Network monitoring
First Claim
1. A method for monitoring a plurality of communication dialogs occurring in a network of nodes, each dialog of said plurality of dialogs being effected by a transmission of one or more packets among two or more communicating nodes, each dialog of said plurality of dialogs complying with a different predefined communication protocol selected from among a plurality of protocols available in said network, said plurality of dialogs representing multiple different protocols from among said plurality of available protocols, said method comprising:
- passively, in real time, and on an ongoing basis, detecting the contents of packets;
from the detected contents of said packets, identifying all of the dialogs of said plurality of communication dialogs occurring in said network;
deriving from said detected contents of said packets, information about the identified dialogs; and
for each of the identified dialogs, storing the derived information about that identified dialog.
1 Assignment
0 Petitions
Accused Products
Abstract
Monitoring is done of communications which occur in a network of nodes, each communication being effected by a transmission of one or more packets among two or more communicating nodes, each communication complying with a predefined communication protocol selected from among protocols available in the network. The contents of packets are detected passively and in real time, communication information associated with multiple protocols is derived from the packet contents.
632 Citations
25 Claims
-
1. A method for monitoring a plurality of communication dialogs occurring in a network of nodes, each dialog of said plurality of dialogs being effected by a transmission of one or more packets among two or more communicating nodes, each dialog of said plurality of dialogs complying with a different predefined communication protocol selected from among a plurality of protocols available in said network, said plurality of dialogs representing multiple different protocols from among said plurality of available protocols, said method comprising:
-
passively, in real time, and on an ongoing basis, detecting the contents of packets; from the detected contents of said packets, identifying all of the dialogs of said plurality of communication dialogs occurring in said network; deriving from said detected contents of said packets, information about the identified dialogs; and for each of the identified dialogs, storing the derived information about that identified dialog. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15, 16, 17, 18, 19, 20, 21, 22, 23)
-
-
24. Apparatus for monitoring a plurality of communication dialogs which occur in a network of nodes, each dialog of said plurality of dialogs being effected by a transmission of one or more packets among two or more communicating nodes, each dialog of said plurality of dialogs complying with a different predefined communication protocol selected from among a plurality of protocols available in said network, said plurality of dialogs representing multiple different protocols from among said plurality of available protocols, said apparatus comprising:
-
a monitor connected to the network medium, said monitor programmed to perform the tasks of passively, in real time, and on an ongoing basis;
(1) monitoring transmitted packets;
(2) from the monitored packets, identifying all of the dialogs of said plurality of communication dialogs;
(3) from the monitored packets, deriving communication information associated with said plurality of communication dialogs; and
(4) for each of the identified dialogs, storing the communication information about that identified dialog that is derived from said monitored packets; anda workstation for receiving said information about dialogs from said monitor and providing an interface through which said communication information about the identified dialogs is displayed to a user. - View Dependent Claims (25)
-
Specification