Lumu Virtual Appliance Collectors
The Lumu Virtual Appliance (VA) is a pre-configured lightweight virtual machine solution that collects the network metadata of your entire enterprise and forwards it to the Lumu cloud with the lowest impact on the network operation.
Virtual Appliances can have several Data Collectors associated with them, which are an invaluable tool in the analysis and collation of different types of cybersecurity protocols.
You will find these Collectors under the “Additional Collectors” sub-section on your Virtual Appliance panel in the
Lumu Portal.
Lumu Virtual Appliances are available only for Lumu Insights and Lumu Defender users; however, some limitations apply to Lumu Insights and Lumu Defender customers. Lumu Defender customers can enjoy the full power of our integrations. To learn more, refer to the
pricing section on our website and our
offerings article.
Virtual Appliance Deployment
To begin the Virtual Appliance deployment process, consult
this article.
Virtual Appliance Data Collector Types
Lumu’s Virtual Appliance Data Collectors can collect metadata from several specialized sources. Currently, Lumu offers Data Collectors for the following types of data:
Collecting metadata other than DNS requests is important since some
attacks avoid domain resolution, leaving traces of their contacts in the
access logs of firewalls, proxies, etc. This option is also available
for accommodating networks where DNS configuration is not possible. In
this scenario, companies can monitor IP traffic with the Lumu Virtual
Appliance acting as a network metadata collector on your enterprise
perimeter.
This approach ensures compromise visibility without
having to make major changes, as almost every cybersecurity vendor
solution can forward metadata externally without impacting their
operation.
Related Articles
Lumu Virtual Appliance DNS Packets Collectors Catalog
Before attempting this type of implementation, we strongly suggest checking out our Lumu Agent for Windows Server , which can act as a DNS server collector and covers the vast majority of the scenarios of this VA implementation (Windows Server 2016 ...
Lumu Virtual Appliance DNS Queries Collectors Catalog
In the following table, you will find a complete list of DNS Queries Collectors available for deployment as part of Lumu's Virtual Appliances. Collector Logo Collect DNS Queries with Lumu VA and Infoblox Collect DNS Queries with Lumu VA and Citrix ...
Lumu Virtual Appliance Metadata Collection with Logstash
Some enterprises use the Elastic stack (ELK) to collect, index, and analyze logs from multiple devices. If yours is one of those organizations, deploy a Lumu Virtual Appliance and create collectors that will receive data directly from existing ...
Manage Virtual Appliances and Collectors
You have the option to manage Lumu Virtual Appliances (VA) directly from the Lumu Portal. The virtual appliance allows for full visibility into the compromises inside your network and is available for the most commom hypervisors. This document lists ...
Create VA Collectors
The Lumu Virtual Appliance (VA) offers the option to create VA Collectors, a seamless way to collect the network metadata of your entire enterprise and forward it to the Lumu cloud with the lowest impact on the network operation. In this quick guide, ...