網路流量監控產品正式上市,提供了端對端流量可見度
2023-10-18
在分析 DDoS 攻擊或解決其他流量異常問題時,網路工程師通常需要更好地瞭解網路流量。為了解決這個問題,Cloudflare 推出了一款網路流量監控產品,從而為客戶提供整個網路的端對端流量可見度...
\n \n
今天,Cloudflare 很高興地宣布,Magic Network Monitoring(以前稱為「流量型監控」)現已正式上市,可供所有企業客戶使用。去年,Cloudflare 工程團隊大幅改進了 Magic Network Monitoring;我們很高興能夠提供一款網路服務產品,來幫助我們的客戶加快威脅識別、減少漏洞並提升網路安全性。
Magic Network Monitoring 會自動為所有 Magic Transit 和 Magic WAN 企業客戶啟用。該產品位於 Cloudflare 儀表板的帳戶級別,可以透過導覽至「分析與記錄」>「Magic Monitoring」來開啟。Magic Network Monitoring 採用自助式上線流程,所有具有存取權限的企業客戶都可以立即開始設定該產品。
任何沒有 Magic Transit 或 Magic WAN 且有興趣測試 Magic Network Monitoring 的企業客戶都可以使用免費版(對流量有一些限制),只需向其 Cloudflare 客戶團隊提交申請或填寫此表格與專家交談即可。
\nMagic Network Monitoring 是一款雲端網路流量監控器。網路流量是指在使用相同的網際網路通訊協定和一組連接埠的一個來源與一個目的地之間的任何封包流。客戶可以將網路流量報告從其路由器(或任何其他網路流量產生器)傳送至 Cloudflare Anycast 網路上的公共端點,即使流量最初並未通過 Cloudflare 網路。Cloudflare 會分析網路流量資料,然後透過分析儀表板讓客戶瞭解關鍵網路流量指標。這些指標包括:一段時間內的流量(以位元或封包為單位)、來源 IP、目的地 IP、連接埠、流量通訊協定和路由器 IP。客戶還可以設定警示來識別 DDoS 攻擊和任何其他異常流量活動。
將流量資料從您的網路傳送到 Cloudflare 進行分析
\nMagic Transit On Demand (MTOD) 客戶在使用 Magic Network Monitoring 時會體驗到顯著的流量可見度優勢。Magic Transit 是一款網路安全解決方案,可從每個 Cloudflare 資料中心為內部部署、雲端託管及混合網路提供 DDoS 保護和流量加速。當偵測到 DDoS 攻擊時,Magic Transit On Demand 客戶可以啟動 Magic Transit 來獲得保護。
總的來說,我們注意到一些 MTOD 客戶因為缺乏網路可見度工具,而無法快速識別 DDoS 攻擊並採取適當的緩解措施。現在,MTOD 客戶可以使用 Magic Network Monitoring 來分析網路資料,並在偵測到 DDoS 攻擊時收到警示。
Cloudflare 可從客戶的網路流量資料中偵測到 DDoS 攻擊
\n偵測到 DDoS 攻擊後,Magic Network Monitoring 客戶可以選擇手動或自動啟用 Magic Transit 來緩解任何 DDoS 攻擊。
啟動 Magic Transit 以獲得 DDoS 防護
\nCloudflare 的 Magic WAN 和 Cloudflare One 客戶也可以從使用 Magic Network Monitoring 中受益。如今,這些客戶可以極好地瞭解他們透過 Cloudflare 網路傳送的流量,但有時他們可能無法瞭解不是透過 Cloudflare 傳送的流量。這可能包括保留在本地網路上的流量或在雲端環境之間傳送的網路流量。Magic WAN 和 Cloudflare One 客戶可以將 Magic Network Monitoring 新增至其產品解決方案套件中,以針對其網路上的所有流量建立端對端網路可見度。
\nMagic Network Monitoring 透過擷取和分析網路流量資料,讓客戶更瞭解其網路流量。
當路由器(或其他網路流量產生裝置)收集輸入和/或輸出封包資料的統計樣本時,這個過程就開始了。這些樣本是透過檢查每個 X 個封包中的 1 個來收集的,其中 X 是路由器上設定的採樣率。一般採樣率範圍為每 1,000 個封包 1 個到每 4,000 個封包 1 個,具體取決於流量數量、流量多樣性以及路由器硬體的運算/記憶體能力。您可以在 Cloudflare 的 MNM 開發人員文件中詳細瞭解建議的網路流量採樣率。
採樣資料會封裝為網路流量資料的兩種產業標準格式之一:NetFlow 或 sFlow。在 NetFlow 中,採樣的封包資料會依不同的封包特性(例如來源/目的地 IP、連接埠和通訊協定)進行分組。每組採樣的封包資料還包括流量估計。在 sFlow 中,會選擇整個封包標頭作為代表性樣本,並且不會對資料進行任何匯總。因此,sFlow 是一種比 NetFlow 資料更豐富的資料格式,並且包含更多有關網路流量的詳細資訊。收集 NetFlow 或 sFlow 資料樣本後,會將它們傳送到 Magic Network Monitoring 進行分析並提供警示。
\n自一年前搶先體驗版發佈以來,Magic Network Monitoring 取得了長足的進步。特別是,Cloudflare 工程團隊投入了大量時間來提高 MNM 中流量估計的準確性。在 Magic Network Monitoring 的搶先體驗版中,客戶出人意料地報告他們的網路流量估計值過高,與預期值不符。
Magic Network Monitoring 會對其收到的 NetFlow 或 sFlow 資料執行自己的採樣,因此可以有效地擴展和管理透過 Cloudflare 全球網路擷取的資料。提高流量估計的準確性比預期更困難,因為 MNM 解析的 NetFlow 或 sFlow 資料已經建立在採樣的封包資料的基礎上。這會在產品分析中引入多個不同的資料採樣層。
第一版 Magic Network Monitoring 使用了隨機採樣,即選取具有相同時間戳記的網路流量資料的隨機子集來表示該時間點的流量。網路流量資料的一個特性是某些樣本比其他樣本更重要且代表更大的網路流量。為了考慮到這種重要性,我們可以根據每個樣本所代表的流量為其關聯一個權數。網路流量資料權數始終為正數,並遵循長尾分佈。這些資料特性導致 MNM 的隨機採樣錯誤地估計了客戶網路的流量。當隨機選取長尾中的外圍資料樣本來代表該時間點的所有流量時,客戶會在流量分析中看到虛假峰值。
\n為了解決這個問題,Cloudflare 工程團隊實作了一種替代性蓄水池採樣技術,稱為 VarOpt。VarOpt 會在資料流長度未知時從資料流中收集樣本(這是一個用於分析傳入網路流量資料的理想應用程式)。在 MNM 實作 VarOpt 時,我們從一個固定大小的空蓄水池開始,其中填充了網路流量資料的樣本。當蓄水池已滿,並且仍有新的網路流量資料傳入時,舊樣本會從蓄水池中隨機捨棄,並用新樣本取代。觀察到一定數量的樣本後,我們會計算蓄水池中所有加權樣本的流量,即該時間點客戶網路流量的估計流量。最後,清空蓄水池,並用下一組最新的網路流量樣本填充蓄水池來重新啟動 VarOpt 迴圈。
新的 VarOpt 採樣方法顯著提高了 Magic Network Monitoring 中流量估計的準確性,並解決了我們客戶的問題。這些採樣改進為產品正式上市鋪平了道路,我們很高興能夠為所有人提供準確的網路流量分析。
\n詳細的 Magic Network Monitoring 開發人員文件不僅說明了產品的功能,還為新客戶概述了逐步設定指南。當您使用 Magic Network Monitoring 文件時,歡迎提供意見反應,只需按一下「開發人員文件」右上角的「提供意見反應」按鈕即可。
\n我們還在 Cloudflare 的 Discord 社群中,圍繞偵錯設定問題、測試新功能和提供產品意見反應建立了一個頻道。您可以點擊此連結來加入 Cloudflare Discord 伺服器。
\n所有企業方案客戶均可向其 Cloudflare 客戶團隊申請使用 Magic Network Monitoring 免費版。免費版旨在協助企業方案客戶在購買 Magic Transit、Magic WAN 或 Cloudflare One 之前快速測試和評估 Magic Network Monitoring。企業客戶可以按照產品文件中的逐步上線指南自行完全設定 Magic Network Monitoring。免費版對可處理的流量數量有一些限制,產品文件中對此進行了進一步概述。
Magic Network Monitoring 的免費版也可透過封閉測試版提供給所有免費方案、Pro 方案和 Business 方案的 Cloudflare 客戶。任何人都可以透過閱讀免費版文件並填寫此表格來申請使用免費版。加入 Cloudflare 的 Discord 伺服器並在 Magic Network Monitoring Discord 頻道中傳送訊息的任何人都會獲得優先存取權。
\nMagic Network Monitoring 已全面上市,所有 Magic Transit 和 Magic WAN 客戶現已自動獲得該產品的存取權限。您可以前往 Cloudflare 儀表板的帳戶級別,然後選擇「分析與記錄」>「Magic Monitoring」來導覽至該產品。
如果您是沒有 Magic Transit 或 Magic WAN 的企業客戶,並且希望使用 Magic Network Monitoring 來提高流量可見度,則可以立即與 MNM 專家交談。
如果您有興趣使用 Magic Transit 和 Magic Network Monitoring 進行 DDoS 防護,則可以申請 Magic Transit 示範。如果您想一起使用 Magic WAN 和 Magic Network Monitoring 來建立端對端網路流量可見度,則可以與 Magic WAN 專家交談。
"],"published_at":[0,"2023-10-18T14:00:53.000+01:00"],"updated_at":[0,"2024-11-06T17:18:08.638Z"],"feature_image":[0,"https://cf-assets.www.cloudflare.com/zkvhlag99gkb/7FOGDWd22lmLfWBySaez56/4ea20b7865a0eaff8f760821819e04b2/network-flow-monitoring-generally-available.png"],"tags":[1,[[0,{"id":[0,"2MmIaRxeAoiOCQvtkz2tjy"],"name":[0,"Magic Network Monitoring"],"slug":[0,"magic-network-monitoring"]}],[0,{"id":[0,"2s3r2BdfPas9oiGbGRXdmQ"],"name":[0,"網路服務"],"slug":[0,"network-services"]}],[0,{"id":[0,"7qTIAO0WLKVKPVrj8q1vpD"],"name":[0,"Magic Transit"],"slug":[0,"magic-transit"]}],[0,{"id":[0,"7r0zxUQ3XCgTw2blCdlw55"],"name":[0,"Magic WAN"],"slug":[0,"magic-wan"]}],[0,{"id":[0,"6QktrXeEFcl4e2dZUTZVGl"],"name":[0,"產品新聞"],"slug":[0,"product-news"]}]]],"relatedTags":[0],"authors":[1,[[0,{"name":[0,"Chris Draper"],"slug":[0,"chris-draper"],"bio":[0,null],"profile_image":[0,"https://cf-assets.www.cloudflare.com/zkvhlag99gkb/4p4dYXBzgJFSatLcw6Yure/f5b41f2cdcbeec42cb66f970c4f574e7/chris-draper.jpg"],"location":[0,null],"website":[0,null],"twitter":[0,null],"facebook":[0,null]}],[0,{"name":[0,"Chris J Arges"],"slug":[0,"arges"],"bio":[0,null],"profile_image":[0,"https://cf-assets.www.cloudflare.com/zkvhlag99gkb/6USL67cH1IXAgenIGBX1yZ/7f9a7b6a4604c9f2134ade22cb7dc92b/arges.jpg"],"location":[0,null],"website":[0,null],"twitter":[0,"@ChrisArges"],"facebook":[0,null]}],[0,{"name":[0,"Ana Oliveira"],"slug":[0,"ana"],"bio":[0,null],"profile_image":[0,"https://cf-assets.www.cloudflare.com/zkvhlag99gkb/5p7G2JpVHePSyVsRCTHonB/40cc7bafa8026eeb0dbe31fc6da21a6a/ana.jpg"],"location":[0,null],"website":[0,null],"twitter":[0,null],"facebook":[0,null]}],[0,{"name":[0,"João Santos"],"slug":[0,"joao-santos"],"bio":[0,null],"profile_image":[0,"https://cf-assets.www.cloudflare.com/zkvhlag99gkb/wvOubwizbKPKO426C5LZG/689e266962a8ba6504f5692d0394e57b/joao-santos.jpg"],"location":[0,null],"website":[0,null],"twitter":[0,null],"facebook":[0,null]}],[0,{"name":[0,"Luís Franco"],"slug":[0,"luis"],"bio":[0,null],"profile_image":[0,"https://cf-assets.www.cloudflare.com/zkvhlag99gkb/75UnmkAvED9qAgGBS8NxWn/f43a6ae4c8f470114a44992ed99daa48/luis.PNG"],"location":[0,null],"website":[0,null],"twitter":[0,null],"facebook":[0,null]}],[0,{"name":[0,"Nadin El-Yabroudi"],"slug":[0,"nadin"],"bio":[0,null],"profile_image":[0,"https://cf-assets.www.cloudflare.com/zkvhlag99gkb/2tb7HXTXdN3vxdSKjd3Zic/e165bb4061ab25b1e74fab0ffd1d1991/nadin.png"],"location":[0,null],"website":[0,null],"twitter":[0,null],"facebook":[0,null]}],[0,{"name":[0,"Dan Geraghty"],"slug":[0,"dan-geraghty"],"bio":[0,null],"profile_image":[0,"https://cf-assets.www.cloudflare.com/zkvhlag99gkb/6SZzGYMTshixYkpUSAsjAp/9a7b5099ba5e2c8eeef8415374859ffc/dan-geraghty.jpg"],"location":[0,null],"website":[0,null],"twitter":[0,null],"facebook":[0,null]}]]],"meta_description":[0,"Network engineers often need better visibility into their network’s traffic when analyzing DDoS attacks or troubleshooting other traffic anomalies. To solve this problem, Cloudflare offers a network flow monitoring product that gives customers end-to-end traffic visibility across their network."],"primary_author":[0,{}],"localeList":[0,{"name":[0,"Network flow monitoring is GA, providing end-to-end traffic visibility Config"],"enUS":[0,"English for Locale"],"zhCN":[0,"Translated for Locale"],"zhHansCN":[0,"No Page for Locale"],"zhTW":[0,"Translated for Locale"],"frFR":[0,"Translated for Locale"],"deDE":[0,"Translated for Locale"],"itIT":[0,"No Page for Locale"],"jaJP":[0,"Translated for Locale"],"koKR":[0,"Translated for Locale"],"ptBR":[0,"No Page for Locale"],"esLA":[0,"No Page for Locale"],"esES":[0,"No Page for Locale"],"enAU":[0,"No Page for Locale"],"enCA":[0,"No Page for Locale"],"enIN":[0,"No Page for Locale"],"enGB":[0,"No Page for Locale"],"idID":[0,"No Page for Locale"],"ruRU":[0,"No Page for Locale"],"svSE":[0,"No Page for Locale"],"viVN":[0,"No Page for Locale"],"plPL":[0,"No Page for Locale"],"arAR":[0,"No Page for Locale"],"nlNL":[0,"No Page for Locale"],"thTH":[0,"No Page for Locale"],"trTR":[0,"No Page for Locale"],"heIL":[0,"No Page for Locale"],"lvLV":[0,"No Page for Locale"],"etEE":[0,"No Page for Locale"],"ltLT":[0,"No Page for Locale"]}],"url":[0,"https://blog.cloudflare.com/network-flow-monitoring-generally-available"],"metadata":[0,{"title":[0,"網路流量監控產品正式上市,提供了端對端流量可見度"],"description":[0,"Network engineers often need better visibility into their network’s traffic when analyzing DDoS attacks or troubleshooting other traffic anomalies. To solve this problem, Cloudflare offers a network flow monitoring product that gives customers end-to-end traffic visibility across their network."],"imgPreview":[0,"https://cf-assets.www.cloudflare.com/zkvhlag99gkb/30FgOzVPCQXk0MnKmGhHqe/64c4b9ce7c0c7b7edeedd1228d5d4030/network-flow-monitoring-generally-available-Jaj0SG.png"]}]}],"locale":[0,"zh-tw"],"translations":[0,{"posts.by":[0,"作者:"],"footer.gdpr":[0,"GDPR"],"lang_blurb1":[0,"本貼文還提供以下語言版本:{lang1}。"],"lang_blurb2":[0,"本貼文還提供以下語言版本:{lang1} 和{lang2}。"],"lang_blurb3":[0,"本貼文還提供以下語言版本:{lang1},{lang2} 和{lang3}。"],"footer.press":[0,"新聞"],"header.title":[0,"Cloudflare 部落格"],"search.clear":[0,"清除"],"search.filter":[0,"篩選"],"search.source":[0,"來源"],"footer.careers":[0,"人才招募"],"footer.company":[0,"公司"],"footer.support":[0,"支援"],"footer.the_net":[0,"theNet"],"search.filters":[0,"篩選器"],"footer.our_team":[0,"我們的團隊"],"footer.webinars":[0,"網路研討會"],"page.more_posts":[0,"更多貼文"],"posts.time_read":[0,"閱讀時間:{time} 分鐘"],"search.language":[0,"語言"],"footer.community":[0,"社群"],"footer.resources":[0,"資源"],"footer.solutions":[0,"解決方案"],"footer.trademark":[0,"商標"],"header.subscribe":[0,"訂閱"],"footer.compliance":[0,"合規性"],"footer.free_plans":[0,"免費方案"],"footer.impact_ESG":[0,"影響力/ESG"],"posts.follow_on_X":[0,"在 X 上進行關注"],"footer.help_center":[0,"幫助中心"],"footer.network_map":[0,"網路分佈圖"],"header.please_wait":[0,"請稍候"],"page.related_posts":[0,"相關貼文"],"search.result_stat":[0,"針對 {search_keyword} 的第 {search_range} 個搜尋結果(共 {search_total} 個結果)"],"footer.case_studies":[0,"案例研究"],"footer.connect_2024":[0,"Connect 2024"],"footer.terms_of_use":[0,"服務條款"],"footer.white_papers":[0,"白皮書"],"footer.cloudflare_tv":[0,"Cloudflare TV"],"footer.community_hub":[0,"社群中心"],"footer.compare_plans":[0,"比較各項方案"],"footer.contact_sales":[0,"連絡銷售團隊"],"header.contact_sales":[0,"連絡銷售團隊"],"header.email_address":[0,"電子郵件地址"],"page.error.not_found":[0,"找不到頁面"],"footer.developer_docs":[0,"開發人員文件"],"footer.privacy_policy":[0,"隱私權原則"],"footer.request_a_demo":[0,"請求示範"],"page.continue_reading":[0,"繼續閱讀"],"footer.analysts_report":[0,"分析報告"],"footer.for_enterprises":[0,"企業適用"],"footer.getting_started":[0,"開始使用"],"footer.learning_center":[0,"學習中心"],"footer.project_galileo":[0,"Galileo 專案"],"pagination.newer_posts":[0,"較新貼文"],"pagination.older_posts":[0,"較舊貼文"],"posts.social_buttons.x":[0,"在 X 上進行討論"],"search.icon_aria_label":[0,"搜尋"],"search.source_location":[0,"來源/地點"],"footer.about_cloudflare":[0,"關於 Cloudflare"],"footer.athenian_project":[0,"Athenian 專案"],"footer.become_a_partner":[0,"成為合作夥伴"],"footer.cloudflare_radar":[0,"Cloudflare Radar"],"footer.network_services":[0,"網路服務"],"footer.trust_and_safety":[0,"信任和安全"],"header.get_started_free":[0,"免費開始使用"],"page.search.placeholder":[0,"搜尋 Cloudflare"],"footer.cloudflare_status":[0,"Cloudflare 狀態"],"footer.cookie_preference":[0,"Cookie 喜好設定"],"header.valid_email_error":[0,"必須是有效電子郵件。"],"search.result_stat_empty":[0,"第 {search_range} 筆搜尋結果(共 {search_total} 筆)"],"footer.connectivity_cloud":[0,"全球連通雲"],"footer.developer_services":[0,"開發人員服務"],"footer.investor_relations":[0,"投資人關係"],"page.not_found.error_code":[0,"錯誤代碼:404"],"search.autocomplete_title":[0,"插入查詢。按下 Enter 鍵即可傳送"],"footer.logos_and_press_kit":[0,"標誌與新聞資料包"],"footer.application_services":[0,"應用程式服務"],"footer.get_a_recommendation":[0,"取得建議"],"posts.social_buttons.reddit":[0,"在 Reddit 上進行討論"],"footer.sse_and_sase_services":[0,"SSE 和 SASE 服務"],"page.not_found.outdated_link":[0,"您可能使用了過時的連結,或者可能輸入了錯誤的位址。"],"footer.report_security_issues":[0,"報告網路安全問題"],"page.error.error_message_page":[0,"抱歉,我們找不到您想要的頁面。"],"header.subscribe_notifications":[0,"訂閱以接收新文章的通知:"],"footer.cloudflare_for_campaigns":[0,"Cloudflare for Campaigns"],"header.subscription_confimation":[0,"訂閱已確認。感謝訂閱!"],"posts.social_buttons.hackernews":[0,"在 Hacker News 上進行討論"],"footer.diversity_equity_inclusion":[0,"多樣性、公平性和包容性"],"footer.critical_infrastructure_defense_project":[0,"關鍵基礎架構防禦專案"]}]}" ssr="" client="load" opts="{"name":"PostCard","value":true}" await-children="">2023-10-18
在分析 DDoS 攻擊或解決其他流量異常問題時,網路工程師通常需要更好地瞭解網路流量。為了解決這個問題,Cloudflare 推出了一款網路流量監控產品,從而為客戶提供整個網路的端對端流量可見度...