会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 3. 发明申请
    • Managing captured network traffic data
    • 管理捕获的网络流量数据
    • US20070067450A1
    • 2007-03-22
    • US11507114
    • 2006-08-19
    • Patrick MalloyMichael CanneyRyan GehlMarc CohenEric NudelmanRussell ElsnerMarc Schneider
    • Patrick MalloyMichael CanneyRyan GehlMarc CohenEric NudelmanRussell ElsnerMarc Schneider
    • G06F15/173
    • H04L43/0823H04L43/00H04L43/106
    • A system and method for managing captured network traffic data is provided. The invention comprises a plurality of capture agents, each being configured to capture the network traffic associated with one or more applications. Each application is associated with one or more capture agents according to an application profile that is stored and maintained in a capture server. When analysis of an application's network traffic is required, the capture server contacts the corresponding capture agents according to the application profile. The capture server then effects the identification and archiving of the network traffic that corresponds to a user-defined capture condition. A database at the capture server maintains a record that associates the corresponding network traffic with the user-defined capture condition such that the corresponding network traffic can later be retrieved and analyzed using an analysis engine.
    • 提供了一种用于管理捕获的网络流量数据的系统和方法。 本发明包括多个捕获剂,每个捕获剂被配置为捕获与一个或多个应用相关联的网络流量。 每个应用程序根据存储和维护在捕获服务器中的应用程序配置文件与一个或多个捕获程序相关联。 当需要分析应用程序的网络流量时,捕获服务器将根据应用程序配置文件与相应的捕获代理进行联系。 然后,捕获服务器对与用户定义的捕获条件相对应的网络流量进行识别和归档。 捕获服务器上的数据库维护一个记录,将相应的网络流量与用户定义的捕获条件相关联,以便随后可以使用分析引擎检索和分析相应的网络流量。
    • 4. 发明申请
    • Identifying a transaction of interest within a network
    • 识别网络中的兴趣交易
    • US20070047438A1
    • 2007-03-01
    • US11506649
    • 2006-08-18
    • Patrick MalloyRussell ElsnerJohn StrohmAlain CohenSteven NiemczykMarc Schneider
    • Patrick MalloyRussell ElsnerJohn StrohmAlain CohenSteven NiemczykMarc Schneider
    • H04L12/26
    • H04L41/5067H04L41/22
    • Transactions within a transmission stream are identified that are related to an activity. The transactions are classified utilizing characteristics that identify the activity. Packets of the transaction are extracted from the transmission stream that corresponds to the activity. The extracted packets are presented in a visualization that identifies the packets and source and sink devices of the packets. The packets may be identified from a network trace. Classifying transactions includes identifying patterns present in packets to identify related transactions and/or packets that are temporally correlated. The characteristics may include heuristics related to a communication protocol of the transactions, examining temporal relationships of the packets, and/or identifying DNS requests related to the packets. The extracted packets may be presented as a tier pair circle wherein related devices are presented around a circumference of the tier pair circle and packet traffic between devices is indicated by a joining line.
    • 识别与活动相关的传输流内的事务。 交易根据识别活动的特征进行分类。 从与活动相对应的传输流中提取事务的分组。 提取的分组被呈现在标识分组的分组和分组的源和宿设备的可视化中。 可以从网络迹线识别分组。 分类事务包括识别分组中存在的模式以识别与时间上相关的相关事务和/或分组。 特征可以包括与交易的通信协议相关的启发式,检查分组的时间关系和/或识别与分组相关的DNS请求。 提取的分组可以呈现为层对圆,其中相关设备围绕层对圆的周围呈现,并且设备之间的分组业务由连接线指示。