Recursive Network Enumeration via Node Replication
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing network infrastructure assessment tools often provide inaccurate information, failing to ensure real-time and on-demand accurate views of network infrastructure details such as IP addresses, operating systems, and security configurations, and are unable to detect unauthorized or malevolent nodes effectively.
Innovation Solution
A method where at least a portion of an assessor tool is replicated on an origination node, generating authentication keys and recursively enumerating network nodes, allowing for accurate and comprehensive network infrastructure assessment by marking parent nodes, detecting child nodes, and replicating the tool on nodes with valid authentication keys, ensuring accurate data collection and detection of unauthorized nodes.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Measurement precision
If traditional assessor tools (Nessus, Nmap, Masscan, Metasploit) are used to enumerate network infrastructure, then some network information can be obtained, but the information accuracy is poor and unauthorized nodes cannot be reliably detected
Solution Approach 1:
The assessor tool is segmented and replicated across multiple nodes in the network rather than being centralized. Each node runs its own instance of the assessor tool, enabling distributed enumeration that improves both accuracy and completeness of network information collection.
Solution Approach 2:
The assessor tool performs self-replication across the network using generated authentication keys. Nodes automatically enumerate their own infrastructure and propagate assessment data through the network, enabling autonomous information collection that ensures accurate and comprehensive network views.
2Reliability
If assessor tool is replicated on multiple nodes with authentication keys, then accurate network information is obtained, but device complexity increases
Solution Approach 1:
The assessor tool is copied and replicated across multiple network nodes using authentication keys. This copying mechanism enables reliable and accurate network assessment by distributing the assessment function, while the automated key-based replication process manages the complexity of deployment.
3Loss of information
If recursive enumeration with authentication keys is implemented, then comprehensive network coverage is achieved, but time consumption increases
Solution Approach 1:
Authentication keys are generated in advance before the recursive enumeration process begins. This preliminary action enables nodes to immediately authenticate and participate in the enumeration process without delay, achieving comprehensive network coverage more efficiently.
Solution Approach 2:
The recursive enumeration process continues continuously across the network using pre-generated authentication keys. Child nodes are immediately identified and processed without interruption, maintaining continuous useful action that reduces overall assessment time while ensuring complete node enumeration.
Data Source
AI summary
A method for network infrastructure assessment is provided. An assessor tool portion is replicated on a network origination node. A plurality of authentication keys associated with a root authentication key are generated. Network nodes are recursively enumerated by the assessor tool. In the recursion, information on the parent node is enumerated and reported to a controller of the network; the parent node is marked as enumerated; child nodes connected to the parent node are detected; at least a portion of the assessor tool is replicated on a child node that is not enumerated but has a valid assigned authentication key; and recursion is continued with the child node as the parent node. The reported information is processed to produce a network infrastructure assessment.


