Lumu Virtual Appliance Collectors

Lumu Virtual Appliance Collectors

To get started with Lumu Virtual Appliances, consult our Introduction to Lumu Virtual Appliances article.
The Lumu Virtual Appliance (VA) is a pre-configured lightweight virtual machine solution that collects the network metadata of your entire enterprise and forwards it to the Lumu cloud with the lowest impact on the network operation.

Virtual Appliances can have several Data Collectors associated with them, which are an invaluable tool in the analysis and collation of different types of cybersecurity protocols.

You will find these Collectors under the “Additional Collectors” sub-section on your Virtual Appliance panel in the Lumu Portal.
Lumu Virtual Appliances are available only for Lumu Insights and Lumu Defender users; however, some limitations apply to Lumu Insights and Lumu Defender customers. Lumu Defender customers can enjoy the full power of our integrations. To learn more, refer to the pricing section on our website and our offerings article.

Virtual Appliance Deployment

To begin the Virtual Appliance deployment process, consult this article.

Virtual Appliance Data Collector Types

Lumu’s Virtual Appliance Data Collectors can collect metadata from several specialized sources. Currently, Lumu offers Data Collectors for the following types of data:

Virtual Appliances Metadata Collectors

Collecting metadata other than DNS requests is important since some attacks avoid domain resolution, leaving traces of their contacts in the access logs of firewalls, proxies, etc. This option is also available for accommodating networks where DNS configuration is not possible. In this scenario, companies can monitor IP traffic with the Lumu Virtual Appliance acting as a network metadata collector on your enterprise perimeter.

This approach ensures compromise visibility without having to make major changes, as almost every cybersecurity vendor solution can forward metadata externally without impacting their operation.

Network diagram with Lumu VA for metadata collection

        • Related Articles

        • Lumu Virtual Appliance Metadata Collection with Logstash

          Some enterprises use the Elastic stack (ELK) to collect, index, and analyze logs from multiple devices. If yours is one of those organizations, deploy a Lumu Virtual Appliance and create collectors that will receive data directly from existing ...
        • Lumu Virtual Appliance DNS Packets Collectors Catalog

          Before attempting this type of implementation, we strongly suggest checking out our Lumu Agent for Windows Server , which can act as a DNS server collector and covers the vast majority of the scenarios of this VA implementation (Windows Server 2016 ...
        • Lumu Virtual Appliance DNS Queries Collectors Catalog

          In the following table, you will find a complete list of DNS Queries Collectors available for deployment as part of Lumu's Virtual Appliances. Collector Logo Collect DNS Queries with Lumu VA and Infoblox Collect DNS Queries with Lumu VA and Citrix ...
        • Manage Virtual Appliances and Collectors

          You have the option to manage Lumu Virtual Appliances (VA) directly from the Lumu Portal. The virtual appliance allows for full visibility into the compromises inside your network and is available for the most commom hypervisors. This document lists ...
        • Create VA Collectors

          The Lumu Virtual Appliance (VA) offers the option to create VA Collectors, a seamless way to collect the network metadata of your entire enterprise and forward it to the Lumu cloud with the lowest impact on the network operation. In this quick guide, ...