Network traffic visualization

Electrical computers and digital processing systems: multicomput – Computer network managing – Computer network monitoring

Reexamination Certificate

Rate now

  [ 0.00 ] – not rated yet Voters 0   Comments 0

Details

C709S202000, C709S217000, C709S223000, C709S229000, C713S152000, C703S006000, C714S047300

Reexamination Certificate

active

06687750

ABSTRACT:

FIELD OF THE INVENTION
This invention relates to network management applications that assemble network information, and specifically to a visualization application that displays network traffic information assembled by the network management applications.
BACKGROUND OF THE INVENTION
Distributed computer networks, to which this invention applies, are systems comprising a number of components such as printers, computers, routers and the like, that are interconnected to enable communication among the components and sharing of data and resources. For example, a distributed computer network may include a combination of separate local area networks (LAN) that are connected in a wide area network (WAN) to form a single distributed network structure. The LANs are interconnected to communicate with each other by routers. Each LAN may include servers and clients that are connected by physical media such as cables and network cards in order to share resources such as files or applications. A server may be a computer or process that provides shared network resources to network users and a client is usually a computer that accesses the shared network resources provided by the servers. Shared resources in a network may include printers, other peripherals and software applications.
Network activity information relating to messages transmitted over the network is commonly stored in designated network information files on one or more of the network's computers. As activity information is received from the various network components, it is appended to these files. Records in the files are time stamped to indicate when they were received. The information files thus maintain a record of all activities over the network over some period of time.
In order to view the network activity for a particular computer or group of computers, facilities are commonly provided to retrieve selected data for examination by the user. Such data may include, for example, the amount of traffic into or out of a particular resource in the system; a record of particular kinds of traffic; the identity of traffic originators, etc. Typically, the data is presented in tabular form, and the amount of data can be overwhelming. Thus, it is often difficult to assimilate the data presented. In order to facilitate assimilation of the data, the amount of data may be selectively reduced in volume, but this correspondingly diminishes the information that can be gleaned from it. Most often, such a reduction involves selecting a subset of the data based on the source and/or destination of the data. While such views are interesting in and of themselves, they fail to present a comprehensive, gestalt view of the network
SUMMARY OF THE INVENTION
We have created a visualization application which enables a user such as a system administrator to rapidly obtain and assimilate substantial amounts of information about various types of transactions involving the respective activities of the components. In particular, in accordance with the present invention, information concerning various aspects of network traffic is monitored and stored for subsequent retrieval and use. For example, the information may be collected by one or more routers through which the data passes as it transits the network, and stored in a separate file from which it is subsequently retrieved for display.
The user may select for display specific subsets of the collected information, as well as specific attributes of these subsets. The criteria for specifying the data may include, among other elements, the identification of particular components whose activity is to be monitored; the starting and ending times of the interval over which the information is to be monitored for subsequent display; the frequency within the interval at which the information is to be monitored and the duration of the monitoring at each instance (e.g., for a twenty-four hour interval, a monitoring period of one minute at every ten minutes); and other pertinent characteristics. The network visualization application begins extracting data from the network information files at the starting time and stops extracting data at the ending time. During each intermediate time interval, the visualization application compiles the information in the information file that meets the filtering criteria set forth by the system administrator, and stores the selected information for display at stated times or at the request of the administrator.
The visualization application displays a map of the network and dynamically overlays the map with graphical images that represent the selected information designated by the system administrator or other user. The information is presented in a dynamic, graphic (as opposed to numeric) manner that the user can quickly assimilate. For example, traffic between selected computers may be represented by lines whose width, color, density or other characteristic changes in accordance with the volume of traffic over time. By taking “snapshots” of this traffic at discrete intervals over a larger interval, one effectively forms “frames” that depict the traffic at various times and that, when is played back one after the other in rapid succession, create a “movie clip” of the selected traffic flow parameters. This provides an environment in which the system administrator or other user can accurately and visually analyze the composition of network activity and thereby reduce human errors that occur during interpretation of static data tables that heretofore have been relied upon for presentation of network information.


REFERENCES:
patent: 4471348 (1984-09-01), London et al.
patent: 5276789 (1994-01-01), Besaw et al.
patent: 5295244 (1994-03-01), Dev et al.
patent: 5349662 (1994-09-01), Johnson et al.
patent: 5471616 (1995-11-01), Johnson et al.
patent: 5559955 (1996-09-01), Dev et al.
patent: 5570326 (1996-10-01), Trystram
patent: 5659768 (1997-08-01), Forbes et al.
patent: 5751965 (1998-05-01), Mayo et al.
patent: 5768552 (1998-06-01), Jacoby
patent: 5793974 (1998-08-01), Messinger
patent: 5850386 (1998-12-01), Anderson et al.
patent: 5850388 (1998-12-01), Anderson et al.
patent: 5878420 (1999-03-01), Salle
patent: 6054987 (2000-04-01), Richardson
patent: 6065138 (2000-05-01), Gould et al.
patent: 6104392 (2000-08-01), Shaw et al.
patent: 6122639 (2000-09-01), Babu et al.
patent: 6144987 (2000-11-01), Niemi
patent: 6219708 (2001-04-01), Martenson
patent: 6252947 (2001-06-01), Diamond et al.
patent: 6269447 (2001-07-01), Maloney et al.
patent: 6271845 (2001-08-01), Richardson
patent: 6279037 (2001-08-01), Tams et al.
patent: 6281790 (2001-08-01), Kimmel et al.
patent: 6289368 (2001-09-01), Dentler et al.
patent: 6295527 (2001-09-01), McCormack et al.
patent: 6304262 (2001-10-01), Maloney et al.
patent: 6308148 (2001-10-01), Bruins et al.
patent: 6327620 (2001-12-01), Tams et al.

LandOfFree

Say what you really think

Search LandOfFree.com for the USA inventors and patents. Rate them and share your experience with other people.

Rating

Network traffic visualization does not yet have a rating. At this time, there are no reviews or comments for this patent.

If you have personal experience with Network traffic visualization, we encourage you to share that experience with our LandOfFree.com community. Your opinion is very important and Network traffic visualization will most certainly appreciate the feedback.

Rate now

     

Profile ID: LFUS-PAI-O-3318088

  Search
All data on this website is collected from public sources. Our data reflects the most accurate information available at the time of publication.