Blog Entries

10. 05. 2021 Tobias Goller Log-SIEM, NetEye

Installing Elastiflow on NetEye SIEM

First of all, I’d like to explain in simple terms what Elastiflow is all about. ElastiFlow is a NetFlow analyzer that works with the Elastic Stack. The Elastiflow Analyzer can collect various network flows, such as netflow or sflow, and write them to Elastic, taking into account the ECS format. In addition, the Elastiflow Analyzer…

Read More
11. 02. 2021 Tobias Goller Asset Management

IPTool: A New GLPI Plug-in

One of my customers, who uses GLPI very extensively for asset management, recently brought me a new request wanting a central overview of their host and IP registration. These host names and IPs are currently being maintained across various applications and tools, although GLPI is used as the central administrative application. As is so often…

Read More
02. 11. 2020 Tobias Goller Unified Monitoring

Tornado Use Case: Receiving Traps

During one of my last customer assignments, I migrated the NetEye Event Handler Trap rules to Tornado. Since many customers use the event handler in a similar way, I’d like to explain here the creation of these rules in Tornado. In the following I’ll briefly explain the following use case: Passive service checks have been…

Read More
15. 07. 2020 Tobias Goller Unified Monitoring

GLPI and Ticketing

At the beginning of the year, the OCS and GLPI asset management solutions were integrated into NetEye 4. And so we have been increasingly implementing projects in this environment. In fact recently I was once again able to activate and configure a ticketing system in GLPI for a customer. It’s always amazing how easy it…

Read More
19. 05. 2020 Tobias Goller NetEye, Unified Monitoring

An Experience with Shutdown Manager in NetEye 4

In one of my last consulting activities, I finally had the opportunity to set up a shutdown policy with the new Shutdown Manager in NetEye 4. As you probably know, the use of a shutdown management solution is particularly useful in a disaster recovery environment. And that’s exactly why I used the Shutdown Manager. Let…

Read More
10. 04. 2020 Tobias Goller Service Management

News from SOS JobScheduler

As you may already know from our other blog posts, Würth Phoenix is an official partner of the German company SOS Berlin, the creator of the SOS JobScheduler. In our role as partner, we not only resell the JobScheduler solution, but also offer consulting activities for SOS JobScheduler implementations, sizing and so on. Today I…

Read More
21. 02. 2020 Tobias Goller Log Management, NetEye

Tornado Use Case with Elastic

Before I tell you about one of my latest customer requirements, I would like to briefly explain what our NetEye Tornado module is. In our user guide you will see it written that Tornado is the successor to NetEye’s Event Handler. It is a plugin-based, stateless, scalable rule matching engine written in Rust, based on…

Read More
17. 10. 2019 Tobias Goller ITOA, Log-SIEM, Machine Learning, NetEye

Experiences with Netflow and Machine Learning in Elastic

Some time ago I was able to use the machine learning functionality in Elastic for the first time. I was astonished at how easy it is to use, and how fast it calculates historical data. In my particular case, I loaded Netflow data into the Elastic database. I wanted to use this data to evaluate…

Read More
08. 07. 2019 Tobias Goller ITOA, NetEye

Exporting Grafana Graphics as a PDF

Ever since they began using Grafana Dashboards in the NetEye monitoring system, my customers have asked again and again whether they can create PDF files of what they see on their Grafana Dashboards. This request must be understood clearly. The use of Grafana dashboards by IT staff is very popular, for reasons such as its…

Read More
22. 05. 2019 Tobias Goller APM, Cloud, Log Management, NetEye

Cloud Monitoring

The new challenge for monitoring solutions is to monitor infrastructure, software, and platforms that run in the cloud, or that are outsourced. The various contract models with cloud providers/outsourcers no longer focus on infrastructure monitoring, such as monitoring the fans or power supply in a physical server, but rather the availability and performance of applications,…

Read More
17. 04. 2019 Tobias Goller NetEye, Predictive Analysis, Unified Monitoring

MSSQL Performance Monitoring: The Sequel

Due to the very positive customer feedback on our extended MSSQL performance monitoring article, I would like to briefly highlight this functionality. We have been implementing systems for MSSQL performance monitoring for a long time, offered either as a managed IT service, or on-premise depending on the requirements. Previously, we recorded and evaluated counters such…

Read More
27. 02. 2019 Tobias Goller Cloud, NetEye

NetEye 4 and Managed IT Services

As you all know, NetEye 4 is offered as an appliance or virtual machine. But today I want to talk about cloud and managed IT services using NetEye 4. As a foreword I would just like to briefly explain what managed IT services are: A managed IT service is a solution that is delivered by…

Read More
15. 10. 2018 Tobias Goller Log Management, NetEye

NetEye 4 Log Management with Search Guard

With the release of NetEye 4, we have also redesigned the Log Management module. In this blog post I would like to briefly discuss the main innovations and improvements in NetEye 4 Log Management. First, the management and configuration interface of NetEye 4 Log Manager appears in the unified NetEye 4 layout. Basically, it has…

Read More
04. 06. 2018 Tobias Goller Icinga News, NetEye

NetEye 4 – First Installation Experiences

Over the last few weeks I’ve had the opportunity to install my first NetEye 4 at a customer site, and now I’d like to report to you about my experience. NetEye 4 comes with the Icinga2 monitoring engine, and we are using Icinga Director for managing the monitoring configuration. Obviously we have started to integrate…

Read More
17. 04. 2018 Tobias Goller Business Service Monitoring, NetEye

Automatic NetEye Business Process Creation with the New BP API

In recent weeks I had the opportunity to test the release candidate of the new NetEye BP API. This new API allows you to create and update NetEye Business Processes over the Perl API. Especially when used in large NetEye environments, it was often difficult to create a large number of business processes by hand…

Read More

Archive