Method and an Arrangement of Identifying Traffic Flows in a Communication Network
1 Assignment
0 Petitions
Accused Products
Abstract
A method of identifying traffic flows is provided in a traffic generating node, where each traffic flow is being associated with an application process running on the traffic generating node. The method is configured to perform a mapping operation, such that an application process is being linked to a signature that uniquely identifies a traffic flow and an associated socket, and such that the obtained linked information is maintained in a list. The mapping operation is configured to be executed in response to recognising a change to a socket associated with the application process at the traffic generating node. Based on accumulated mapping information, one or more processing element located at the traffic generating node, or at another node, may classify and/or control traffic flows associated with any of the application processes of the traffic generating node.
16 Citations
52 Claims
-
1-25. -25. (canceled)
-
26. A method of identifying traffic flows in a traffic generating node, each traffic flow being associated with a respective application process running on said traffic generating node, said method comprising:
-
recognizing a change to a socket associated with an application process; and performing a mapping operation with respect to that application process responsive to recognizing said change, wherein performing said mapping operation comprises linking the application process to a signature that uniquely identifies a traffic flow and an associated socket, and maintaining information regarding said linking in a list. - View Dependent Claims (27, 28, 29, 30, 31, 32, 33, 34, 35, 36, 37)
-
-
38. A method implemented by a server for classifying traffic flows transmitted to or received from a traffic generating node, wherein the server comprises at least one processing element, wherein the method comprises:
-
maintaining a copy of a list created by the traffic generating node, wherein the list contains accumulated content regarding linking of each of one or more application processes running on the traffic generating node to a respective signature that uniquely identifies a traffic flow and an associated socket, wherein said maintaining comprises receiving one or more notifications from the traffic generating node comprising the content of one or more mapping entries created or updated in said list by the traffic generating node; and classifying traffic flows on the basis of at least one predefined rule and the accumulated content of said list .
-
-
39. A method implemented by a server for controlling traffic flows transmitted to or received from a traffic generating node, wherein the server comprises at least one processing element, wherein the method comprises:
-
maintaining a copy of a list created by the traffic generating node, wherein the list contains accumulated content regarding linking of each of one or more application processes running on the traffic generating node to a respective signature that uniquely identifies a traffic flow and an associated socket, wherein said maintaining comprises receiving one or more notifications from the traffic generating node comprising the content of one or more mapping entries created or updated in said list by the traffic generating node; and controlling traffic flows on the basis of at least one predefined rule and the accumulated content of said list .
-
-
40. A traffic generating node comprising a client for identifying traffic flows, each traffic flow being associated with a respective application process running on said traffic generating node, said client comprising a signature engine configured to:
-
recognize a change to a socket associated with an application process; and perform a mapping operation with respect to that application process responsive to recognizing said change, wherein performing said mapping operation comprises linking the application process to a signature that uniquely identifies a traffic flow and an associated socket, and maintaining information regarding said linking in a list. - View Dependent Claims (41, 42, 43, 44, 45, 46, 47, 48)
-
-
49. A server comprising at least one processing element that is configured to classify traffic flows transmitted to or received from a traffic generating node, wherein the processing element is configured to:
-
maintain a copy of a list created by the traffic generating node, wherein the list contains accumulated content regarding linking of each of one or more application processes running on the traffic generating node to a respective signature that uniquely identifies a traffic flow and an associated socket, wherein said maintaining comprises receiving one or more notifications from the traffic generating node comprising the content of one or more mapping entries created or updated in said list by the traffic generating node; and classify traffic flows on the basis of at least one predefined classification rule and the accumulated content of said list. - View Dependent Claims (50)
-
-
51. A server comprising at least one processing element that is configured to control traffic flows transmitted to or received from a traffic generating node, wherein the processing element is configured to:
-
maintain a copy of a list created by the traffic generating node, wherein the list contains accumulated content regarding linking of each of one or more application processes running on the traffic generating node to a respective signature that uniquely identifies a traffic flow and an associated socket, wherein said maintaining comprises receiving one or more notifications from the traffic generating node comprising the content of one or more mapping entries created or updated in said list by the traffic generating node; and control traffic flows on the basis of at least one predefined classification rule and the accumulated content of said list. - View Dependent Claims (52)
-
Specification