Distributed Traffic Analysis System for Network Performance Monitoring
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing traffic analysis systems face inefficiencies and inaccuracy due to high processing demands and the inability to adjust processing power per user, especially in networks with increasing traffic speeds, and they struggle with encrypted traffic analysis without prior classification.
Innovation Solution
A distributed traffic analysis system with embedded classification components at access points and a management server that processes and consolidates classified traffic information, using a communication protocol to manage data flow and perform hierarchical analysis across multiple layers.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Power
If traffic analysis is performed using centralized systems with increasing processing power, then analysis capability is improved, but processing efficiency and adaptability to individual user requirements deteriorate
Solution Approach 1:
The patent segments the centralized traffic analysis system into distributed analysis components deployed at multiple network locations (access points, routers, switches). Each segment performs local traffic analysis independently, eliminating the bottleneck of centralized processing and enabling parallel analysis of traffic flows, thereby improving overall processing efficiency while maintaining adequate analysis capability.
Solution Approach 2:
The patent introduces a new dimensional approach by distributing analysis functionality across the network infrastructure rather than concentrating it in a single processing center. This spatial distribution across multiple network nodes enables scalable processing that adapts to individual user requirements while maintaining system-wide analysis capability.
2Measurement precision
If heavy processing is applied to obtain reliable traffic classification, then classification accuracy is improved, but processing time and energy consumption increase
Solution Approach 1:
The patent implements preliminary classification actions at the edge of the network (access points, routers) where basic traffic classification is performed before packets enter the core network. This preliminary processing reduces the burden on central systems and enables faster overall classification by handling routine classification tasks in advance.
Solution Approach 2:
The patent applies partial processing by performing basic classification at distributed network points and reserving intensive analysis only for traffic flows that require deeper inspection. This selective approach maintains high classification accuracy for critical traffic while reducing overall processing time and energy consumption by avoiding exhaustive analysis of all packets.
3Measurement precision
If traffic analyzers are inserted at specific network locations, then representative global traffic analysis is achieved, but system complexity and processing power requirements increase
Solution Approach 1:
The patent makes existing network infrastructure components (access points, routers, switches) multi-functional by enabling them to perform both their primary networking functions and traffic analysis functions simultaneously. This eliminates the need for separate dedicated analyzer devices, reducing system complexity while maintaining comprehensive traffic analysis capability across the network.
Solution Approach 2:
The patent enables network infrastructure components to perform their own traffic analysis independently without requiring external dedicated analyzers. Each router, switch, or access point analyzes its own passing traffic, simplifying the overall system architecture by eliminating the need for complex centralized analysis infrastructure while achieving comprehensive global traffic visibility.
4Reliability
If packet inspection is performed after encryption, then security is maintained, but packet classification becomes impossible
Solution Approach 1:
The patent performs packet classification and analysis before encryption is applied in the network transmission path. By conducting inspection operations at points where packets are still in plaintext (at access points, edge routers), the system maintains both security (encryption is still applied for transmission) and classification capability (performed on unencrypted data).
Data Source
AI summary
A distributed system for analyzing traffic flow on a communications network architecture where a computer provides information over a data network to a concentrator, which provides a bridge between the computer and the end user terminals. The interface between the terminals and the concentrator is provided through access points for each workstation. The system to analyze the traffic is distributed into three components that perform, respectively, classification of the traffic flow, processing of the results of the classification, and handling of the processed results.


