A system and method for online real-time anonymization of ip flow data

An anonymization and streaming data technology, applied in digital transmission systems, transmission systems, data exchange networks, etc., can solve problems such as unusable network traffic, wasted testing time, and prolonging the testing cycle, so as to preserve the use value and improve Efficient effect of utilization rate and positioning efficiency

Inactive Publication Date: 2017-11-10
NAT COMP NETWORK & INFORMATION SECURITY MANAGEMENT CENT +1
View PDF3 Cites 0 Cited by
  • Summary
  • Abstract
  • Description
  • Claims
  • Application Information

AI Technical Summary

Problems solved by technology

The biggest disadvantage of this method is that the network traffic cannot be restored and played back in real time and the current network scene can not be reproduced during the traffic capture storage process.
The main performance is that for network equipment testing, first of all, the network equipment testing cycle is generally long, and a large amount of disk space is required to store the network traffic after capturing and storing the network traffic; secondly, the network traffic is unprocessed. What cannot be used is mainly to process the IP address in the traffic data packet. It takes a long time to process such a large network traffic; finally, it also takes a long time to restore and playback the network traffic offline. The current network scene cannot be reproduced in real time
For network equipment testing, precious test time is wasted, the test cycle is greatly extended, and real-time network scenarios cannot be used for security testing of network equipment

Method used

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
View more

Image

Smart Image Click on the blue labels to locate them in the text.
Viewing Examples
Smart Image
  • A system and method for online real-time anonymization of ip flow data
  • A system and method for online real-time anonymization of ip flow data
  • A system and method for online real-time anonymization of ip flow data

Examples

Experimental program
Comparison scheme
Effect test

Embodiment Construction

[0037] Attached below Figure 1~5Embodiments of the present invention will be described in detail. It should be understood that although the detailed implementation and specific operation process are given below, the protection scope of the present invention is not limited to the following examples.

[0038] According to the embodiment of the present invention, the network traffic in the network is captured online, and the IP address in the IP flow data packet is anonymized using the Crypto-PAn algorithm, and the anonymized network is played back in real time online after the processing is completed. flow, thus reproducing the current network scene.

[0039] figure 1 It is a block diagram of an online real-time anonymization system for IP flow data according to an embodiment of the present invention. The system includes four modules: IP flow data capture module, IP flow anonymization module, IP flow data storage module and anonymized IP flow playback module.

[0040] The I...

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

PUM

No PUM Login to view more

Abstract

The invention provides online real-time anonymization system and method for IP stream data. The system comprises an IP stream data capturing module, an IP stream data anonymization module, an IP stream data storing module and an anonymization IP stream replaying module; the IP stream data capturing module is used for extracting data packet IP address information and data packet head information from received network traffic; the IP stream anonymization module is used for processing the IP address online and on real time by anonymization through anonymization algorithm during capturing the IP stream data; the IP stream data storing module is used for storing the IP stream data subjected to anonymization to a storing device; the anonymization IP stream replaying module is used for specifying source and target MAC addresses of a data packet to be replayed and re-calculating the check bit of an IP stream data packet head during replaying so as to replay the IP stream data subjected to anonymization online and on real time.

Description

technical field [0001] The invention relates to the technical field of flow capture and playback, in particular to an online real-time anonymization system and method for IP flow data. Background technique [0002] Network equipment testing is a key link to ensure the reliability and stability of network equipment. The existing testing technology uses traffic simulation testers such as Smartbits and TestCenter to generate simulated traffic to test network security equipment. This testing technology can no longer meet the requirements Network security equipment can correctly implement security protection functions in a higher-speed and more complex environment. The real traffic playback method is a network test method that captures and stores real network traffic and performs restoration and playback. This method can reproduce the actual network scene and achieve the purpose of investigating the function and performance of the system under test in the actual network environm...

Claims

the structure of the environmentally friendly knitted fabric provided by the present invention; figure 2 Flow chart of the yarn wrapping machine for environmentally friendly knitted fabrics and storage devices; image 3 Is the parameter map of the yarn covering machine
Login to view more

Application Information

Patent Timeline
no application Login to view more
Patent Type & Authority Patents(China)
IPC IPC(8): H04L29/06H04L12/26
CPCH04L43/04H04L43/50H04L63/0421
Inventor 唐积强邹潇湘李卫李国栋钟晓歌折波曹鹏飞彭义刚高昕王锟
Owner NAT COMP NETWORK & INFORMATION SECURITY MANAGEMENT CENT
Who we serve
  • R&D Engineer
  • R&D Manager
  • IP Professional
Why Eureka
  • Industry Leading Data Capabilities
  • Powerful AI technology
  • Patent DNA Extraction
Social media
Try Eureka
PatSnap group products