Invention Grant
- Patent Title: System and method for retrospective network traffic analysis
-
Application No.: US15081198Application Date: 2016-03-25
-
Publication No.: US10243971B2Publication Date: 2019-03-26
- Inventor: Aaron Campbell , Christopher R. Hand , Frank Murphy
- Applicant: Arbor Networks, Inc.
- Applicant Address: US MA Westford
- Assignee: Arbor Networks, Inc.
- Current Assignee: Arbor Networks, Inc.
- Current Assignee Address: US MA Westford
- Agency: Locke Lord LLP
- Agent Scott D. Wofsy; Christopher J. Capelli
- Main IPC: H04L29/06
- IPC: H04L29/06 ; H04L12/26

Abstract:
A method is provided to monitor network traffic, including reserving a portion of a system memory for short-term storage of copied network traffic, wherein the system memory is volatile, receiving copied packets of intercepted network traffic traversing a network, wherein the packets are associated with a plurality of respective traffic streams included in the network traffic, storing the copied packets in the portion of the system memory, maintaining an ordered list per traffic stream of copied packets that are stored, removing copied packets selected, based on their positions in their respective ordered lists, from the portion of the system memory based on a storage constraint, receiving an attack alert identifying a packet that is involved in a network attack, identifying the traffic stream that includes the packet identified, and transferring stored copied packets that are included in the identified traffic stream from the portion of the system memory to a long-term storage device.
Public/Granted literature
- US20170279817A1 SYSTEM AND METHOD FOR RETROSPECTIVE NETWORK TRAFFIC ANALYSIS Public/Granted day:2017-09-28
Information query