PacketRAID PORTABLE & PacketRAID SERVER

PacketRAID is the all-in-one network recorder.  Providing you with recording, playback and analysis capabilities in both portable and fixed server platform configurations. We have two variants available a ruggedised portable unit and a rack mounted version. Further details are highlighted below.

The PacketRAID products are high speed multi-format data recorders which have been purposely designed for use in network security applications and test labs. They offer a single-platform solution to a wide range of test and monitoring requirements, combining ease of use with excellent performance and reliability.

Combined with it’s 10G or 40G network connectivity and generous storage volume, it readily forms the core of a comprehensive high-throughput capture and analysis system.

strap_line.png
 
accessible_data_55px.png
 

ACCESSIBLE DATA

All packet captures are stored as standard files on a Linux XFS partition, and have no special requirements for access. The partition can be shared via NFS or SMB to make the recordings available to other servers, and the GUI provides an import/export capability for copying recordings to and from archive storage.

huge_fast_storage_55px.png
 

HUGE FAST STORAGE

Each recorder comes equipped with up to 96TB SSD RAID array which delivers extremely high performance. The use of solid state drives allows full line rate recording across multiple ports at any speed, and also enables concurrent record and replay without impacting performance.  Making the platform extremely flexible for both lab and field use.

remote_automation_55px.png
 

REMOTE AUTOMATION

PacketRAID provides command-line access as well as a fully featured JSON API, allowing all aspects of its operation to be controlled by scripts or applications either locally or over a network.  It can easily be integrated into Continuous Integration environments using frameworks such as Jenkins, and is well-suited to use in automated testing and analysis.

 
open_platform_55px.png
 

OPEN PLATFORM

Built on standard Linux, and offers a completely open platform to users. Full administrative (root) access is provided allowing customers to install their own software and applications as required, or apply their own security lockdowns and authentication settings.

support_maintenance_55px.png
 

SUPPORT AND WARRANTY

PacketRAID comes with a comprehensive 12-month RTB hardware warranty and support package, including regular software updates and technical assistance.  An enhanced support package is also available - please contact us to discuss onsite support options.

tailored_options.png
 

TAILORED SOLUTIONS

PacketRAID can be supplied in a variety of combinations, in either a 2U high rack mount version or a portable ruggedised version.  We will discuss with you your precise requirements to ensure that our product is supplied to you tailored to meet your exact specifications.

down_arrow.png
Portable+PacketRAID.png

PacketRAID PORTABLE

This portable version is the go-to option for fieldwork.  It's very well suited for use in environmental survey or incident response work carried out; at remote locations, datacenters,  equipment rooms, and customer premises.  It's equally at home in use within test labs and continuous integration environments.  Where it's API can be used within test rigs and automated testing routines.

The server is highly portable weighing in at just over 14kg.  It comes supplied in a wheeled padded transit trolley and the computer itself is housed in a fully ruggedised case.  Featuring a drop-down full sized keyboard and track pad it is designed to be easy to use from the off.

 


FEATURES

Ease of use has been a key factor throughout the design process.  All functions (record, capture and replay) are controlled through the intuitive user interface.

Supplied with removable SSD RAID storage, providing a platform of scaleable storage for the signals and network traffic you are likely to need to record.  Storage management is also performed using the user interface. The system is capable of recording loss less network traffic at a sustained rate of up to 40Gbps. 

A fully featured suite of analysis tools provides you with the capability to undertake in-depth analysis of any network traffic recorded.  Alternatively PCAP files can be recorded and stored for inspection and off-line analysis back in your office or lab.

All recorded formats can be replayed, including raw mode, making it an extremely flexible tool.  The replay format does not need to be the same as the original recorded format.  For example, ethernet traffic recorded at 40Gb/s LAN can be replayed as 10Gb/s WAN. 

 
record_analyse_replay_400px.png

packetraid_portable_closeup.png

SPECIFICATIONS

  • 8-core hyper-threaded Xeon E5 v4 3.2GHz

  • 128 GiB 2166MHz ECC DDR4

  • 48TB removable SSD in RAID array

  • Up to 12 ports (1G, 10G) for;

    • 12 x LAN/WAN/PoS/Raw or;

    • 3 x 40G ports

  • IPMI BMC controller for remote management

  • Dual port 10GbE or single port 40GbE NIC

  • Stock Linux kernel with XFS filing system

  • Field portable chassis

  • Precision time-stamping and accurate replay

down_arrow.png
 
intel-server-chassis-h2224 transparent.png

PACKETRAID SERVER

The 2U rack mounted system delivers unparalleled performance, as well as it’s massive high speed storage which will meet all of the demands placed on it.  The disk capacity can be expanded up to 96Tb of onboard SSD storage.

Featuring the same UI as it's portable sibling, it brings all of the same ease of use functionality.  So capture, analysis and replay is a breeze.

The systems is well suited to the cyber security challenges placed on today's networks.   With a variety of use cases covering: DDOS attack analysis, cyber security & cyber forensics, network environmental survey, and in the identification of anomalous behaviours.  Furthermore, the platform also makes an ideal tool for use in a wide range of test lab environments. 


FEATURES

PacketRAID delivers remarkable performance and flexibility.  The ‘Raw Analysis’ mode allows signals with complex multiplexing to be snapped and decoded, packets extracted and structure displayed.  In the case of SDH/SONET, individual channels or GFP groups of interest can then be selected and recorded for longer periods.

All capture/replay ports are capable of operating independently.  Ports can support: LAN ethernet at both 10Gb/s and 1Gb/s, 10Gb/s WAN ethernet (over SDH/SONET), and STM64c POS.  Providing a comprehensive range of packet capture and raw recording of: OTU2, OTU2e, OTU1, STM-1/4/16/64 and 100MbE.

Huge I/O and processing performance, combined with a large amount of RAM makes PacketRAID an ideal platform on which to analyse recordings once made.  The intuitive GUI gives you immediate access to a wealth of data including: signal type, protocols, data rates, error rates, and payload information.

 
record_analyse_replay_400px.png

supermicro_closeup.png

SPECIFICATIONS

  • Dual 8-core hyper-threaded Xeon E5 v4 3.2GHz

  • 256 GiB 2166MHz ECC DDR4

  • 96TB removable SSD in RAID0/50/60

  • 2-12 10G ports for LAN/WAN/PoS

  • Dual hot-swap 1kW PSUs

  • IPMI BMC controller for remote management

  • Dual port 10GbE or single port 40GbE NIC

  • Stock Linux kernel with XFS filing system

  • 2U rackmount chassis

  • Precision time-stamping and accurate replay

down_arrow.png
 
packetdiode.png

PACKETDIODE

The PacketDIODE appliances provide a fast, secure and reliable method of bulk transferring large files across security boundaries. 

A unidirectional fibre link between the Sender device (PacketDIODE Tx) and the Receiver device (PacketDIODE Rx) guarantees that the data only physically flows one way.  The high throughput fibre connectivity enables data transfer at speeds up to 20Gbps.

All file transfers are checked for data integrity on multiple levels, ensuring that the file sent is exactly the same as the file received.  Files failing these validation checks are immediately quarantined.  For specific file types, their internal structure is also validated.


FEATURES

The devices are supplied as an appliance pair, complete with cable looms and patch panel.  The PacketDIODE software can be configured in around 10 minutes, and the intuitive GUI means that you can be securely transferring files almost immediately.

The PacketDIODE appliances enable secure data transfers of very large files (10TB+).  The integrity of each transfer is critical therefore our security architecture provides that necessary level of confidence.  The transfer of data is subjected to a range of in-depth validation and verification checks.

The diode capability provides a simple yet very secure way to export extremely large files across security boundaries.  These different security domains are usually separated ('air-gapped') and typically have no physical network interconnectivity.

All data is transferred in real time from device (Tx) to device (Rx) across a unidirectional fibre optic link.  This unidirectional fibre connection guarantees that there is no return path for data to egress.  It also removes the need for the use of any removable media, in itself eliminating a significant security risk.

 
packetdiode_icons.png

 

SPECIFICATIONS

  • Super fast transmission rates (up to 20Gbps)

  • Very large datasets can be transmitted (10TB +)

  • Multi stage file transfer verification

  • Intuitive and information rich user interface

  • Quick and simple setup and configuration

  • Appliance based hardware platforms

  • Supplied with breakout panel and fibre cabling

down_arrow.png
eye-3374462_1920.jpg

ANALYTICS

PacketRAID’s ‘Raw Analysis’ mode allows signals with complex multiplexing to be snapped and decoded, packets extracted and structure displayed.  In the case of SDH/SONET, individual channels or GFP groups of interest can then be selected and recorded for longer periods.

Huge I/O and processing performance, combined with a large amount of RAM makes PacketRAID an ideal platform on which to analyse recordings once made.


The intuitive GUI gives you immediate access to a wealth of data including: signal type, protocols, data rates, error rates, and payload information.

The analysis suite allows users to readily access and visualise information such as:

  • Bit, packet and error rates monitored

  • Stats archived per port and per recording

  • Graph and zoom data interactively

packetraid_screenshots.png

moloch_screenshots.png

Either PacketRAID variant can also be supplied with a pre-loaded version of Arkime (formerly Moloch).  This provides a further level of analysis capability.

This offers the ability to very easily look at the data from the captured PCAP files in a number of different ways.  These PCAP files can be loaded into Arkime for:

  • TCP session analysis

  • IP geolocation identification

  • AS breakdowns

  • Filtering

  • Searching

down_arrow.png

ENABLING COMPLIANCE

PacketRAID has been designed to assist in regulated environments where there are compliance requirements relating to visibility and retention of recordings.  Fine grain security allows permissions to be set on individual recordings or at a folder level, restricting visibility to only those authorised users.

The GUI enables expiry periods to be set either globally or on  individual captures, and the recorder will generate alerts automatically as recordings approach or pass these deadlines.