Nova Patents
CA2607603C

Distributed traffic analysis

Abstract

A distributed system for analyzing traffic flow on a communications network architecture where a computer provides information over a data network to a concentrator, which provides a bridge between the computer and the end user terminals. The interface between the terminals and the concentrator is provided through access points for each workstation. The system to analyze the traffic is distributed into three components that perform, respectively, classification of the traffic flow, processing of the results of the classification, and handling of the processed results.

CA2607603C, drawing sheet 1
Sheet 1 of 7

Term

Term ended

Expired 12 May 2026, 0.4 years ago.

  1. Priority and filed
  2. Granted
  3. Expired
  4. Today

17 claims: 8 independent, 9 dependent

  1. 1
    CA 02607603 2014-02-14 CLAIMS 1. A distributed traffic analysis system for analyzing traffic flow on a data packet network communication link comprising terminals, access points, a concentrator, and a data network, wherein the access points are provided as interface between the terminals and the concentrator for each of the terminals, wherein the distributed traffic analysis system comprising:a. embedded classification components hosted in at least some of the access points, performing classification and analysis of network traffic;b. a management server configured to process results of the classification sent by the embedded classification components;and c. at least one network operating system adapted to use the classified information pertaining to the classification of the traffic processed by the management server to generate a comprehensive analysis of the traffic, wherein the system further comprises a communication protocol managed by the embedded classification components for providing a communication means between the embedded classification components and the management server, said communication protocol being configured to encapsulate the information within the traffic flow, by modifying the content of the packets intended to carry optional information.
  2. 2
    The system according to claim t, wherein the communication protocol is configured to use a proprietary signalling between the embedded classification components and the management server. CA 02607603 2014-02-14
  3. 5
    The system of any one of claims 1 to 4, wherein the management server is configured to process the classified information pertaining to the classification of the traffic flow by consolidating and storing the classified traffic.
  4. 6
    The system of any one of claims 1 to 5, wherein the management server is configured to process the classified information pertaining to the classification of the traffic flow by counting the classified traffic.
  5. 7
    The system of any one of claims 1 to 6, wherein the management server is configured to process the classified information pertaining to the classification of the traffic flow by establishing statistical information.
  6. 8
    The system of any one of claims 1 to 7, wherein the comprehensive analysis of the traffic flow is a billing service.
  7. 9
    The system of any one of claims 1 to 8, wherein the system further comprises a hierarchical analyzing system comprising analyzers adapted for serially performing different levels of analysis at successive different layers of analysis, wherein the packets analyzed at a given level of analysis are forwarded to a next successive layer for additional analysis, and the additional analysis performed at the next layer profits from the analysis performed by the previous given level of analysis. CA 02607603 2014-02-14
  8. 10
    A method for analyzing traffic flow on a data packet network communication link comprising terminals, wherein network information is provided over a data network received by a concentrator, and wherein access points are provided as interface between the terminals and the concentrator for each of the terminals, wherein the method comprises:hosting embedded classification components in the access points to perform classification and analysis of the traffic flow;processing results of the classification sent by the embedded classification components using a management server;using the classified information pertaining to the classification of the traffic processed by the management server using at least one network operation system;and generating a comprehensive analysis of the traffic flow, wherein the method further comprises providing a communication means between the embedded classification components and the management server via a communication protocol managed by the embedded classification components, and said communication protocol encapsulates the information within the traffic flow comprised of packets, arid modifies the content of the packets intended to carry optional information.