached storage option selected
Maximum Users 30,000

Sample Reports and Dashboards:

Dashboard
Provides an at-a-glance view of top security risks, policy violators and users by request, including areas of concern for futher investigation.

Dashboard

Drill-down Reporting
Within security and productivity reports, viewers can drill down, ad hoc, into any section to get details. For instance, clicking on "category count" for test domain user 12809 will show the nine specific categories that user had browsed. This provides flexibility and convenience as it eliminates the need to export and analyze large amounts of data to find the relevant information.

Drill-down Reporting

Rule Transactions
Displays all security rules trigged and the number of users/IPs responsible to help identify users who engage in dangerous Web activity.

Rule Transactions

Top 20 Sites
A pre-generated report that can be quickly retrieved to provide information on the top 20 sites viewed within an organization.

Top 20 Sites

Category Comparisons
A pre-generated report that can be quickly retrieved to provide an overview of an organization's overall web activity based on categories

Category Comparisons

Real Time Gauges
Unique real-time gauge dashboard view of Web-based threats on the network.

Real Time Gauges

Detailed Reporting
Provides extensive details on Web activities, including a time stamp of a Web request, category, user, user's IP, site, filter action, search string and full-length URL. Helps prove user intent.

Detailed Reporting

Documentation:

PDF File
Download the M86 Security Reporter Datasheet (PDF).