React faster at the wire with BlueCat and ExtraHop

With the BlueCat ExtraHop Plugin, automatically create missing PTR records, and detect and react to security threats before they reach DNS servers.

Key Takeaways
  • The BlueCat ExtraHop Plugin enables near real-time, wire-level visibility that allows network teams to detect and react to issues before they impact business services.
  • By integrating ExtraHop with BlueCat Gateway, organizations can automatically detect and self-heal missing or stale DNS records such as PTRs based on predefined admin rules.
  • Automated creation of critical DNS records via the ExtraHop and BlueCat Gateway integration reduces user downtime and mitigates revenue and productivity loss associated with email and other key services.
  • Combining ExtraHop’s machine-learning-based threat detection with BlueCat Edge allows security teams to apply DNS blocking policies at the wire, before threats reach DNS servers.
  • Wire-level data collection with targeted automation provides a more immediate, cost-effective, and stable alternative to “log everything” methods for error and threat remediation.
  • The BlueCat ExtraHop Plugin enhances operational visibility and accelerates resolution of DNS and security issues, contributing to higher uptime and safer access to critical applications.

It’s no secret among network admins that the closer you can get to real-time data, the faster you can react. But without the tools to interpret data at the wire and automate with rule-based business logic, network teams can’t intervene before the business feels the impact. This gap in tools can result in poor user experiences or increased risk of security breaches.

Get closer to the wire with the ExtraHop Plugin

Today’s enterprise network teams leverage the BlueCat ExtraHop Plugin to get closer to the wire. With it, they can:

  1. Reduce time to detect threats before they reach DNS servers.
  2. Improve service-level agreements by creating missing records for critical services and users.
  3. React faster with AI to detect threats.

Let’s look at two everyday situations that organizations face today:

The elusive PTR record

One of the most critical services that keeps business moving is email. A missing PTR record can mean a user is unable to access email services. It’s not uncommon for these records to go missing or become stale, especially during migration or integrations with other tools. To fix this, network teams must create a new record in BlueCat Address Manager.

With BlueCat Gateway, ExtraHop can self-heal when a missing record is detected. It triggers automation tasks to create a missing record based on rules defined by admins. By leveraging BlueCat Gateway, ExtraHop can intervene to ensure a good user experience and reduce business revenue risks.

Stopping threats in their tracks

Traditionally, meeting a threat head-on meant detecting and stopping it at the DNS server level. Although BlueCat Edge provides advanced DNS security with powerful threat intelligence tools, organizations can bolster security by applying it at the wire. Today’s advanced network teams can meet cyber threats in real-time as they reach the server. To add this additional security layer, network and security teams use machine AI from ExtraHop to detect threats and apply BlueCat Edge blocking policies before they reach DNS servers.

Network teams need tools to accelerate the detection and remediation of errors and threats. Having an ear to data at the wire provides a more immediate, economic, and stable solution for automation than “log all” approaches. The BlueCat ExtraHop Plugin enhances the visibility and resolution of errors and threats to help maintain resource uptime. Consequently, it helps ensure that users can successfully and safely access critical services and apps.

Visit the BlueCat Adaptive Catalog to learn more.


Published in:


An avatar of the author

Mark is a Senior Product Marketing Manager at BlueCat Networks.

Related content

Your journey to intelligent NetOps begins at Cisco Live

Visit BlueCat’s booth or book a meeting now to learn more about how our solutions can help you build a network that supports constant change.

Read more

Replace BIND and ISC with Micetro DNS/DHCP Server (MDDS)

Tired of patching and manually configuring BIND DNS and ISC DHCP? Discover how Micetro MDDS appliances can replace them for modern DDI.

Read more

Automate it all in Integrity with REST v2 API-first DDI management

Discover API-first DDI with Integrity X by using REST v2 to automate DNS, DHCP, and IPAM for scalable, secure network operations.

Read more

Agentic AI adoption in network observability propels NetOps teams

Network observability is crucial for today’s networks and even more capable with agentic AI, according to new Omdia and BlueCat research.

Read more

⏳ Cisco Live is almost here. Put BlueCat on your agenda for smarter, more secure networks.