Corelight Sensors with Full Packet Capture
Integrate EndaceProbe always-on packet capture with Corelight Sensors for fast and accurate investigations.
Corelight Sensors are built on Zeek (formerly known as Bro), the powerful and widely-used open source network analysis tool.
Corelight's structured logs use the EndaceProbe's Pivot-to-Vision integration to deliver deep contextual insight for rapid investigation and response. From alerts in Corelight log files, analysts can pivot directly to the packets and respond to security threats with much greater speed and accuracy.
Corelight virtual Sensors can be hosted on the EndaceProbe in Application Dock. Every packet captured and recorded by the EndaceProbe can also be streamed to Corelight Sensors in real time.