ThreatSync+ NDR Beta Testing

Welcome to the ThreatSync+ NDR Linux Collection Agent Beta!

Sign In to:

  • Provide feedback on the Linux Collector
  • Complete tasks and surveys
  • Provide bug reports, suggestions and praise

What is ThreatSync+ NDR Linux Collection Agent?

ThreatSync+ NDR Linux collection agent is a native Linux service that you can install on the certified Ubuntu server using WatchGuard Agent. NDR Collection Agent receives log data from switches and routers in your network and sends the data to WatchGuard Cloud. The ThreatSync+ NDR Collection Agent listens on:

  • Port 2055 for NetFlow log data from endpoints.
  • Port 6343 for sFlow log data from endpoints.
  • Port 514 for DHCP log data from the Windows Log Agent.

 Why ThreatSync+ NDR Linux Collection Agent?

  • It runs as s native service in the Ubuntu server, starts up automatically on machine reboots.
  • Reports real-time(~5min) status of collector health and services monitoring.
  • Comes with local troubleshooting tool to provide status of the collector and dependent services.
  • Install on a VM of your choice. Supported on VMWare, KVM, Hyper V, Oracle Virtual Box. 
  • Does not require administrator to remain logged in.
     

Best regards,
The ThreatSync+ Team