Logging method, system, and device with analytical capabilities for the network traffic
First Claim
1. A logging device managing network packets, the logging device comprises:
- a traffic capturing component receiving network packets and filtering the received network packets by selecting those network packets that satisfy a predefined criteria;
a storage component storing the selected network packets; and
an analyzing component organizing the stored network packets in accordance with at least one user specified parameters, wherein the traffic capturing component, the storage component, and the analyzing component are integrated in a single physical device.
1 Assignment
0 Petitions
Accused Products
Abstract
A logging device, system and a method for managing network packets. The logging device includes a traffic capturing device receiving the network packets and filtering the network packets by selecting some of the network packets based on a predefined criteria. The logging device also includes a storage device storing the selected network packets and an analyzing component organizing the stored network packets in accordance with a user specified parameters. The traffic capturing component, the storage component, and the analyzing component are integrated in a single physical device providing a user with an ability to monitor real-time network traffic on the fly. The traffic capturing component selects the network packets for storage based on source and destination addresses of the network packets, based on a protocol of the network packets, based on a port designated, and based on whether a particular traffic session matches a predetermined signature.
104 Citations
27 Claims
-
1. A logging device managing network packets, the logging device comprises:
-
a traffic capturing component receiving network packets and filtering the received network packets by selecting those network packets that satisfy a predefined criteria;
a storage component storing the selected network packets; and
an analyzing component organizing the stored network packets in accordance with at least one user specified parameters, wherein the traffic capturing component, the storage component, and the analyzing component are integrated in a single physical device. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14)
-
-
15. A logging system managing network packets, the logging system comprises:
-
a gateway computer receiving the network packets, the gateway computer is configured to select some the received network packets based on;
a source address of a network packet, a destination addresses of the network packet, a protocol of the network packet, a port selection, and whether a specific traffic session matches a predefined signature of the network packet;
a storage device storing the selected network packets; and
an analyzing computer organizing the stored network packets in accordance with a user specified parameters. - View Dependent Claims (16, 17, 18, 19, 20, 21, 22, 23)
-
-
24. A method for managing network packets comprising:
-
receiving network packets from various sources at a gateway;
selecting network packets from the received network packets; and
storing the selected network packets in a storage, wherein the gateway is configured to select the network packets based on source and destination addresses of the network packets, based on a protocol of the network packets, based on a port designated, and based on whether a particular traffic session matches a predetermined signature. - View Dependent Claims (25, 26, 27)
-
Specification