Sign in
Categories
Your Saved List Become a Channel Partner Sell in AWS Marketplace Amazon Web Services Home Help

ExtraHop Packet Basics (Free)

ExtraHop | 8.5.50.1561

Linux/Unix, Other 7.6.0-r2 - 64-bit Amazon Machine Image (AMI)

Reviews from AWS Marketplace

0 AWS reviews
  • 5 star
    0
  • 4 star
    0
  • 3 star
    0
  • 2 star
    0
  • 1 star
    0

External reviews

67 reviews
from G2

External reviews are not included in the AWS star rating for the product.


    Dev S.

Extrahop Reveal(x) 360- An absolute must for Network Visibility

  • November 16, 2022
  • Review verified by G2

What do you like best about the product?
Extrahop provides East-West network visibility and can customize rules, providing deep packet inspection capability to our security team. Extrahop Packet capturing feature plays a vital role in network forensics.
What do you dislike about the product?
Extrahop should extend its partnership with threat researchers and vendors to enrich its intel feeds and database for actionable intel on detections. Also, extend its partnership for API integration with tools like Tanium/SCCM, PAN firewalls etc
What problems is the product solving and how is that benefiting you?
Extrahop provides visibility for network traffic that helps with East-West network segmentation. Extrahop Reveal(x) 360 helps during investigations and One-Click containment during an Incident reducing the response time to a greater extent.


    Zachary P.

Directory Cyber Security

  • November 09, 2022
  • Review verified by G2

What do you like best about the product?
ExtraHop provides detailed visibility of internal network traffic and gives insight into what is expected. This telemetry our other tools do not have and allows for fast isolation of issues.
What do you dislike about the product?
Triggers that drive alerts can sometimes be complex. ExtraHop customer success can step in and aide in their development which addresses this issue. It would be interesting to share solution patterns with other customers.
What problems is the product solving and how is that benefiting you?
ExtraHop helps us visualize what is occurring at a granular level on the network. Specifically down to the application level between hosts improving the time to conclude investigations.


    Hospital & Health Care

Network security monitoring

  • November 09, 2022
  • Review verified by G2

What do you like best about the product?
ExtraHop provides valuable insight into network activities and alerts on anomalies that you can't get from just monitoring logs.
What do you dislike about the product?
Number one issue with ExtraHop is SIEM integration if there is no native connector available. building it through a java script trigger is not user friendly.
Number two issue is threat feeds. We have a high-fidelity threat feed we'd like to add, but we have to make a cludgey system where we download the feed, gzip it, then upload it back to ExtraHop. Please build in native STIX/TAXII feeds to the product.
I'd say trigger complexity is also a downside to ExtraHop. Not many security analysts will be able to understand and write the java code necessary for triggers. It would be nice to have a building block method for triggers where novices could build out most of it with pre-defined blocks fo code, something like a visual workflow.
What problems is the product solving and how is that benefiting you?
There are activities that only occur on the network and will not show up in logs. ExtraHop is able to perform threat and anomaly detection on endopint and application communications that you won't get from your other security applications.
Packet capture is not an easy system to setup. If you purchase the ETA, you have access to valuable packet information that can make a difference in a incident investigation.


    Computer Software

detect and respond to advanced threats

  • November 08, 2022
  • Review provided by G2

What do you like best about the product?
it makes me easy to search and gave good discount code
What do you dislike about the product?
hopefully gives more discounted code next time
What problems is the product solving and how is that benefiting you?
With ExtraHop, do we really need another IT security guy?


    Matthew R.

Very easy to use and lots of good information

  • October 21, 2022
  • Review verified by G2

What do you like best about the product?
I like being able to drill down into the options and get the data I want. I can easily change my mind and go back or what I am looking for.
What do you dislike about the product?
After taking some technical training for the product, I found that you need to invest the time to make a good dashboard for your needs. Having everything at your finger tips is valuable and makes it quick to figure out issues.
What problems is the product solving and how is that benefiting you?
Big issue this has solved is user password lock outs, Where it's coming from and who it is. Also it has helped with being able to see traffic from server to server.


    Devang S.

Extrahop is great tool for getting visibility and proactive protection

  • August 27, 2022
  • Review verified by G2

What do you like best about the product?
Extrahop is earier to deploy from engineering standpoint but from security side, it is great tool for visibility for the east west traffic as well.
What do you dislike about the product?
Extrahop Limitation on the automating the response with integration with the security vendors. This needs scoped for customers.
What problems is the product solving and how is that benefiting you?
It is getting me the visibility for east west segmentation


    Financial Services

Great product!

  • August 12, 2022
  • Review verified by G2

What do you like best about the product?
How accesible the application is. I really enjoy navigating through everything with little to no complications.
What do you dislike about the product?
I do not dislike anything, everything is going well so far for me.
What problems is the product solving and how is that benefiting you?
Whenever i am having trouble with a server i use ExtraHop and it helps me everytime.


    Higher Education

Cannot imagine doing security without Extrahop Reveal(X)

  • August 11, 2022
  • Review verified by G2

What do you like best about the product?
Know what's out there and what is going on in our environment!
What do you dislike about the product?
We have limited interaction with their support which is disappointing because they are top-notch. With that said, it is a great product that has not required much in the way of support.
What problems is the product solving and how is that benefiting you?
Extrahop gives us visibility into all the interactivity of our systems internally and with external systems. It enriches this data by associating threat information with known bad actors and malicious activity and providing actionable guidance and integrating response through our ticketing system, AD, and Firewalls.


    Transportation/Trucking/Railroad

Extrahop is an phenomenal solution which brings NDR to a whole new level with real-time visibility.

  • August 03, 2022
  • Review provided by G2

What do you like best about the product?
Signal metrics and packet capture analysis.
What do you dislike about the product?
Nothing specific on mind, the platform contains all we need for our analysis
What problems is the product solving and how is that benefiting you?
Security events visibility along the timeline, metrics and packet analysis.


    Telecommunications

Easy to use interface - even decrypts tls 1.3!

  • July 31, 2022
  • Review provided by G2

What do you like best about the product?
I was really impressed by the packet capture feature - surprisingly it was able to decrypt traffic, including tls1.3 which is a pain point for the work we do. This is the leader in NDR.
What do you dislike about the product?
Had some issues integrating with fortinet devices, not sure if this is an issue on extrahop or fortinet side. But considering most of the vendors integrated really well, the product is still good.
What problems is the product solving and how is that benefiting you?
NDR is helping us discover the vulnerabilities and insight to what is happening on our network with a single pane of glass view for our security analysts to use.