Skylight Integration in Microsoft Azure
  • 02 Mar 2023
  • 1 Minute to read
  • Contributors
  • PDF

Skylight Integration in Microsoft Azure

  • PDF

Article summary

In this article we'll be delving into how Skylight is intregrated in Microsoft Azure.

The Cloud Challenges

More Complexity. More Users. Less visibility.

image.png

No access to the network layer

There is no network layer access! How can I capture the network traffic?

image.png

Azure Basic Concepts to Know

C.png

D.png

Skylight in the cloud: general principles and architectures

Cloud visibility using Azure partner TAPs

Azure does not yet support packet mirroring (vTAP) natively on their platform, but relies on 3rd party software partners to perform traffic mirroring and forwarding to probes and analyzers. See Azure virtual network TAP partners page for Azure recommended solutions to mirror traffic.

Skylight sensor capture deployed in Azure

  • Receives monitored network traffic
  • Computes Per Packet Intel
  • Sends Per Packet Intel to Skylight analytics through HTTPS (TCP port 443)

Technical Requirements

Skylight sensor capture

  • Version 21.02.10-r1 release and above

Network Flows Requirements

Ingress trafficEgress traffic
Skylight sensor captureTCP port 443 to Skylight Analytics and TCP port 443 to NATS on same Skylight Analytics

Main Deployment Steps

  1. Deploy Skylight sensor: capture(s)

  2. Link deployed Skylight sensor capture(s) to your Skylight analytics tenant

How to deploy a Skylight sensor capture in Azure

image.png

image.png

image.png

image.png

image.png

SizingSmallMediumLarge
Flow analysis per min

Max average recommended

100 K1M1,6M
CPU2,4 GHz

2 Core / 4 Threads

2,4 GHz

6 Core / 12 Threads

2,4 GHz

8 Core / 16 Threads

RAM6 GB16 GB24 GB
Data Disks (Read performances)50 MB/s80 MB/s100 MB/s
Input / Output per second500 IOPS1000 IOPS1000 IOPS

image.png

image.png

image.png

image.png

image.png

image.png

image.png

image.png

image.png

T.png
U.png

  1. Select deployment model
    Type deploy show to check the actual deployment model

23.png

Type deploy disable PVX to disable the PVX deployment model

24.png

Type deploy enable Analytics to activate the appropriate deployment model
25.png

  1. Link the Skylight sensor to your Skylight analytics own tenant
  • Type register skylight to initiate the process
  • When being prompted, provide the following information:
    • Tenant Host: URL of your Skylight analytics tenant
    • Username: your admin username
    • Password: password linked to your username

26.png

  • You can check the presence of your sensor under Data Connections menu in Skylight analytics.

V.png

© 2024 Cisco and/or its affiliates. All rights reserved.
 
For more information about trademarks, please visit: Cisco trademarks
For more information about legal terms, please visit: Cisco legal terms

For legal information about Accedian Skylight products, please visit: Accedian legal terms and tradmarks



Was this article helpful?

Changing your password will log you out immediately. Use the new password to log back in.
First name must have atleast 2 characters. Numbers and special characters are not allowed.
Last name must have atleast 1 characters. Numbers and special characters are not allowed.
Enter a valid email
Enter a valid password
Your profile has been successfully updated.