Intelligent slicing of monitored network packets for storing
    2.
    发明授权
    Intelligent slicing of monitored network packets for storing 有权
    监控网络数据包的智能切片进行存储

    公开(公告)号:US08494000B1

    公开(公告)日:2013-07-23

    申请号:US12703086

    申请日:2010-02-09

    IPC分类号: H04L12/26

    摘要: A network monitor that segments data packets at variable locations of data packets and stores a subset of the segments for troubleshooting or analysis. The network monitor selects data packets to be stored based on a set of user-defined classifier rules and discards other data packets. Each data packets selected for storage are analyzed up to an application protocol layer to determine start locations and/or end locations of data fields in the data packet. A set of user-defined slice rules are applied to each analyzed data packets to segment the data packets at the determined locations of the data fields. A subset of the data packet segments is stored in the network monitor. By storing relevant portions of data packets and discarding other portions of the data packets, the amount of data of data to be stored in the network monitor can be significantly reduced.

    摘要翻译: 网络监视器,用于在数据包的可变位置分割数据包,并存储用于故障排除或分析的段的子集。 网络监视器根据一组用户定义的分类规则选择要存储的数据包,并丢弃其他数据包。 选择用于存储的每个数据分组被分析到应用协议层,以确定数据分组中的数据字段的起始位置和/或结束位置。 将一组用户定义的切片规则应用于每个分析的数据分组,以在数据字段的确定位置处对数据分组进行分段。 数据分组段的子集存储在网络监视器中。 通过存储数据分组的相关部分并丢弃数据分组的其他部分,可以显着地减少要存储在网络监视器中的数据的数据量。

    REAL-TIME ADAPTIVE PROCESSING OF NETWORK DATA PACKETS FOR ANALYSIS
    3.
    发明申请
    REAL-TIME ADAPTIVE PROCESSING OF NETWORK DATA PACKETS FOR ANALYSIS 有权
    网络数据包的实时自适应处理分析

    公开(公告)号:US20140040464A1

    公开(公告)日:2014-02-06

    申请号:US14051301

    申请日:2013-10-10

    IPC分类号: H04L12/26

    摘要: A network monitoring system that summarizes a plurality of data packets of a session into a compact session record for storage and processing. Each session record may be produced in real-time and made available during the session and/or after the termination of the session. Depending on protocols, a network monitoring system extracts different sets of information, removes redundant information from the plurality of data packets, and adds performance information to produce the session record. The network monitoring system may retrieve and process a single session record or multiple session records for the same or different protocols to determine cause of events, resolve issues in a network or evaluate network performance or conditions. The session record enables analysis in the units of session instead of individual packets. Hence, the network monitoring system can analyze events, issues or performance of the network more efficiently and effectively.

    摘要翻译: 网络监视系统,其将会话的多个数据分组汇总成紧凑会话记录以进行存储和处理。 每个会话记录可以实时生成并在会话期间和/或在会话终止之后提供。 根据协议,网络监控系统提取不同的信息集,从多个数据分组中去除冗余信息,并添加性能信息以产生会话记录。 网络监控系统可以检索和处理相同或不同协议的单个会话记录或多个会话记录,以确定事件的原因,解决网络中的问题或评估网络性能或条件。 会话记录能够以会话为单位而不是单个数据包进行分析。 因此,网络监控系统可以更有效,更有效地分析网络的事件,问题或性能。

    Real-Time Adaptive Processing of Network Data Packets for Analysis
    5.
    发明申请
    Real-Time Adaptive Processing of Network Data Packets for Analysis 有权
    用于分析的网络数据包的实时自适应处理

    公开(公告)号:US20110249572A1

    公开(公告)日:2011-10-13

    申请号:US12756638

    申请日:2010-04-08

    IPC分类号: H04L12/26

    摘要: A network monitoring system that summarizes a plurality of data packets of a session into a compact session record for storage and processing. Each session record may be produced in real-time and made available during the session and/or after the termination of the session. Depending on protocols, a network monitoring system extracts different sets of information, removes redundant information from the plurality of data packets, and adds performance information to produce the session record. The network monitoring system may retrieve and process a single session record or multiple session records for the same or different protocols to determine cause of events, resolve issues in a network or evaluate network performance or conditions. The session record enables analysis in the units of session instead of individual packets. Hence, the network monitoring system can analyze events, issues or performance of the network more efficiently and effectively.

    摘要翻译: 网络监视系统,其将会话的多个数据分组汇总成紧凑会话记录以进行存储和处理。 每个会话记录可以实时生成并在会话期间和/或在会话终止之后提供。 根据协议,网络监控系统提取不同的信息集,从多个数据分组中去除冗余信息,并添加性能信息以产生会话记录。 网络监控系统可以检索和处理相同或不同协议的单个会话记录或多个会话记录,以确定事件的原因,解决网络中的问题或评估网络性能或条件。 会话记录能够以会话为单位而不是单个数据包进行分析。 因此,网络监控系统可以更有效,更有效地分析网络的事件,问题或性能。