CoMo (Continuous Monitoring) is a passive moni-toring system. CoMo has been designed to be the basic building block of an open network monitoring infrastructure that would allow researchers and network operators to easily process and share network traffic statistics over multiple sites. This paper identifies the challenges that lie ahead in the deployment of such an open infrastructure. These main challenges are:(1) the system must allow any generic metric to be computed on the incoming traffic stream,(2) it must provide privacy and security guarantees to the owner of the monitored link, the network users and the CoMo users, and (3) it must be robust in the face of anomalous traffic patterns. We describe the high-level architecture of CoMo and, in greater detail, the resource management, query processing and security aspects.
The CoMo white paper
RIZZO, LUIGI
2004-01-01
Abstract
CoMo (Continuous Monitoring) is a passive moni-toring system. CoMo has been designed to be the basic building block of an open network monitoring infrastructure that would allow researchers and network operators to easily process and share network traffic statistics over multiple sites. This paper identifies the challenges that lie ahead in the deployment of such an open infrastructure. These main challenges are:(1) the system must allow any generic metric to be computed on the incoming traffic stream,(2) it must provide privacy and security guarantees to the owner of the monitored link, the network users and the CoMo users, and (3) it must be robust in the face of anomalous traffic patterns. We describe the high-level architecture of CoMo and, in greater detail, the resource management, query processing and security aspects.I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.