Network Traffic Collection Device for Event Monitoring
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing technologies face challenges in intensively monitoring network events while considering network restrictions, such as limited communication paths to data lakes in large-scale carrier networks, leading to reduced collection granularity and delayed detection of failures or security threats.
Innovation Solution
A collection device that specifies traffic paths based on past flow information and determines network devices on these paths for designated events, allowing for intensive monitoring by adjusting sampling rates and collecting flow statistical information efficiently.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If flow statistical information is collected with high granularity to enable intensive monitoring of events, then measurement precision and detection capability are improved, but the quantity of information to be collected becomes enormous, making it difficult to handle under network restrictions
Solution Approach 1:
The patent applies local quality by differentiating collection granularity based on traffic characteristics. High-granularity collection is applied locally to traffic flows identified as relevant to monitored events, while lower granularity is used for other traffic. This is achieved through the specification unit that identifies traffic paths and the determination unit that selects network devices, enabling intensive monitoring only where necessary rather than uniformly across all traffic.
Solution Approach 2:
The patent segments the information collection process by dividing traffic into different categories based on event relevance. The system segments collection intensity according to traffic flow characteristics and event types, collecting detailed flow statistical information only for segmented portions of traffic that are relevant to monitored events, thereby reducing the total amount of information while maintaining detection capability.
2Quantity of substance
If collection granularity is reduced to handle network restrictions, then the quantity of information is reduced, but measurement precision deteriorates and detection capability is weakened
Solution Approach 1:
The patent applies preliminary action by pre-identifying traffic paths and predicting which traffic flows are likely to be relevant to monitored events before actual monitoring occurs. The specification unit uses past flow information to specify traffic paths in advance, and the determination unit pre-determines which network devices should be monitored. This preliminary identification enables the system to maintain high collection granularity for relevant traffic while reducing overall information volume.
3Reliability
If all event information is collected to enable comprehensive monitoring, then detection capability is improved, but the quantity of information becomes enormous and handling becomes difficult
Solution Approach 1:
The patent extracts only the necessary information for event detection by using the specification unit to identify relevant traffic paths and the determination unit to select specific network devices. Instead of collecting all event information, the system extracts and collects only flow statistical information from network devices that are determined to be relevant to monitored events, thereby maintaining detection capability while significantly reducing information volume.
4Reliability
If high-volume information collection is implemented, then comprehensive monitoring is achieved, but network bandwidth consumption increases and network restrictions are violated
Solution Approach 1:
The patent applies local quality by concentrating monitoring resources on specific network devices and traffic flows that are relevant to monitored events, rather than uniformly monitoring all traffic. The determination unit identifies and focuses collection on local portions of the network where events are likely to occur, reducing overall network bandwidth consumption while maintaining effective monitoring coverage for critical events.
Data Source
AI summary
A specification unit (15b) specifies a path of traffic on the basis of past flow information. A determination unit (15c) determines a network device on the specified path for traffic related to a designated event.


