会员体验
专利管家(专利管理)
工作空间(专利管理)
风险监控(情报监控)
数据分析(专利分析)
侵权分析(诉讼无效)
联系我们
交流群
官方交流:
QQ群: 891211   
微信请扫码    >>>
现在联系顾问~
热词
    • 2. 发明授权
    • Managing captured network traffic data
    • 管理捕获的网络流量数据
    • US08140665B2
    • 2012-03-20
    • US11507114
    • 2006-08-19
    • Patrick J. MalloyMichael S. CanneyRyan GehlMarc A. CohenEric S. NudelmanRussell Mark ElsnerMarc I. Schneider
    • Patrick J. MalloyMichael S. CanneyRyan GehlMarc A. CohenEric S. NudelmanRussell Mark ElsnerMarc I. Schneider
    • G06F15/173
    • H04L43/0823H04L43/00H04L43/106
    • A system and method for managing captured network traffic data is provided. The invention comprises a plurality of capture agents, each being configured to capture the network traffic associated with one or more applications. Each application is associated with one or more capture agents according to an application profile that is stored and maintained in a capture server. When analysis of an application's network traffic is required, the capture server contacts the corresponding capture agents according to the application profile. The capture server then effects the identification and archiving of the network traffic that corresponds to a user-defined capture condition. A database at the capture server maintains a record that associates the corresponding network traffic with the user-defined capture condition such that the corresponding network traffic can later be retrieved and analyzed using an analysis engine.
    • 提供了一种用于管理捕获的网络流量数据的系统和方法。 本发明包括多个捕获剂,每个捕获剂被配置为捕获与一个或多个应用相关联的网络流量。 每个应用程序根据存储和维护在捕获服务器中的应用程序配置文件与一个或多个捕获程序相关联。 当需要分析应用程序的网络流量时,捕获服务器将根据应用程序配置文件与相应的捕获代理进行联系。 然后,捕获服务器对与用户定义的捕获条件相对应的网络流量进行识别和归档。 捕获服务器上的数据库维护一个记录,将相应的网络流量与用户定义的捕获条件相关联,以便随后可以使用分析引擎检索和分析相应的网络流量。
    • 3. 发明申请
    • MANAGING CAPTURED NETWORK TRAFFIC DATA
    • 管理捕获的网络流量数据
    • US20140112154A1
    • 2014-04-24
    • US14062489
    • 2013-10-24
    • Patrick J. MalloyMichael CanneyRyan GehlMarc A. CohenEric S. NudelmanRussell Mark Elsner
    • Patrick J. MalloyMichael CanneyRyan GehlMarc A. CohenEric S. NudelmanRussell Mark Elsner
    • H04L12/26
    • H04L43/0823H04L43/00H04L43/106
    • A system and method for managing captured network traffic data is provided. The invention comprises a plurality of capture agents, each being configured to capture the network traffic associated with one or more applications. Each application is associated with one or more capture agents according to an application profile that is stored and maintained in a capture server. When analysis of an application's network traffic is required, the capture server contacts the corresponding capture agents according to the application profile. The capture server then effects the identification and archiving of the network traffic that corresponds to a user-defined capture condition. A database at the capture server maintains a record that associates the corresponding network traffic with the user-defined capture condition such that the corresponding network traffic can later be retrieved and analyzed using an analysis engine.
    • 提供了一种用于管理捕获的网络流量数据的系统和方法。 本发明包括多个捕获剂,每个捕获剂被配置为捕获与一个或多个应用相关联的网络流量。 每个应用程序根据存储和维护在捕获服务器中的应用程序配置文件与一个或多个捕获程序相关联。 当需要分析应用程序的网络流量时,捕获服务器将根据应用程序配置文件与相应的捕获代理进行联系。 然后,捕获服务器对与用户定义的捕获条件相对应的网络流量进行识别和归档。 捕获服务器上的数据库维护一个记录,将相应的网络流量与用户定义的捕获条件相关联,以便随后可以使用分析引擎检索和分析相应的网络流量。
    • 9. 发明申请
    • CORRECTING PACKET TIMESTAMPS IN VIRTUALIZED ENVIRONMENTS
    • 在虚拟化环境中校正分组时钟
    • US20110197191A1
    • 2011-08-11
    • US13021709
    • 2011-02-04
    • Patrick J. MALLOYAlexey ShakulaRyan Gehl
    • Patrick J. MALLOYAlexey ShakulaRyan Gehl
    • G06F9/455
    • G06F9/45533G06F9/45558G06F2009/45595
    • A network capture element is embodied on a virtual machine, and a utility function is embodied on the actual device, preferably within the virtual machine manager. Both the utility function and the traffic capture element are configured to monitor communication events. To minimize the overhead imposed, the utility function is configured to merely store the time that the event occurred on the actual machine, corresponding to an identifier of the event. The network capture element, on the other hand, performs the time consuming tasks of filtering the communications, selectively storing some or all of the data content of the communications, characterizing the data content, and so on. Instead of storing the virtual time that the communication event occurred at the virtual machine, the network capture element uses the identifier of the communication event to retrieve the actual time that the communication event occurred on the actual machine.
    • 网络捕获元件体现在虚拟机上,并且效用函数体现在实际设备上,优选地在虚拟机管理器内。 效用功能和流量捕获元件都配置为监视通信事件。 为了最小化所施加的开销,效用函数被配置为仅存储事件在实际机器上发生的时间,对应于事件的标识符。 另一方面,网络捕获元件执行过滤通信的耗时任务,选择性地存储通信的一些或全部数据内容,表征数据内容等等。 网络捕获元件不是存储通信事件在虚拟机中发生的虚拟时间,而是使用通信事件的标识符来检索在实际机器上发生通信事件的实际时间。
    • 10. 发明申请
    • CORRECTING PACKET TIMESTAMPS IN VIRTUALIZED ENVIRONMENTS
    • 在虚拟化环境中校正分组时钟
    • US20140068615A1
    • 2014-03-06
    • US14073865
    • 2013-11-07
    • Patrick J. MalloyAlexey ShakulaRyan Gehl
    • Patrick J. MalloyAlexey ShakulaRyan Gehl
    • G06F9/455
    • G06F9/45533G06F9/45558G06F2009/45595
    • A network capture element is embodied on a virtual machine, and a utility function is embodied on the actual device, preferably within the virtual machine manager. Both the utility function and the traffic capture element are configured to monitor communication events. To minimize the overhead imposed, the utility function is configured to merely store the time that the event occurred on the actual machine, corresponding to an identifier of the event. The network capture element, on the other hand, performs the time consuming tasks of filtering the communications, selectively storing some or all of the data content of the communications, characterizing the data content, and so on. Instead of storing the virtual time that the communication event occurred at the virtual machine, the network capture element uses the identifier of the communication event to retrieve the actual time that the communication event occurred on the actual machine.
    • 网络捕获元件体现在虚拟机上,并且效用函数体现在实际设备上,优选地在虚拟机管理器内。 效用功能和流量捕获元件都配置为监视通信事件。 为了最小化所施加的开销,效用函数被配置为仅存储事件在实际机器上发生的时间,对应于事件的标识符。 另一方面,网络捕获元件执行过滤通信的耗时任务,选择性地存储通信的一些或全部数据内容,表征数据内容等等。 网络捕获元件不是存储通信事件在虚拟机中发生的虚拟时间,而是使用通信事件的标识符来检索在实际机器上发生通信事件的实际时间。