scispace - formally typeset
Patent

Ethernet switch-based network monitoring system and methods

Reads0
Chats0
TLDR
In this paper, a network data monitoring device is constructed utilizing one or more switching integrated circuits programmed to disable layer-2 routing and impose port-to-multiport data packet steering.
Abstract
A network data monitoring device provides for the flexible, programmable port-to-multi-port steering of data packet traffic between network port pairs, with tap data streams being directed to any of a plurality of monitor ports. The network data monitoring device is constructed utilizing one or more switching integrated circuits programmed to disable layer-2 routing and impose port-to-multiport data packet steering. Physical layer protocol encoding/decoding circuits enable connectivity to physical network media connectors though a system of fail-safe relays. A system controller, preferably implemented by a microprocessor, is connected to all switching integrated circuits and relays for configuration, status and control. Hardware-based logic selectively in complement to the switching integrated circuits provides for the programmable filtering, modification and programmable steering of data packets through the device.

read more

Citations
More filters
Patent

Logically partitioned networking devices

TL;DR: In this paper, a logical partition header (LPHP) and a network segmentation header (NSH) are associated with logical partitioning of a network device and the NSH is associated with a grouping (e.g., segmentation) of networking devices.
Patent

Internal virtual network identifier and internal policy identifier

TL;DR: In this article, the authors describe a system that determines an internal virtual network identifier and/or an internal policy identifier for a packet based on a port on which the packet was received and one or more fields in the packet.
Patent

Traffic forwarding in a traffic-engineered link aggregation group

TL;DR: In this paper, a forwarding database lookup is performed to determine a Link Aggregation port reference number for the data packet on the VLAN, and a link aggregation table is then searched to determine the primary Link aggregation port and a backup link aggregation port for forwarding the packet.
Patent

Method for providing asynchronous event notification in systems

TL;DR: In this paper, a method for asynchronous notifications from a device to a host in systems without requiring hardware provision for asynchronous operations is described, where a system supports command queuing and a command is sent from a host to a device.
Patent

Identifying stealth packets in network communications through use of packet headers

TL;DR: In this article, the authors use packet header information to detect stealth network traffic produced by advanced malware that has hidden its communications by circumventing the legitimate network channels provided by the OS.
References
More filters
Patent

VLAN support of differentiated services

TL;DR: In this paper, two types of virtual local area networks (VLANs) are defined: p-bits-Inferred-scheduling class VLAN (p-VLAN) and VLAN-ID-only-inferred scheduling class vLANs (v-Vlan).
Patent

Network security tap for use with intrusion detection system

TL;DR: In this article, a system and method is presented for analyzing information in a communication line for unwanted intrusions and for allowing information to be transmitted back into the communication line without disrupting the communication traffic when an intrusion is detected.
Patent

Full-duplex medium tap apparatus and system

TL;DR: In this paper, a bi-directional network medium monitor including a tap apparatus connected inserted in a network media, including a transceiver and a clock recovery element for each medium and medium monitor connection, is presented.
Patent

Method of reconstructing network communications

TL;DR: In this article, a method for reconstructing network communication sessions is described, in which the packets comprising the communication are captured and sorted into a sorted list and the sorted packets are decoded and the information from those packets are used to reconstruct the content and context of the network communication.
Patent

Method and Apparatus for Monitoring Physical Network Topology Information

TL;DR: In this article, a distributed architecture for monitoring the physical topology of a network on a real-time basis is presented. But the approach is not suitable for patch panel systems.