IPFIX Protocol Extension for Hierarchical Structured Data Export

Resolve Bottlenecks,
Find Innovative Solutions
Generate Solutions

Solution Overview

Problem

Current networking technologies, such as IPFIX and NetFlow, are limited in their ability to efficiently export and manage complex, hierarchical structured data and lists, as they primarily support 'flat' data records, which are inadequate for new network management applications requiring the export of repeated and variable data from devices like routers and firewalls.

Innovation Solution

An extension to the IPFIX protocol and NetFlow is introduced to support hierarchical structured data and variable-length lists, enabling the definition of complex data structures and templates that can represent structured relationships, allowing for the efficient export and interpretation of data records across network devices and management stations.

Engineering Contradictions & Design Principles

VSEngineering Contradiction Analysis

1Adaptability or versatility

If flat data records are used for exporting network data, then the data structure is simple and easy to process, but the system cannot efficiently represent complex hierarchical structured data and variable-length lists required by new network management applications

Engineering Contradiction:
Improvecapability to represent complex hierarchical structured dataVSAvoiddata structure complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent implements nested data structures where templates can contain other templates, and data records can contain nested lists and hierarchical elements. This allows complex hierarchical structured data to be represented by nesting simpler structures within each other, enabling the expression of complex network management data while maintaining manageable structure through recursive definition of template and data record formats

Inventive Principle:
Principle #7Nested doll (Nesting)

Solution Approach 2:

The patent segments complex data structures into modular templates and data records. Each template defines a specific structure that can be independently defined and reused, and data records are segmented into fields that reference these templates. This segmentation allows complex hierarchical data to be broken down into manageable, reusable components that can be processed individually while maintaining their hierarchical relationships

Inventive Principle:
Principle #1Segmentation

2Productivity

If traditional flat data export methods are used, then bandwidth consumption is lower for simple data, but the system cannot aggregate metrics into a single flow record efficiently

Engineering Contradiction:
Improvedata aggregation efficiencyVSAvoidbandwidth consumption
Core Design Contradiction:
ProductivityVSLoss of energy

Solution Approach 1:

The patent merges multiple metrics and data elements into a single aggregated flow record by using templates that can contain multiple fields and nested structures. Instead of exporting separate records for each metric, the system combines related metrics into hierarchical structures within a single data record, reducing the total number of records transmitted and optimizing bandwidth utilization while maintaining data integrity

Inventive Principle:
Principle #5Merging (Combining)

3Adaptability or versatility

If the protocol is extended to support hierarchical structured data, then advanced applications like intrusion detection and security analysis are enabled, but the protocol complexity increases

Engineering Contradiction:
Improvesupport for advanced network management applicationsVSAvoidprotocol complexity
Core Design Contradiction:
Adaptability or versatilityVSDevice complexity

Solution Approach 1:

The patent creates a universal template and data record structure that can serve multiple network management functions including intrusion detection, security analysis, and general network monitoring. The hierarchical template system provides a multi-functional framework that can represent various types of network data through configuration rather than requiring separate protocols for different applications, thereby enabling advanced applications while maintaining a unified protocol structure

Inventive Principle:
Principle #6Universality (Multi-functionality)

Data Source

PatentUS8125920B2System and method for exporting structured data in a network environment
Publication Date: 2012.02.28 CISCO TECHNOLOGY INC
  • US8125920B2 patent drawing
  • US8125920B2 patent drawing
  • US8125920B2 patent drawing

AI summary

An apparatus is provided in one example embodiment and includes a network element configured to receive a plurality of packets. The network element is configured to couple to a module, the module being configured to generate a data record that is based on information associated with the packets and capable of being interpreted according to a template in which multiple information elements can be positioned to create a hierarchical relationship within structured data. The structured data further includes references to the information elements. The network element further including an export module configured to export the data record to a next destination.