This is the main component of the ATA deployment. The ATA Center does the following things:
- Configuration of the ATA Gateway.
- Gathers parsed traffic from ATA Gateways and ATA Lightweight Gateways.
- Detects suspicious activities.
- Runs ATA behavioral machine learning algorithms to detect abnormal behavior.
- Runs various deterministic algorithms to detect advanced attacks based on the attack kill chain.
- Users can use the web console to view the attack timeline, configuration settings, and notifications.
- Configures email notification settings.
The ATA Center is recommended to be installed on a separate server. One ATA Center is recommended for one forest. Cross-forest configuration is not supported.