• DocumentCode
    2457042
  • Title

    DiMAPI: An Application Programming Interface for Distributed Network Monitoring

  • Author

    Trimintzios, Panos ; Polychronakis, Michalis ; Papadogiannakis, Antonis ; Foukarakis, Michalis ; Markatos, Evangelos P. ; Oslebo, Arne

  • Author_Institution
    European Network & Inf. Security Agency
  • fYear
    2006
  • fDate
    3-7 April 2006
  • Firstpage
    382
  • Lastpage
    393
  • Abstract
    Network monitoring and measurement is commonly regarded as an essential function for understanding, managing and improving the performance and security of network infrastructures. Traditional passive network monitoring approaches are not adequate for fine-grained performance measurements nor for security applications. In addition, many applications would benefit from monitoring data gathered at multiple vantage points within a network infrastructure. This paper presents the design and implementation of DiMAPI, an application programming interface for distributed passive network monitoring. DiMAPI extends the notion of the network flow with the scope attribute, which enables flow creation and manipulation over a set of local and remote monitoring sensors. Experiments with a number of applications on top of DiMAPI show that it has reasonable performance, while the response latency is very close to the actual round trip time between the monitoring application and the monitoring sensors. A broad range of monitoring applications can benefit from DiMAPI to efficiently perform advanced monitoring tasks over a potentially large number of passive monitoring sensors
  • Keywords
    Internet; application program interfaces; computerised monitoring; DiMAPI; Internet; application programming interface; distributed network monitoring; distributed passive network monitoring; network flow; passive monitoring sensors; Application software; Computer network management; Computerized monitoring; Data security; Information security; Internet; Measurement; Passive networks; Remote monitoring; Telecommunication traffic;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Network Operations and Management Symposium, 2006. NOMS 2006. 10th IEEE/IFIP
  • Conference_Location
    Vancouver, BC
  • ISSN
    1542-1201
  • Print_ISBN
    1-4244-0142-9
  • Type

    conf

  • DOI
    10.1109/NOMS.2006.1687568
  • Filename
    1687568