loading...
A Distributed Real-Time Tool for IP-Flow Measurement
Tokyo, Japan January 26-January 30
DOI Bookmark: http://doi.ieeecomputersociety.org/10.1109/SAINT.2004.12661032004 Symposium on Applications and th ...
 This Article 
 
PDF
HTML
 
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
Yoshinori Kitatsuji, KDDI R&D Laboratories, Inc.
Katsuyuki Yamazaki, KDDI R&D Laboratories, Inc.
It is getting more difficult to monitor multiple services as well as to detect and/or to trace Daniel of Service attacks with only tools showing graphs of the whole IP layer traffic like MRTG or by checking counters of router interfaces. In this paper, we discuss the specification of a software-based real-time measurement tool for flow which consists of multiple capture devices, a manager device and user interface devices, enabling flexible flow definition on demand without stopping system and working with IPv4 and/or IPv6, while also enabling high performance. With this discussion, we propose its architecture, bit-pattern-based flow definition method and data structure. Then we report on the performance evaluation of a prototype of proposed real-time flow measurement tools developed on PC-UNIXs and show that the number of bit-pattern composing flow definitions impact on the performance. Lastly we show an example of measuring flows in a real world environment and confirm that the flow extraction is simplified.
Citation:
Yoshinori Kitatsuji, Katsuyuki Yamazaki, "A Distributed Real-Time Tool for IP-Flow Measurement," saint, pp.91, 2004 Symposium on Applications and the Internet (SAINT'04), 2004
Usage of this product signifies your acceptance of the Terms of Use.