Collector v23.08 features completely redesigned backend, added the Flow duplications and forwarding functionality, reports functionality expanded, work with database optimized.
The new functionality allows you to distribute and duplicate the flow received by the collector to many other collectors. Floxy accepts UDP packets and forwards them to collectors according to the rules, keeping the packet’s source address and port. Each rule specifies which exporter to send packets to which collectors.
This allows more detailed analysis and visualization of traffic dropped by countermeasures.
This allows MITIGATOR to build rate graphs for arbitrary fields in the Collector database.
The disk space consumption for database storage has been reduced.