IT Management Made Simple with Ipswitch’s WhatsUp Gold Presented by: Dennis Wøldike Agenda Agenda • Corporate Overview • WhatsUp Gold Solution – WhatsUp Gold Foundation Platform – WhatsUp Plug-ins – Latest Addition: WhatsUp Gold Event Log Management Suite • Demo • Q&A About Ipswitch Develop easy to use software for: Network Management Secure File Transfer Messaging & Collaboration 100 Million users in over 60 countries Private U.S. company Founded in 1991 by Roger Greene Profitable since 1991 200 employees worldwide One of a few, non-VC funded companies Over $1.5M to Children’s Charities Network Management Division • • • • • • • 19 years in the network management market 100,000+ networks monitored Tens of millions+ devices monitored Completed 2 acquisitions in 2009 Record sales, profitability and profits in 2009 40% CAGR over last 4 years Headquartered in Lexington, MA – Offices in Atlanta, GA; Salt Lake City, UT; San Francisco, CA – International presence : Germany, England, France, Netherlands, Italy & Japan KK The Makers of WhatsUp Gold Solutions WhatsUp Gold Customers 6 WhatsUp Gold Product Family WhatsUp Gold: Foundation Platform Standard: entry level management Premium: adds system and application management Distributed: for larger customers with multiple locations CORE PRODUCT MSP: for small VARs and Managed Service Providers IT Management Platform: WhatsUp Gold Discover - Map - Monitor - Alert - Report Discovery Maps Monitoring Real-time graphs Reports Alerts WhatsUp Product Family 50000 (multiple servers) 5000 2500 Number of Devices Monitored WhatsUp Gold Standard Small & medium Business (SMB) Single Site Standard monitoring WhatsUp Gold Premium SMB to Enterprise WhatsUp Gold Distributed & MSP Large Business to Enterprise Multi Site Premium monitoring MSP Plug-ins WhatsUp Gold Plug-ins 12 Plug-in Plug-in Plug-in Plug-in Core Products Failover Manager with bi-directional High Availability Plug-in WhatsUp Plug-ins: Extensible Architecture WhatsVirtual Virtual Server Management Coming Soon: Vmotion and High Availability (HA) cluster support Flow Monitor & Publisher Network Behavior Analysis WhatsConfigured Change & Config Management VoIP Monitor Network QoS Measurement WhatsConnected Layer 2/3 Discovery & Mapping WhatsUp Gold: Application, Fault and Performance Monitoring WhatsUp WhatsVirtual : Virtual Server Management • Discover and map VMware ESX and ESXi hosts and their associated guest systems – Understand virtual resources to physical server mapping to increase operation efficiency • Monitor accurate utilization and resource consumption metrics through the VMware API to ensure optimal performance • Get alerted in real-time when utilization on host systems or virtual machines breach thresholds for rapid problem resolution • Actively control virtual machines ad-hoc or on a scheduled basis using VMware tools (start, stop, suspend, reset…) from the same console Manage physical and server resources from a single console to quickly identify the root cause of a problem anywhere in your network WhatsUp WhatsVirtual Capabilities • Integration with WhatsUp Gold and VMware API • Reports – Single discovery of physical and virtual resources – Single console monitoring for all infrastructure and applications – Alerting and escalation policies for rapid problem identification through Alert Center – Accurate tracking of performance metrics for a cluster or for individual VMs – VMware Management Actions (reset, shutdown guest, take snapshot, power off, etc) Vmotion and HA support coming soon! • Server performance reporting including CPU, Memory, Disk and Network Interface utilization metrics • Virtual machines reports including • Virtual Host Attributes • Virtual Machine Instant CPU Utilization • Virtual Machine Instant Memory Utilization • Virtual Machine Instant Disk Utilization • Virtual Machine Instant Interface Utilization Manage Virtualized Servers’ Performance 15 Oversee Virtual Machine Performance Single Console to Manage Applications, Network Devices, Physical & Virtual Resources 18 Plug-in Plug-in Plug-in Plug-in Core Products Failover Manager with bi-directional High Availability Plug-in WhatsUp Plug-ins: Extensible Architecture WhatsVirtual Virtual Server Management Flow Monitor & Publisher Network Behavior Analysis Coming Soon: NBAR & CBQoS support WhatsConfigured Change & Config Management VoIP Monitor Network QoS Measurement WhatsConnected Layer 2/3 Discovery & Mapping WhatsUp Gold: Application, Fault and Performance Monitoring WhatsUp Flow Monitor: Network Traffic Monitoring & Analysis • Determine exactly which users, applications or hosts are consuming network bandwidth • Track and resolve network traffic or congestion problems • Ensure critical business applications get the bandwidth they need • Measure bandwidth usage – Verify ISP providers billing – Plan for spikes in usage to avoid dropped packages or delays • Secure your network – Identify the introduction of viruses and worms – Detect DOS attacks and other rogue activity directed at your network Resolve intermittent network performance problems and ensure QoS (Quality of Service) WhatsUp Flow Monitor Capabilities • NetFlow, sFlow, J-Flow and IPFIX support – Extensive support for switches and routers from Cisco, Juniper, Foundry, Extreme, Enterasys, Packeteer, 3Com and others • Comprehensive reports – Top protocols, applications, conversations, senders, receivers, conversation partners, failed connections, domain, country… – Traffic throughput and usage % information – 95th Percentile Reporting in Flow Monitor interfaces • NSEL (NetFlow Security Event Logging) Support – Cisco’s ASA software v8.2 implementation of NetFlow • Configuration & mgmt – Role-based access to reports – Configuration and management of flow data retention policies • Real-time Threshold Based Alerting – Quickly detect, troubleshoot and resolve traffic bottlenecks and malicious network behavior. NBAR & CBQoS support, new stacked time graphics coming soon Interface Traffic Monitoring & Analysis 21 Application Traffic Monitoring & Analysis Top-X Ressource Usage Analysis (examples) 23 Application and Usage Monitoring (examples) 24 Network Traffic Troubleshooting (examples) 25 Real-Time Alerts on Bandwidth Usage Violations WhatsUp Flow Publisher: Extends Traffic Monitoring into Non Flow-enabled Devices • Capture raw network traffic and convert it into standard NetFlow v1, v5 or v9 records • Lightweight agent/collector architecture – Agent captures traffic from any mirrored switch port, network TAP (Test Access Point) or from Windows servers – Collector aggregates traffic information across all agents • Relies on WhatsUp Flow Monitor for advanced reporting & alerting – Seamless integration – Equal visibility across native & non-native NetFlow records – Access to over 40 flow management reports via WhatsUp Gold web and mobile access Extends Flow Monitor to provide network traffic visibility across every network device and segment WITHOUT having to upgrade any hardware Flow Publisher – Flow Monitoring for Every Network Server with Flow Publisher agent Installed TAP Server based agent forwards NetFlow records to Flow Monitor collector TAP forwards bi-directional traffic to Flow Publisher agent ` WhatsUp Gold and Flow Monitor collector ` Switch Flow Publisher agent on PC Switch forwards mirrored traffic to Flow Publisher agent Agent forwards NetFlow records to Flow Monitor collector Flow Publisher & Flow Monitor Integration 29 30 Plug-in Plug-in Plug-in Plug-in Core Products Failover Manager with bi-directional High Availability Plug-in WhatsUp Plug-ins: Extensible Architecture WhatsVirtual Virtual Server Management Flow Monitor & Publisher Network Behavior Analysis WhatsConfigured Change & Config Management Automate change and configuration management of network devices VoIP Monitor Network QoS Measurement WhatsConnected Layer 2/3 Discovery & Mapping WhatsUp Gold: Application, Fault and Performance Monitoring WhatsUp WhatsConfigured: Network Configuration & Change Management • Automate configuration and change management tasks to eliminate human error – Schedule and execute configuration changes for individual or groups of network devices to save time • Enforce reliable policy monitoring whenever a configuration is backed up • Alert on configuration changes or policy failures and restore a known good configuration as required to minimize downtime • Compare stored startup or running configuration files to reduce troubleshooting efforts • Maintain audit trails of all configuration changes to ensure accountability and traceability Ensure that all network device configurations are accurate and not contributing to network problems WhatsUp WhatsConfigured Capabilities Configuration Management – Scheduled backup of running and startup configurations – Upload of configuration files – Global Search of configuration files – Secure File Storage – Automated task script execution – Support for SSH, Telnet and TFTP – Extensive device support • Cisco, Juniper, HP, Foundry, Dell and Extreme Change Management • • • • • Policy based monitoring to ensure compliance with internal standards or federal regulations Alerts on configuration change on a monitored device Alerts on failure of a scheduled task File compare – Manual or automated alerts Device Password Change – Single device or bulk 32 Automate Configuration Tasks Compare Stored or Running Configuration Files 35 Plug-in Plug-in Plug-in Plug-in Core Products Failover Manager with bi-directional High Availability Plug-in WhatsUp Plug-ins: Extensible Architecture WhatsVirtual Virtual Server Management Flow Monitor & Publisher Network Behavior Analysis WhatsConfigured Change & Config Management VoIP Monitor Network QoS Measurement WhatsConnected Layer 2/3 Discovery & Mapping WhatsUp Gold: Application, Fault and Performance Monitoring VoIP Monitor – Know your Network Quality IP Wide Area Network H.323 or SIP Signaling VoIP Enabled Router VoIP Server Firewall Based on Cisco IPSLA protocol Performance monitoring based on Jitter, Latency, Packet Loss ICPIF (Calculated Planning Impairment Factor) and MOS (Mean Opinion Score) Constant monitoring and alerting on quality loss (MOS) Detailed trend analysis and historic review 37 Plug-in Plug-in Plug-in Plug-in Core Products Failover Manager with bi-directional High Availability Plug-in WhatsUp Plug-ins: Extensible Architecture WhatsVirtual Virtual Server Management Flow Monitor & Publisher Network Behavior Analysis WhatsConfigured Change & Config Management VoIP Monitor Network QoS Measurement WhatsConnected Layer 2/3 Discovery & Mapping WhatsUp Gold: Application, Fault and Performance Monitoring WhatsUp WhatsConnected: Full Layer 2/3 Network Discovery & Mapping • Know exactly what devices are on your network, where they are and how they are related – Simplify troubleshooting tasks by establishing or eliminating device connectivity as the problem source • Quickly search and examine how devices are connected to minimize potential conflicts • Locate “forgotten” hardware to reduce costs • Eliminate manual network documentation tasks to save time • Accurately discover, map and document associations between physical servers & virtual resources from one console Stay in continuous control of network topology and network asset information as your network grows or evolves WhatsUp WhatsConnected Capabilities • Robust Discovery – – – – • Map & Visualize – – • Scheduled or ad-hoc Layer 2/3 and VLAN connectivity Devices without IP address Auto-creation of device dependency chains Auto-creation of topology maps Displays both physical and virtualized infrastructures Search – – Quickly zero in to find out what’s connected to what Built-in tools such as Layer 2 Trace and IP/MAC Finder • Network Inventory − Asset Inventory (Manufacturer / Model, Serial Number, Hardware / Software / Firmware Versions, Chassis, Power Supplies / Fans) − Device Connectivity − Bridge Port Utilization • Document & Track Changes – – Export network maps to Microsoft Visio, CSV or Excel Establish an initial baseline and understand device additions and network design changes over time Network Topology Views Document your Network Inventory 42 Plug-in Plug-in Plug-in Plug-in Core Products Failover Manager with bi-directional High Availability Plug-in WhatsUp Plug-ins: Extensible Architecture WhatsVirtual Virtual Server Management Flow Monitor & Publisher Network Behavior Analysis WhatsConfigured Change & Config Management VoIP Monitor Network QoS Measurement WhatsConnected Layer 2/3 Discovery & Mapping WhatsUp Gold: Application, Fault and Performance Monitoring WhatsUp Gold Failover Manager • High Availability Assurance – Automatic failover capability ensures that a secondary system is always ready to take over if the Primary WhatsUp Gold system in impaired • Minimized risk of “dark periods” – Protects business operations at all times by maintaining infrastructure visibility even when the primary monitoring system is down – Maintains integrity of SLA reporting through continuous visibility of monitored infrastructure and services • Efficient and highly productive operation – Automation and intelligence ensures that failover can be executed without human intervention • Flexible coverage – Failover can protect against impairment to the whole WhatsUp Gold system or specific components like data collection, alerting, discovery or individual plug-in services WhatsUp Failover Manager Capabilities • Data Loss Protection • Bi-directional Automation – Shared database to maintain important historical reporting data • High Availability – Secondary WhatsUp Gold system running in standby mode ensures your network will continue to be monitored if • your Primary WhatsUp machine goes down or has problems – When Primary WhatsUp Gold fails, Secondary automatically takes control. When Primary comes back on-line, Secondary is placed back in standby mode Easy Setup – Installation walks you through a straight-forward configuration – Management console allows manual transfer of monitoring responsibilities Failover Manager – Scenario 1 shared DB on secondary system Failover Manager – Scenario 2 shared remote DB Let’s Review WhatsUp Gold Differentiators- IT Mgmt Made Simple • Deploys in a matter of minutes versus weeks or months – Frees up IT personnel time that can be used for critical tasks • Extensible and complete solution – Organizations can buy the right components to support their business goals • • • • • • Monitor network devices, servers and applications with WhatsUp Gold Discover (layer 2/3) and document a network with WhatsConnected Automate configuration & change management with WhatsConfigured Integrated monitoring across physical & virtual resources with WhatsVirtual Monitor and analyze network traffic with Flow Monitor & Flow Publisher Failover & High Availability Assurance with WhatsUp Failover Manager • One pane of glass, one integrated discovery – Track and resolve problems anywhere in your infrastructure • Web and Mobile Access for flexible monitoring on the go • Flexible licensing model – Based on servers and workstations – simple, no hidden tech support costs – 19 years of experience, proven products & competitive pricing WhatsUp Gold History Tour 2004 : WUG 2005 •Initial Web UI •WMI monitoring 2003 : v8 Enhanced event mgmt with SNMP v1 1991 : Simple, up and down mgmt using Ping 2005 : WUG 2006 •Performance monitors •Custom actions 2007: v11 •WMI application monitoring •SQL & Exchange •Web UI rewritten 2007 Oct 2008 : Application Traffic Visibility with Flow Monitor 1.0 & Network QoS measurements with VoIP Monitor Dec 2008 : Layer 2 Discovery with WhatsConnected 1.0 49 2008 : v12 •New SNMP MIB Mgmt tools •Plug-ins started 2008 2009 Oct 2009 : Change & Config Management WhatsConfigured 1.0 Dec 2009: Non NetFlow Traffic Analysis Flow Publisher 1.0 2009 : v14 •New Alert Center •Mobile Access •Linux/Unix monitoring –SSH •Hardware monitors 2010 2010 : v14.3 Coming soon! Mar 2010 : •High Availability with Failover Manager 1.0 •Native VMware API Mgt WhatsVirtual 1.0 WhatsUp Gold v14 Summary And our Plug-ins: Flow Monitor, WhatsVirtual, WhatsConfigured… • Web & Mobile Interface – So you can monitor your network on the go • Performance & Hardware Monitors – CPU utilization, interface utilization, memory, latency, temperature, Fan…. • Unix/Linux Monitoring – SSH Monitors and Actions • Alert Center – Consolidated Alerting & Notification Management in a Single Console – Configurable alert/alarm escalation • WMI Application Monitoring − SQL, Exchange, SQL queries • Blackout Summary Notifications – Get a report when you are back detailing what happened while you were away • Custom Actions – Jscripts, Vbscripts, re-start • Synthetic Transaction Monitoring – HTTP, HTTPS and FTP – Find problems before real end-users are impacted WhatsUp Gold Solution Benefits • Rapid time to value, extensible architecture, easy to use & install – Discover everything deployed in your network – Receive real-time alerts to ensure rapid response to a network outage, network traffic bottleneck or a security threat – Simplify troubleshooting tasks thought a unified view and a single console – Automate administration tasks, from corrective actions to configuration changes – Custom reports including detailed hardware inventory, performance, policy compliance, bandwidth usage or audit trails For you: Scale up or down to fit your customer needs and budgets Ensure customer satisfaction = more business for your organization Licensing & Pricing WhatsUp Gold Licensing & Pricing • WhatsUp Gold & WhatsUp Gold plug-ins functionality are controlled by your license – When upgrading, or after purchasing an additional plug-in, simply refresh the license to immediately access all additional functionality --no need to re-install or install anything new • Our per device pricing model is fair, simple, easy to explain --and easy to budget for! • Pricing is tiered-base across all editions & for all plug-ins • • • • • • Up to 25 devices Up to 100 devices Up to 300 devices Up to 500 devices Up to 1,000 devices Up to 2,500 devices WhatsUp Gold Licensing & Pricing cont • 3 exceptions – Introductory WhatsUp WhatsVirtual Promotion • US$1,495 until August 15th! – WhatsUp Flow Publisher – WhatsUp Flow Monitor price is based on number of sources • • • • • • • Up to 5 sources Up to 10 sources Up to 15 sources Up to 25 sources Up to 35 sources Up to 50 sources For over 50 sources Obtaining Information About Your License Online information available at: www.myipswitch.com Obtaining Information About Your License cont Online information available at: www.myipswitch.com What is offered with our Service Agreement? • Reception of All Product Updates/Upgrades (including major version releases), free of charge, during the validity of the SA. • Access to our Post-Sales Technical Support Team – Via e-mail: http://www.whatsupgold.com/support/technicalsupport-form.aspx – Phone Support: +1-678-287-0700 • Monday-Friday: 9am to 6pm US EST New Addition to the WhatsUp Gold family: WhatsUp Gold Event Log Management Suite Log Files are Critical Assets to any Organization Log files contain a wealth of information to reduce an organization’s exposure to intruders, malware, damage, loss and legal liabilities. Log data needs to be collected, stored, analyzed and monitored to secure your network or meet and report on regulatory compliance standards like Sarbanes Oxley, Basel II, HIPAA, GLB, FISMA, PCI DSS, NISPOM. This is a daunting task since log files come from many different sources, in different formats, and in massive volumes. WhatsUp Gold Event Log Management Suite Every organization is at a different stage in the log management cycle, and has different needs. This is why the WhatsUp Event Log Management Suite was built using a modular and patented approach. – Event Alarm: Monitor Windows event & Syslog data and notify in near real-time – Event Archiver: Automate log collection, clearing, archiving and consolidation for auditing and security purposes – Event Analyst: Analyze log data and trends and automatically distribute reports to management, security officers, auditors & other stakeholders – Event Rover: View and mine log data for on-the-fly forensics WhatsUp Event Log Management Differentiators • Modular and complete solutions – Organizations can select and buy the right components to support their business goals – Easily collect, store, zero-in, analyze and report on log data • Windows EVT and EVTX formats supported – Allows customers to work with both newer & legacy data • Solutions can be used by IT & non-technical staff – Including auditors and compliance officers – Offers rich out-of-the box reports • Flexible licensing model – Based on servers and workstations – no hidden technical support costs – 19 years of experience, proven products & competitive pricing – Site licensing available for larger accounts EVT was used in older Windows versions such as XP, Server 2003 or NT 4.0. Microsoft's shift to the EVTX format in Windows Vista & Windows Server 2008 Event-Based Monitoring with WhatsUp Event Alarm • Monitor Windows event & Syslog data and notify in near real-time – Immediate problem notification to all key stakeholders – Initiate rapid response processes when you face a network outage or a security threat – Block offenders and follow established security policies • Network security personnel can easily integrate Event Alarm notifications into their operational workflows WhatsUp Event Alarm Capabilities Log Monitoring Alarms & Administration • Dual modes of remote and hosted agent operation • Runs 24/7 as an unattended service on a Server or Workstation • Windows events (Application, System, Security, DNS Server, Directory Service, and File Replication Service Logs) & Syslog messages • Log monitoring history tracking • Recommendations on commonly audited event types (e.g. new user additions, login failures, etc) • Intelligent flood control features to prevent false alarms and duplicates • 100+ predefined alarms • Drag-drop configuration of alarms and notifications • Customizable notification times & options Receive Real-time Notification on Key Events Automate Log Collection & Archiving with WhatsUp Event Archiver • Automatically collects and stores log files for compliance reporting and forensics – Eliminates the process of manually “clearing” and moving log files – Automatically archives log files and backup to comply with regulatory requirements – Scales to collect & store all the log data that you need • Reduce time, cost and effort needed to collect and store log files for rapid Return On Investment WhatsUp Event Archiver Capabilities Log Collection Log Storage • Scheduled collection across systems from one console • Microsoft Access, Microsoft SQL or Oracle DB support • Multi-year data storage in compliance with regulatory requirements • Protects from tampering via cryptographic hashing • Protects against incomplete import by rolling back changes unless the entire process is completed • Data filtering to import only chosen events – Daily/weekly or before a log is full – Archives logs into EVT format, comma-delimited text, and Access or ODBC databases – Compatibility with both Windows EVT and EVTX event logs • Flexible remote and agentbased collection • Automatic DB maintenance Automatically Collect and Store Log Files Analyze & Report with WhatsUp Event Analyst • Analyze and report on log data – automatically or ad hoc – Ensures compliance with internal policies and regulatory requirements – Tracking of the file and folder access and deletion – Custom reports for IT personnel, compliance officers and law enforcement agencies – Gain insight into the effectiveness of network security, user access management & data protection policies • Event analyzing and reporting is vital to the health of any network security conscious business of any size WhatsUp Event Analyst Capabilities Reports & Administration • Easy to use custom report designer • Out-of-the-box reports for network managers, security officers & compliance departments – File and folder access and deletion crucial for compliance – Successful & failed attempts , etc • Automated report distribution Correlation & Analysis • “Windowing” technology to view and correlate events from different sources • Ability to jump to specific dates, sift through logs or scroll them chronologically • 100+ predefined filters • Advanced filtering based on past date ranges, event ID or computer look up Filter, Analyze and Report on Log Files Mine Log Data with WhatsUp Event Rover • View and mine log data for on-the-fly forensics – Discover potential security incidents during routine review – Sort and access data quickly for immediate response to an emergency incident – Minimize human error since security event identifiers have corresponding descriptions • Includes *LogRefiner™ and LogHealer™ to work with EVT and EVTX Windows log formats, alert and even repair corrupted log files *patent pending technology WhatsUp Event Rover Capabilities Log Mining & Viewing Mgmt & Administration • Simplified mining of log data using tree-views • Export of event log data • Maintains log file integrity during review • EVT & EVTX log handling capabilities • Critical security incident discovery • Export grouped event log data to an HTML report and add custom comments • Present summary information upon log opening • Save frequently used filters to a local database for easy access • Perform NTFS compression of the local logs database to maximize storage • Locally cache saved event log information to speed future review Mine Log Data with WhatsUp Event Rover WhatsUp Gold Event Log Management Benefits • Rapid time to value modular approach, easy to use & install – Discover potential security incidents during routine review – Receive real-time alerts to ensure rapid response to a newtork outage or a security threat – Automatically collect, store and archive log files to simplify IT management – Custom reports for IT personnel, compliance officers and even law enforcement agencies – On-the-fly forensics, comprehensive analysis and reports For you: Offer a modular security log management solution to perfectly fit your customer needs and budgets Penetrate new markets or new departments Your customers can manage and secure their infrastructure with WhatsUp Gold Questions? Next Steps Contact your local partner team at info@infinigate.dk Learn more about WhatsUp Gold http://www.whatsupgold.com/whatsnew Take advantage of WhatsUp Gold free 30-day evaluation! http://www.whatsupgold.com/download For additional marketing/pre-sales support & resources http://wugpartner.ipswitch.com/ Thank You!