System, method and apparatus for traffic mirror setup, service and security in communication networks
First Claim
1. A method for dynamically mirroring network traffic in a packet forwarding device, the method comprising:
- monitoring an operational characteristic of a network for a criterion; and
in response to detection of the criterion in the monitored operational characteristic of the network, dynamically initiating traffic mirroring of one or more packets in one or more flows of network traffic received by a packet forwarding device en-route to a destination device by,establishing a mirror source for mirroring traffic,identifying available mirror destinations for the mirrored traffic, andselecting at least one of the available mirror destinations to receive the mirrored traffic,wherein dynamic initiation of traffic mirroring occurs automatically in response to detection of the criterion.
13 Assignments
0 Petitions
Accused Products
Abstract
The present invention provides method and systems for dynamically mirroring network traffic. The mirroring of network traffic may comprise data that may be considered of particular interest. The network traffic may be mirrored by a mirror service portal from a mirror sender, referred to as a mirror source, to a mirror receiver, referred to as a mirror destination, locally or remotely over various network segments, such as private and public networks and the Internet. The network traffic may be mirrored to locations not involved in the network communications being mirrored. The present invention provides various techniques for dynamically mirroring data contained in the network traffic from a mirror source to a mirror destination.
68 Citations
31 Claims
-
1. A method for dynamically mirroring network traffic in a packet forwarding device, the method comprising:
-
monitoring an operational characteristic of a network for a criterion; and in response to detection of the criterion in the monitored operational characteristic of the network, dynamically initiating traffic mirroring of one or more packets in one or more flows of network traffic received by a packet forwarding device en-route to a destination device by, establishing a mirror source for mirroring traffic, identifying available mirror destinations for the mirrored traffic, and selecting at least one of the available mirror destinations to receive the mirrored traffic, wherein dynamic initiation of traffic mirroring occurs automatically in response to detection of the criterion. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12, 13, 14, 15, 16, 17, 18, 19, 20, 21, 22, 23)
-
-
24. A non-transitory computer readable storage medium storing computer executable instructions for performing a method in a packet forwarding device, the method comprising:
-
monitoring an operational characteristic of a network for a criterion; and in response to detection of the criterion in the monitored operational characteristic, dynamically initiating traffic mirroring of one or more packets in one or more flows of network traffic from a packet forwarding device en-route to a destination device by, establishing a mirror source for mirroring traffic, identifying available mirror destinations for the mirrored traffic, and selecting one of the identified mirror destinations to receive mirrored traffic, wherein dynamic initiation of traffic mirroring occurs automatically in response to detection of the criterion.
-
-
25. A network for dynamically mirroring network traffic from a packet forwarding device, the network comprising:
-
a mirror traffic mechanism configured to monitor an operational characteristic of a network for a first criterion and, in response to detection of the first criterion, to initiate mirroring of one or more packets of network traffic from one or more flows of network traffic received by a packet forwarding device en-route to a destination device; a mirror source node for providing the mirrored network traffic; and a mirror destination node for receiving the mirrored network traffic from the minor source node; wherein a mirror service portal between the minor source node and the minor destination node is dynamically established upon the first criterion being detected by establishing the mirror source node for mirroring traffic, identifying available mirror destination nodes for the mirrored traffic, and selecting the mirror destination node to receive mirrored traffic based on the available mirror destination nodes identified. - View Dependent Claims (26, 27)
-
-
28. A packet forwarding network device for dynamically mirroring network traffic, the device comprising:
-
a traffic monitor mechanism for monitoring network traffic of a network for a criterion; and a mirror source device for receiving one or more packets of network traffic from one or more flows of network traffic en-route to a destination device in response to the criterion having been met, for identifying available minor destinations for receiving one or more mirrored packets of network traffic from the packet forwarding device, for selecting at least one of the identified mirror destinations as a location to receive the one or more mirrored packets of network traffic, and for directing the one or more mirrored packets of network traffic to the identified minor destination. - View Dependent Claims (29, 30, 31)
-
Specification