Invention Application
US20160127517A1 PROTOCOL-BASED CAPTURE OF NETWORK DATA USING REMOTE CAPTURE AGENTS
有权
使用远程捕获代理的基于协议的网络数据捕获
- Patent Title: PROTOCOL-BASED CAPTURE OF NETWORK DATA USING REMOTE CAPTURE AGENTS
- Patent Title (中): 使用远程捕获代理的基于协议的网络数据捕获
-
Application No.: US14528898Application Date: 2014-10-30
-
Publication No.: US20160127517A1Publication Date: 2016-05-05
- Inventor: Vladimir A. Shcherbakov , Michael R. Dickey
- Applicant: Splunk Inc.
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L29/08

Abstract:
The disclosed embodiments provide a system that processes network data. During operation, the system obtains, at a remote capture agent, a first protocol classification for a first packet flow captured by the remote capture agent. Next, the system uses configuration information associated with the first protocol classification to build a first event stream from the first packet flow at the remote capture agent, wherein the first event stream comprises time-series event data generated from network packets in the first packet flow based on the first protocol classification. The system then transmits the first event stream over a network for subsequent storage and processing of the first event stream by one or more components on the network.
Public/Granted literature
- US09838512B2 Protocol-based capture of network data using remote capture agents Public/Granted day:2017-12-05
Information query