QRadar Incident Forensics-C

Use the IBM® QRadar® Incident Forensics-C appliance (MTM 4654-F2A) to retrace the step-by-step actions of a potential attacker, and to quickly and easily conduct an in-depth forensics investigation of suspected malicious network security incidents.

The following table describes hardware information and requirements for the QRadar Incident Forensics-C appliance:

Table 1. QRadar Incident Forensics-C specifications
Description Value
CPU R640 XL, 2 x Xeon Gold 5118, 2.3 GHz 16 MB Cache 3.20 GHz 105 W
Network management transceivers

2 x 10 GbE Short Range SFP+

The transceivers can have one of the following part numbers:
  • Avago AFBR-709SMZ-IB8
  • Finisar FTLX8571D3BCL-BN
  • BNT BN-CKM-SP-SR

Use these transceivers with the 2 x 10 GbE SFP+ ports, labeled as [3] in the appliance diagram.

Ports

4 x 1 Gb Ethernet ports

1 x RJ-45 10/100/1000 Mb Ethernet systems management (IMM) port

2 x 10 GbE SFP+ management ports

Memory 128 GB, 8 x 16 GB
Storage 12 x 8 TB 7.2 K 12 Gbps 512e 3.5” NLSAS, 80 TB total (RAID6)
Power® supply Dual redundant 1100 W AC
Unit weight 73 lbs
Physical dimensions 29.0 inches deep x 17.1 inches wide x 3.4 inches high

The following image is of the QRadar Incident Forensics-C appliance.

Figure 1. Front and rear panel of theQRadar Incident Forensics-C appliance
Image showing the back and front panels of the QRadar Incident Forensics-C appliance.

Picture: © 2018 Dell Inc. or its subsidiaries. All Rights Reserved

Table 2. Legend for use with the QRadar Incident Forensics-C image
Label Description
1 Event data storage
2 1 x RJ-45 10/100/1000 Mb Ethernet systems management (IMM) port
3 10 Gbps SFP+ management ports
4 Management ports (1 GbE TX)

For information about battery replacement, see Dell EMC PowerEdge R740 Installation and Service Manual (https://topics-cdn.dell.com/pdf/poweredge-r740_owners-manual_en-us.pdf).