Message capturing method and device based on network application

A network application and capture device technology, applied in the field of communication, can solve problems such as difficult IP address collection, unsupported packet capture, and slow opening speed, so as to save time for subsequent troubleshooting and analysis, save storage space, and improve work efficiency. Effect

Active Publication Date: 2022-05-27
HANGZHOU DPTECH TECH
View PDF6 Cites 1 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

However, a large part of the traffic it captures is not the traffic that users care about; in addition, due to the limitation of packet capture performance and hard disk IO performance, when the captured traffic is too large, it cannot be completely saved and the captured traffic Subsequent analysis can also be very difficult
For example, when using wireshark to open a large file, it takes up a lot of memory, the opening speed is very slow, and it often freezes; even if a professional packet capture analysis device is used, it is difficult to solve similar problems
[0005] To capture packets according to ACL rules, it is necessary to know or analyze ACL rule elements in advance, such as source / destination IP, source / destination port, but in many situations in reality, it is impossible to accurately know IP and port information, for example, when crawling websites During traffic flow, there are generally many domain names and sub-domain names on the website, and there are CDN deployments, making it difficult to collect all IP addresses.
In addition, according to the ACL rules, it does not support packet capture based on network applications, and it is powerless to capture packets of network applications.

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • Message capturing method and device based on network application
  • Message capturing method and device based on network application
  • Message capturing method and device based on network application

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0024] Example embodiments will now be described more fully with reference to the accompanying drawings. Example embodiments, however, can be embodied in various forms and should not be construed as limited to the embodiments set forth herein; rather, these embodiments are provided so that this disclosure will be thorough and complete, and will fully convey the concept of example embodiments to those skilled in the art. The same reference numerals in the drawings denote the same or similar parts, and thus their repeated descriptions will be omitted.

[0025] Furthermore, the described features, structures, or characteristics may be combined in any suitable manner in one or more embodiments. In the following description, numerous specific details are provided in order to give a thorough understanding of the embodiments of the present disclosure. However, those skilled in the art will appreciate that the technical solutions of the present disclosure may be practiced without on...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention relates to a message capturing method and device based on a network application. The method comprises the following steps: presetting a to-be-captured network application; continuously receiving traffic data in a period of time or a predetermined quantity from the switching equipment; performing DPI analysis on the messages of the received traffic data, and analyzing and identifying messages belonging to the network application to be captured in the received traffic data based on the characteristics of the network application to be captured; extracting network layer and transmission layer information corresponding to the network application from a message belonging to the network application to be captured in the received flow data; forming an ACL rule for the network application to be captured based on the extracted network layer and transmission layer information; and issuing the ACL rule for the to-be-captured network application to the switching device, so as to perform message capturing for the to-be-captured network application based on the ACL rule for the to-be-captured network application.

Description

technical field [0001] The present disclosure relates to the field of communications, and in particular, to a method and device for capturing packets based on network applications. Background technique [0002] With the rapid development of Internet technology and 5G technology, the traffic in the network is getting larger and larger, and the network is facing more and more types of connection abnormalities or attack events; in addition, most of the remote access failures of the client to the server are caused by network problems , such as improper network configuration of the client or server. Therefore, the troubleshooting of network faults has become an inevitable and thorny problem in work. Especially for those who are not familiar with network knowledge, how to automatically and quickly locate network problems and solve the fault has become a key to improving work efficiency. [0003] The network packet capture technology is to capture the data packets transmitted by t...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Applications(China)
IPC IPC(8): H04L9/40
CPCH04L63/1425Y02D30/50
Inventor 汪庆权李志林俊龙
Owner HANGZHOU DPTECH TECH
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products