Top Banner
MONICA Research Group Juraj Giertl, Martin Révés [email protected], [email protected] IPFIX Interoperability Event, Prague, 24. – 25. 3. 2011
15
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

MONICA Research Group

Juraj Giertl, Martin Révés

[email protected], [email protected]

IPFIX Interoperability Event, Prague, 24. – 25. 3. 2011

Page 2: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

Outline

• Introduction of Technical University• The BasicMeter Tool• MONICA add-ons

Page 3: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

Technical University of Kosice

• Faculty of Mining, Ecology, Process Control and Geotechnology

• Faculty of Metallurgy• Faculty of Mechanical Engineering• Faculty of Electrical Engineering and Informatics• Faculty of Civil Engineering• Faculty of Economics• Faculty of Manufacturing Technologies• Faculty of Arts• Faculty of Aeronautics

Page 4: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

Faculty of Electrical Engineering and Informatics

• Department of Computers and Informatics • Department of Cybernetics and Artificial Intelligence • Department of Electrical Drives and Mechatronics • Department of Technologies in Electronics • Department of Mathematics • Department of Physics • Department of Electric Power Engineering • Department of Electronics and Multimedia

Communications • Department of Theoretical Electrotechnics and Electrical

Measurement

Page 5: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

Department of Computers and Informatics

• Informatics and Computer Languages Laboratory• Software Engineering Laboratory• Information Systems Laboratory• Computer Networks Laboratory• Computer Architectures and Security Laboratory

Page 6: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

Computer Networks Laboratory

Head of the laboratory: Frantisek Jakab

Staff:•2 associate professors•7 assistant professors•7 PhD students•14 students•29 external members•4 honorary members

Page 7: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

The BasicMeter Tool

• BEEM BasicmEter Exporting and Metering Process

• JXColl Java XML Collector

• BM Analyzer BasicMeter Analyzer

• ACP Analyzer Collector Protocol

• AEP Analyzer Exporter Protocol

NETWORK

BEEM

SQLdatabase

JXColl

BM Analyzer

NF v5/v9IPFIX

AEP

SQL

SQL

ACP

IP traffic

dataconnection

controlconnection

control + dataconnection

Page 8: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

MONICA add-ons (1)

• Modular WebAnalyzer built on Java Wicket framework integrating many potential extensions and applicability-specific modules.

• ECAM (Exporter Collector Analyzer Module) for the centralized management and easy deployment of the monitoring tool.

Page 9: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

MONICA add-ons (2)

• ACP (Analyzer Collector Protocol) for the direct communication of collector and analyzer.

• Data WareHouse for data preprocessing and storing for efficient access by the analyzer.

• Adaptive export of flow records from the observation point.

• Measurement of OWD with compensation of observation points’ clock skew.

• Usage-based accounting.• Anomaly based IDS.

Page 10: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

MONICA add-ons (3)

• Adaptive anomaly driven traffic engineering.

Page 11: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

MONICA add-ons (4)

• Monitoring of information systems.

• Extension of IPFIX protocol specification

Log Processor

SQLdatabase

JXColl

Analyzer

IPFIX-IS

AEP

SQL

SQL

ACP

IS Logentries

dataconnection

controlconnection

control + dataconnection

IS

Page 12: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

Future Plans

• Full conformity with IPFIX specifications• Optimization of network monitoring for high-speed

networks• Implementation of adaptive mechanisms• Support for SCTP, TLS• Support for IPv6, MPLS• Further research of add-ons• the most important one:

ESTABLISHMENT OF CLOSER COOPERATION WITH THE COMMUNITY

Page 13: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

Links

www.cnl.sk

wiki.cnl.sk/Monica/IPFIXPrague

[email protected]

[email protected]

Page 14: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

Thank you for attention

Page 15: MONICA Research Group Juraj Giertl, Martin Révés Juraj.Giertl@cnl.skJuraj.Giertl@cnl.sk, Martin.Reves@cnl.skMartin.Reves@cnl.sk IPFIX Interoperability.

Acknowledgement

This work is the result of the project implementation: Center of Information and Communication Technologies for Knowledge Systems (ITMS project code: 26220120030) supported by the Research & Development Operational Program funded by the ERDF.