back caretBlog

Active Directory Bundle Update: Better Dashboards and Drill-Downs

What's New in the Active Directory Bundle v4

One of the most popular add-ons for the ExtraHop platform is our Active Directory bundle. Built on analysis of LDAP, Kerberos, and DNS, this solution pulls together many of the performance and security metrics that teams care about for one of the most important pieces of their IT environment. Not sure you need the bundle? Here's what makes Active Directory monitoring critical for proactive SecOps in particular.

Active Directory is a complex tool, and its multiple components and protocols make it difficult to monitor and troubleshoot. With this in mind, we've updated our Active Directory bundle aiming to make those processes easier by surfacing problems and details more quickly.

For a comprehensive list of updates and bundle contents, check out the Active Directory bundle page.

New Top-Down Overview

We've added an Overview dashboard to provide a concise look at the health of the main Active Directory components. You can quickly see processing times, requests, responses, and errors for Kerberos authentication, Group Policy, LDAP, and DNS SRV resource record queries. The overview page also contains links to the saved EXA records page for quick investigation.

Active Directory dashboard Click image to zoom

Active Directory traffic Click image to zoom

Improved Drill-Downs

Now, detail drill-downs are available for all custom Active Directory metrics. If you see something interesting on a dashboard and want more information about what client, server, or user was involved, that information is available through a single click.

Kerberos Authentication Errors Click image to zoom

Privileged Authentication and Service Access Click image to zoom

Standardized Dashboard Layout

Finally, we've refreshed the layout of both dashboards to align with built-in protocol pages. This allows us to use the space more effectively in a way users are already familiar with, without the dashboards becoming cluttered or losing information.

LDAP Transactions Click image to zoom

For more information and to download the Active Directory v4 bundle, head over to the Solution Bundles Gallery.

ExtraHop Reveal(x) Live Activity Map

Stop Breaches 87% Faster

Investigate a live attack in the full product demo of ExtraHop Reveal(x), network detection and response, to see how it accelerates workflows.

Start Demo

Sign Up to Stay Informed