IP Library Granted Patent US 8,195,793
Granted Patent B2
US 8,195,793 · App. 12/538,663 · Granted Jun 5, 2012

Method and apparatus of filtering statistic, flow and transaction data on client/server

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,195,793
App. No.
12/538,663
Granted
Jun 5, 2012
Kind
B2
Abstract

Network traffic filtering is provided to enable gathering of data and statistics related to client/server traffic corresponding to valid and desired client to server/server to client traffic.

Claims (21)

1. A method of filtering network transactions for analysis received over a computer network by a network test device, comprising:

determining, by the network test device, a traffic type of a network transaction;

determining a relationship behavior corresponding to the traffic type, the relationship behavior being a client/server relationship or a peer to peer relationship;

determining which side of the network transaction is a client and which side is a server, based on the determined relationship behavior;

assigning a level of confidence determination to the network transaction based on the determined traffic type, the determined relationship behavior, and the determined side of client or server, wherein levels of confidence determinations assigned to network transactions enable users to observe all traffic that is of type “unknown whether client/server”, to observe all traffic that is of type “best guess is client/server,” and to observe all traffic that is of type “known client/server”;

determining if the traffic type of the network transaction is a kind that falls into a type of relation of interest; and

determining if a server address of the network transaction is in a server traffic group of interest.

2. The method according to claim 1 , wherein if the server address of the network transaction is determined to be in a server traffic group of interest, passing information associated with the network transaction on for further use.

3. The method according to claim 1 , wherein if the server address of the network transaction is determined to be not in a server traffic group of interest, handling information associated with the network transaction in an alternative manner.

4. The method according to claim 3 , wherein said handling in an alternative manner comprises discarding the information associated with the network transaction.

5. A network test device for filtering network transactions over a computer network for analysis, comprising:

a memory storing executable instructions that, when executed by one or more processors, perform the method of:

determining a traffic type of a network transaction;

determining a relationship behavior corresponding to the traffic type, the relationship behavior being a client/server relationship or a peer to peer relationship;

determining which side of the network transaction is a client and which side is a server, based on the determined relationship behavior;

assigning a level of confidence determination to the network transaction based on the determined traffic type, the determined relationship behavior, and the determined side of client or server, wherein levels of confidence determinations assigned to network transactions enable users to observe all traffic that is of type “unknown whether client/server”, to observe all traffic that is of type “best guess is client/server,” and to observe all traffic that is of type “known client/server”;

determining if the traffic type of the network transaction is a kind that falls into a type of relation of interest; and

determining if a server address of the network transaction is in a server traffic group of interest.

6. The network test device according to claim 5 , wherein if the server address of the network transaction is determined to be in the server traffic group of interest, passing the information associated with the network transaction on for further use.

7. The network test device according to claim 5 , wherein if the server address of the network transaction is determined to be not in the server traffic group of interest, handling information associated with the network transaction in an alternative manner.

8. The network test device according to claim 7 , wherein said handling in an alternative manner comprises discarding the information associated with the network transaction.

Assignments (4)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Sep 23, 2021
From: AIRMAGNET, INC.
To: NETSCOUT SYSTEMS, INC.
Reel/Frame 057595/0428 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Aug 14, 2015
From: FLUKE CORPORATION
To: AIRMAGNET, INC.
Reel/Frame 036355/0553 →
SECURITY INTEREST Recorded Aug 14, 2015
From: NETSCOUT SYSTEMS, INC.
To: JPMORGAN CHASE BANK, N.A.
Reel/Frame 036355/0586 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Jan 29, 2010
From: PRESCOTT, DAN
To: FLUKE CORPORATION
Reel/Frame 023868/0011 →