Invention Application
US20160127517A1 PROTOCOL-BASED CAPTURE OF NETWORK DATA USING REMOTE CAPTURE AGENTS 有权
使用远程捕获代理的基于协议的网络数据捕获

  • Patent Title: PROTOCOL-BASED CAPTURE OF NETWORK DATA USING REMOTE CAPTURE AGENTS
  • Patent Title (中): 使用远程捕获代理的基于协议的网络数据捕获
  • Application No.: US14528898
    Application Date: 2014-10-30
  • Publication No.: US20160127517A1
    Publication Date: 2016-05-05
  • Inventor: Vladimir A. ShcherbakovMichael R. Dickey
  • Applicant: Splunk Inc.
  • Main IPC: H04L29/06
  • IPC: H04L29/06 H04L29/08
PROTOCOL-BASED CAPTURE OF NETWORK DATA USING REMOTE CAPTURE AGENTS
Abstract:
The disclosed embodiments provide a system that processes network data. During operation, the system obtains, at a remote capture agent, a first protocol classification for a first packet flow captured by the remote capture agent. Next, the system uses configuration information associated with the first protocol classification to build a first event stream from the first packet flow at the remote capture agent, wherein the first event stream comprises time-series event data generated from network packets in the first packet flow based on the first protocol classification. The system then transmits the first event stream over a network for subsequent storage and processing of the first event stream by one or more components on the network.
Public/Granted literature
Information query
Patent Agency Ranking
0/0