IP Network Path Determination via Spoofed Probe Datagrams

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current methods for determining the transmission path of datagrams in IP networks require Network Managers to take control of the source host, which raises concerns about confidentiality and intrusion, especially when investigating issues remotely.

Innovation Solution

A system and method that allow a Network Manager to determine the transmission path of datagrams from a source device to a destination device by sending probe datagrams with a spoofed source address, enabling replies to be sent directly to the Network Manager station without needing to control the source host, thereby bypassing it.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Measurement precision

If Network Manager takes control of source host to determine transmission path, then path determination capability is improved, but user confidentiality is compromised

Engineering Contradiction:
Improvepath determination capabilityVSAvoiduser confidentiality
Core Design Contradiction:
Measurement precisionVSObject-affected harmful factors

Solution Approach 1:

The patent introduces an intermediary mechanism where the source host acts as a mediator that forwards probe datagrams to the destination without requiring the Network Manager to directly control it. The source host receives a request from the Network Manager, then autonomously sends probe datagrams with spoofed source addresses, allowing path determination while preserving user confidentiality.

Inventive Principle:
Principle #24Intermediary (Mediator)

Solution Approach 2:

The patent uses copying by creating probe datagrams that replicate the appearance of normal traffic but with modified source addresses. These probe datagrams copy the essential characteristics of legitimate packets while containing the necessary information for path tracing, allowing the Network Manager to obtain path information without direct access to the source host.

Inventive Principle:
Principle #26Copying

2Measurement precision

If Network Manager takes control of source host for remote troubleshooting, then diagnostic capability is improved, but ease of operation is worsened due to access requirements

Engineering Contradiction:
Improvediagnostic capabilityVSAvoidaccess requirement complexity
Core Design Contradiction:
Measurement precisionVSEase of operation

Solution Approach 1:

The source host performs self-service by autonomously sending probe datagrams after receiving a simple request from the Network Manager. The host uses its own resources and capabilities to generate and send the probe packets, eliminating the need for the Network Manager to maintain direct control or special access permissions to the source host.

Inventive Principle:
Principle #25Self-service

Solution Approach 2:

The source host serves as an intermediary that translates the Network Manager's diagnostic request into actual probe datagram transmissions. This intermediary role allows the Network Manager to initiate diagnostics without requiring ongoing control or complex access arrangements to the source host.

Inventive Principle:
Principle #24Intermediary (Mediator)

3Device complexity

If probe datagrams use real source address, then reply routing is simplified, but source device control requirement increases

Engineering Contradiction:
Improvereply routing complexityVSAvoidsource device control requirement
Core Design Contradiction:
Device complexityVSEase of operation

Solution Approach 1:

The patent inverts the traditional approach by spoofing the source address of probe datagrams to appear as if they originated from the Network Manager's station rather than the actual source host. This inversion causes reply packets to be routed directly to the Network Manager, eliminating the need for the source host to maintain control for reply collection while still enabling complete path determination.

Inventive Principle:
Principle #13The other way round (Inversion)

Data Source

PatentUS7385937B2Method and system for determining a path between two points of an IP network over which datagrams are transmitted
Publication Date: 2008.06.10 META PLATFORMS INC
  • US7385937B2 patent drawing
  • US7385937B2 patent drawing
  • US7385937B2 patent drawing

AI summary

System, computer program and method for determining a transmission path of datagrams in an IP network from a source device to a destination device. The source device receives from a network manager station, a message for retrieving information related to the transmission path of datagrams to the destination device. The message comprises a destination address and a source address. The destination address is an IP address of the destination device, and the source address is an IP address of the network manager device. The source device sends a plurality of probe datagrams to a respective plurality of IP network devices along the transmission path to the destination device. Each probe datagram comprises as destination address, the IP address of the destination device and as source address, the IP address of the network manager station. Consequently, replies, if any, to the probe datagrams are sent back directly to the network manager station by the IP network device along the transmission path, bypassing said the device. The invention also resides in the network manager station and the computer program product executing at the network manager station which sends the message to the source device, and receives and analyzes the replies to the probe datagrams to locate the break in the transmission path.