首页>
外国专利>
Storing network bidirectional flow data and metadata with efficient processing technique
Storing network bidirectional flow data and metadata with efficient processing technique
展开▼
机译:利用高效的处理技术存储网络双向流数据和元数据
展开▼
页面导航
摘要
著录项
相似文献
摘要
A processing technique provides an improved indexing arrangement that enables storage, filtering and querying of metadata used to retrieve packets captured from a network and persistently stored in a data repository. A packet capture engine records the packets in packet capture (PCAP) formats from a network link at a substantially high packet transfer rate to persistent storage of the data repository in a sustained manner. Efficient filtering and querying of the metadata to retrieve the stored packets may be achieved, in part, by organizing the metadata as one or more metadata repositories. The processing technique uses the Berkeley Packet Filter (BPF) language as an interface of a BPF engine to search or index the stored packets in response to queries. The BPF engine processes BPF expressions used as precursors to the indexing arrangement to enable access to the repositories when searching and locating stored packets matching the expressions.
展开▼