DocumentCode
2457042
Title
DiMAPI: An Application Programming Interface for Distributed Network Monitoring
Author
Trimintzios, Panos ; Polychronakis, Michalis ; Papadogiannakis, Antonis ; Foukarakis, Michalis ; Markatos, Evangelos P. ; Oslebo, Arne
Author_Institution
European Network & Inf. Security Agency
fYear
2006
fDate
3-7 April 2006
Firstpage
382
Lastpage
393
Abstract
Network monitoring and measurement is commonly regarded as an essential function for understanding, managing and improving the performance and security of network infrastructures. Traditional passive network monitoring approaches are not adequate for fine-grained performance measurements nor for security applications. In addition, many applications would benefit from monitoring data gathered at multiple vantage points within a network infrastructure. This paper presents the design and implementation of DiMAPI, an application programming interface for distributed passive network monitoring. DiMAPI extends the notion of the network flow with the scope attribute, which enables flow creation and manipulation over a set of local and remote monitoring sensors. Experiments with a number of applications on top of DiMAPI show that it has reasonable performance, while the response latency is very close to the actual round trip time between the monitoring application and the monitoring sensors. A broad range of monitoring applications can benefit from DiMAPI to efficiently perform advanced monitoring tasks over a potentially large number of passive monitoring sensors
Keywords
Internet; application program interfaces; computerised monitoring; DiMAPI; Internet; application programming interface; distributed network monitoring; distributed passive network monitoring; network flow; passive monitoring sensors; Application software; Computer network management; Computerized monitoring; Data security; Information security; Internet; Measurement; Passive networks; Remote monitoring; Telecommunication traffic;
fLanguage
English
Publisher
ieee
Conference_Titel
Network Operations and Management Symposium, 2006. NOMS 2006. 10th IEEE/IFIP
Conference_Location
Vancouver, BC
ISSN
1542-1201
Print_ISBN
1-4244-0142-9
Type
conf
DOI
10.1109/NOMS.2006.1687568
Filename
1687568
Link To Document