The MetaFlows Security System (MSS) Product Benefits
![]() |
Find security problems quicklyIDS/IPS false positives are disruptive and a waste of time. The MSS offers smarter event analysis that demonstrably improves the detection of actionable network security intelligence. > More |
|
Save money on hardwareThe MSS sensor software can cost-effectively scale on modern, multicore off-the-shelf hardware, using CentOS 6, as a virtual machine or in your cloud-based assets. > More |
![]() |
IT Compliance in minutesComply with a host of regulatory data management requirements with the MSS in under an hour > More |
Plans
Community (Free)Learn More |
CommercialLearn More |
Large EnterpriseLearn More |
|
|---|---|---|---|
| For | Open Source Users | Enterprises with some security staff | Large organizations with significant security staff |
| Features | Real time IDS and Flow monitoring, Intrusion Prevention | + Regulatory Compliance, Network/Cloud Security, Log Management, Vulnerabilty assessment | + Internal Active security |
| Feeds | Emerging Threats (GPL) or VRT (requires customer-supplied Oink code) | +Emerging Threats Pro, SRI MTC | +Custom |
| Sensors | Linux CentOS/RedHat, VMware (Server or ESX4) | + Amazon EC2 (Windows Server 2008 and Linux CentOS instances) | + Bivio, Cybersift appliances |
| Event Storage | Local | MetaFlows Cloud | Private Cloud |
| Description | By creating a new account, users automatically get access to a 14-day trial of the Commercial version of our product with EmergingThreats GPL rules or SourceFire VRT rules. After 14 days, some of the features will drop off and the user will enjoy free access to the community version (no questions asked). | This option is a comprehensive, enterprise-ready Security as a Service solution that allows organizations to quickly become security compliant by pushing all security events and system logs to the MetaFlows cloud infrastructure. Automatic, daily security intelligence feeds, and leading-edge correlation technologies work behind the scenes to simplify event analysis and prioritization. Automated daily reports, hourly email alerts and a very sophisticated browser-based, forensic toolbox make this option one of the most powerful network security monitoring product in the industry. | Run an event storage cloud infrastructure rather than offloading the storage to MetaFlows. Enterprises should choose this option if they want to deploy hundreds of senors and have deep technical resources to manage their own IDS rule set distributions and network intelligence feeds. In this type of deployment, MetaFlows provides all software and integration support in addition to daily intelligence feeds originating from our network of honeypots and all of our partners. |
| Note | The MSS sensor software can run on Linux (CentOS 6 preferred) or as a virtual machine using VMware and can process 6000-7000 rules @500-800 Mbps with an Intel I7 950 processor or @3-5 Gbps with a dual Xeon system. | The Commercial Option features are available for free for the first 14 days afters a user creates a MetaFlows account. The commercial subscription can then be purchased at the end of the trial by adding payment information. |
Included Solutions
|
Advanced IDS |
Flow Analysis & Monitoring |
Intrusion Prevention |
|
Security Information/Event Management (SIEM) |
Security Software as a Service |
Cloud Security |
![]() |
||
Testimonials
Our technology is so revolutionary that it affords nearly 100% customer retention rate. Here is what a small sample of customers are saying about MetaFlows.
|
|
|
|
James Macdonell, Information Security Analyst
Cal State University San Bernardino |
|
|
Add your testimonial
[contact-form-7 id="5974" title="testimonial"]Frequently Asked Questions
If you don't find what you're looking for in our FAQ section, Contact Support and we'll get back to you ASAP!
Q: With other network security monitoring solutions, I have experienced too many false positive and false negatives. What makes MetaFlows different ?A: MetaFlows has developed a ranking algorithm that prioritizes security events according to continuous, global measurements. The ranks are autonomously obtained from a global network of active decoy sensors that, when they are attacked, record the security event information from the attack. The security events that trigger false positives are ranked negatively, thus providing insight into events that should be routinely ignored or turned off. Security events that trigger true positives are ranked positively thus improving their visibility. The integration of Flow and Log analysis with IP reputation feeds from our partners helps reduce false negative rates.
Q: With your cloud-based model, how do I know that my data is secure ?A: With the MetaFlows Security System, packets with sensitive information are only stored on the sensors inside your network (which are highly secure Unix-based open-source systems). So even if the cloud were to be compromised, non of your application data would be exposed simply because it's not there. We only store your security events in our cloud. Security event data exchanged between you and the back-end is encrypted end-to-end: from your browser to our web servers; from the sensor to our web servers; and from the browser/console to the sensors. All authentications are performed using public key cryptography (the same one used to secure your access to your online banking). To secure our cloud we continuously monitor our networks and routinely perform penetration testing of our infrastructure to ensure our computer security.
Q: Does MetaFlows work in a virtualized server environment?A: Yes, our sensor software can monitor network traffic in any environment. In fact, our sensor can also be installed as a virtual machine.
Q: With a virtual sensor, how can I count on my system to run at an adequate speed to work properly ?A: A virtual machine's performance depends on the resources that are given to it: the more memory and processors available, the better it will run. Our sensor technology automatically scales to the capabilities of the hardware or the virtual machine on which it is installed. Our virtual sensor will only take the memory and processors that are allotted to it. The sensor's software continuously monitors the dropped packet rate and provides real time feedback on its operation which is viewable from the MetaFlows console.
Q: Can I generate custom reports so I can show what I find with the rest of the organization ?A: We have a number of reports available at this time and will be continuously adding new ones with flexibility in mind. The beauty of the SaaS model is that you will get any and all upgrades without ever having to perform any system management operations.
Q: How does MetaFlows separate the script kiddies from dedicated attackers?A: Our global and local correlation technologies are continuously fed intelligence data that prioritizes security incidents based on event ranking and IP reputation.
Q: I noticed you have a free trial subscription offer. What do I not get in my free subscription versus when I subscribe to your security solution ?A: Before you can add monthly subscriptions or yearly licenses, your account must be converted from a trial account to a subscription account. This allows you to take advantage of a number of features only available to subscription users:
• Daily signature updates from Emerging Threats • Private online 1-on-1 chat support, plus priority e-mail support • Use unlimited sensors on a single account • MetaFlows historical reporting with unlimited storage capacity for 1 year Q: I like the ease of use of a SaaS model. Can I buy an annual subscription versus a month to month subscription ?A: Absolutely, you can. MetaFlows allows you to purchase either a month to month subscription or an annual subscription.
Q: Can MetaFlows provide 24x7x365 support on a global basis?A: Yes, MetaFlows offers chat, email, and support ticket capabilities as our primary customer touch points. We have also produced a series of tutorial videos to assist subscribers in download and installation, tuning, and other key self-help tools. Phone support is limited to 9AM to 6PM PST.
Partnerships...
|
|
||
|
|
|
|
|
More on our partnerships Become a MetaFlows partner |
||
Schedule a Live Demo
Hassle-free. See it to believe it.





James Macdonell, Information Security Analyst