Invention Grant
- Patent Title: Offline analysis of packets
- Patent Title (中): 数据包离线分析
-
Application No.: US12319404Application Date: 2009-01-06
-
Publication No.: US07805604B2Publication Date: 2010-09-28
- Inventor: Foaad Khosmood , Ognjen Petrovic , Jeremy Matthew Savoy , Duncan Allen Woods
- Applicant: Foaad Khosmood , Ognjen Petrovic , Jeremy Matthew Savoy , Duncan Allen Woods
- Applicant Address: US NY Armonk
- Assignee: International Business Machines Corporation
- Current Assignee: International Business Machines Corporation
- Current Assignee Address: US NY Armonk
- Agent Owen J. Gamon
- Main IPC: H04L29/06
- IPC: H04L29/06

Abstract:
A network interface and storage medium that, in an embodiment, filter packets received from a network based on rules. The filtering discards a subset of the packets based on the rules and keeps a remaining subset of the packets. The remaining subset is copied to a destination. The rules are created offline in a lower priority process from the filtering and copying by detecting whether symptoms exist in a sample of the remaining subset. In an embodiment, the order that the symptoms are detected is changed based on the frequency of the existence of the symptoms in the sample. In various embodiments, the symptoms may include receiving a threshold number of ping packets within a time period, receiving a threshold number of broadcast packets within a time period, receiving a packet with an invalid source address, and receiving a packet with an invalid header flag.
Public/Granted literature
- US20090125714A1 Offline analysis of packets Public/Granted day:2009-05-14
Information query