Securing Healthcare Networks Using NetFlow Analyzer - A case study
The Client
A not-for-profit health care system headquartered in California with operations across several states in western United States. This organization comprises of than 85 distinct business units, including 20 hospitals with over 3,100 beds, 18,800 employees, numerous clinics and outpatient facilities, 16 home care agencies and three joint-venture retirement centers.
The Challenge
If their WAN went down for any significant time, it had the potential of costing lives as well as thousands of dollars. So they wanted a system that could provide them with greater control over their network infrastructure. The core requirements were identified to be:
Shorten any network downtime by reducing the Mean Time to Repair. They required a system that could produce proactive warnings so that they could address an issue even before the end users were impacted.
Ensure optimum performance of their business critical applications by having a visibility into the applications on the network,
Identify the top talkers in the network – top hosts and destinations
Reduce cost associated with inaccurate bandwidth provisioning
The Solution
ManageEngine NetFlow Analyzer was deployed in this organization to collect and report on NetFlow statistics exproted from their Cisco equipment
Benefits : ME NFA allowed them to perform the following with ease.
Knowing what traffic is using what bandwidth on the network which led to reduced time to troubleshoot network down time
Track WAN activity by application, and to identify and track virus/worm attacks when they occur.
They generate alarms based on thresholds by protocol and when traffic on specific port exceeds a predetermined volume on a specific interface.
Shorter-duration network incidents, knowing what traffic is using what bandwidth on the network, and better capacity planning all indicate that they are benefiting, mainly from "soft dollar" savings by using NetFlow Analyzer.
Availability of tons of data related to bandwidth consumption made them capable of estimating the kind of bandwidth requirements they had to make provision for accurately. This led to "actual dollar" savings
As a network manager you need to be on top of your network to be in control of the day-to-day happenings in your network. Especially, with more and more businesses being increasingly dependent on the internet, it is very vital that you are in total control of your network.Any network outage has to be quickly attended to and fixed right away. More importantly any network incidents has to be pro-actively attended to. NetFlow Analyzer with its proactive alerting mechanisms ensure that you are informed of any network exceptions as it happens. Also the drill down features let you quickly pin down the cause of any network problems and troubleshoot faster.
It is also very essential that you ensure your business critical applications are not starved off bandwidth while non-critical activities like music downloads hog the available bandwidth. By giving you an indepth visibility in to your network and the bandwidth usage statistics you can appropriately set QoS policies. It is also possible to categorize applications that consume bandwidth by port, protocol and IP address. This way you can be fully empowered to ensure that the business critical applications always have the required bandwidth.
As a network administrator you need to have all the reports to take the right decision. Especially when it comes to bandwidth capacity planning decisions the stakes involved are high and even a small mistake can cost huge money. NetFlow Analyzer with its long range historical reporting lets you take the right decisions. Also as a network administrator you need to have periodic reporting to understand how the network is performing. NetFlow Analyzer's automatic report generation feature at scheduled time periods help you with just that.
Should you need any specific information at any point in time, you could just access the application for a quick snapshot. NetFlow Analyzer's dashboard presnet you with all the vital metrics you need to eb aware on as an administrator. You could drill down on it for any further infromation on any specific element of your network.