CN100370762C - Method device and system for processing warning message - Google Patents

Method device and system for processing warning message Download PDF

Info

Publication number
CN100370762C
CN100370762C CNB2006100573136A CN200610057313A CN100370762C CN 100370762 C CN100370762 C CN 100370762C CN B2006100573136 A CNB2006100573136 A CN B2006100573136A CN 200610057313 A CN200610057313 A CN 200610057313A CN 100370762 C CN100370762 C CN 100370762C
Authority
CN
China
Prior art keywords
warning message
message
alarm
network element
network management
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Expired - Fee Related
Application number
CNB2006100573136A
Other languages
Chinese (zh)
Other versions
CN1859211A (en
Inventor
王刚
叶翔
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Huawei Technologies Co Ltd
Original Assignee
Huawei Technologies Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Huawei Technologies Co Ltd filed Critical Huawei Technologies Co Ltd
Priority to CNB2006100573136A priority Critical patent/CN100370762C/en
Publication of CN1859211A publication Critical patent/CN1859211A/en
Application granted granted Critical
Publication of CN100370762C publication Critical patent/CN100370762C/en
Expired - Fee Related legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Landscapes

  • Data Exchanges In Wide-Area Networks (AREA)

Abstract

The present invention relates to an alarm message processing method, and a device and a system thereof. When a plurality of ports for receiving alarm messages receive the alarm messages, the ports analyze types of the alarm messages. An analyzing and modifying module receives the reproduced PDU from the ports, and processes the alarm messages in a consolidation form. Transmitting module receives the alarm message processed by the analyzing and modifying module, and transmits the alarm messages to network management equipment after the address information of the alarm messages is modified into IP addresses of the corresponding net element equipment, wherein before the alarm messages are transmitted to the network management equipment, source addresses of the alarm messages are record in the PDU. Because the arrival of the alarm messages, the present invention processes the alarm messages in the consolidation form so that the network management equipment reads the corresponding information from the messages of consolidation form so as to analyze alarm and reduce the difficulty for processing the alarm messages of the network management equipment. Simultaneously, the present invention adopts 'black and white lists ' to filter the messages in advance, simultaneously blocks the net element of the alarm messages, and effectively prevents alarm storm from occurring.

Description

The processing method of warning message, device and system
Technical field
The present invention relates to a kind of processing method, device and system of warning message, be particularly related to a kind of to Simple Network Management Protocol (Simple Network Management Protocol, hereinafter to be referred as: before SNMP) warning message is resolved, earlier this warning message is carried out the consolidation form conversion, make the Network Management Equipment alarming processing can access simplification, and can prevent processing method, device and the system of the Simple Network Management Protocol warning message of network alarm storm.
Background technology
Various types of hardware, software systems are distributing in the catenet system, every kind of hardware, software systems all can provide local management maintenance tool separately, in these instruments, has plenty of command-line tool based on MML, the management tool that has plenty of graphic interface, the configuration management platform that is based on Web that also has.These management tools provide management means easily for the network management personnel carries out local maintenance work.
Simple Network Management Protocol (Simple Network Management Protocol, hereinafter to be referred as: be to be widely accepted and one of the industrial standard that comes into operation SNMP), its target is to guarantee that management information transmits in any 2, be convenient to any node retrieving information of network manager on network, make amendment, failure diagnosis is finished in trouble-shooting, capacity planning and generation report.It adopts polling mechanism, and basic functions collection is provided.The most suitable environment small-sized, quick, low price uses.It is only required does not have the transport layer protocol-User Datagram Protoco (UDP) (User Datagram Protocol is designated hereinafter simply as UDP) that confirms, therefore, obtains the support of many products.
In the SNMP system, the agency (agent) that some faulty equipment takes place can initiatively report some messages, these messages are called as " trap (trap message) ", have specific thing to take place in order to informing network management system (NetworkManagement System is designated hereinafter simply as NMS).The alarm function of Network Management Equipment is to rely on this mechanism to realize to a great extent.
Because SNMP is based on udp protocol, each trap message is a UDP message just.It below is the analysis of relevant message format; Protocol Data Unit wherein (Protocol Data Unit is designated hereinafter simply as PDU) is really being deposited the data that message carries, and is storing the additional information to form with " name-value " in the sign " value-bindings " of PDU ending.Referring to Fig. 1, this is the overall format signal of a known UDP message; Referring to Fig. 2, this is the structural representation of PDU part in the UDP message; Referring to Fig. 3, this is the structural representation of " Value-bindings " in the PDU part.
Above-mentioned content has reflected the trap message structure of first version regulation of SNMP; After Network Management Equipment receives the trap message, generally judge the kind of trap message, and extract " value-binding " field contents wherein by " enterprise ID ", " Generic ID ", " Specific ID " field of analyzing it.Referring to Fig. 4,, comprising for various network element device NE: main frame (HOST), router (ROUTER) and switch (SWITCH) etc., the trap message, the length of value-binding field, type are all inequality; Also have in some trap messages and do not contain the value-bindings field.
Because various main frames, class database equipment have nothing in common with each other to the dynamics that SNMP supports, the version of trap message also is not quite similar.And the disunity of trap message format resolves these trap messages can for Network Management Equipment NMS and bring difficulty.After having a lot of trap messages to receive, need Network Management Equipment and then take certain operations just can resolve, therefore,, can cause resolving code and service code to mix if all resolve the trap message by Network Management Equipment NMS.
If the device category of management is numerous, corresponding resolution rules also can get more and more, this performance for Network Management Equipment can impact, particularly go wrong at some network element, when constantly sending a large amount of trap message, when being the alarm windstorm generation, can cause Network Management Equipment response trap message untimely, cause the entire system performance to descend.
Also have some two-shippers, cluster and many network interface cards, many IP devices in the network, the equipment that wherein has can be specified management address, i.e. trap message source address, and some equipment can be bound trap message source IP at random, and this just need shine upon Device IP.Generally, the interface between NMS and network element has very strong versatility, if mapping function is placed on NMS one side, then can influence this versatility.
Summary of the invention
First purpose of the present invention provides a kind of processing method, device and system of Simple Network Management Protocol warning message, make the Simple Network Management Protocol warning message before arriving Network Management Equipment, earlier the trap message bag of all particular ports being done consolidation form handles, solve trap message bag disunity thus, cause Network Management Equipment to resolve the problem of difficulty, improve the accuracy rate of alarming processing simultaneously.
Another object of the present invention provides a kind of processing method, device and system of Simple Network Management Protocol warning message, and when alarm windstorm produced, the trap message that the corresponding network element of temporary interruption sends prevented the impact of alarm windstorm to Network Management Equipment.
In order to realize first purpose of the present invention,
Method of the present invention comprises: when receiving warning message, the PDU content in the message is duplicated, and then carry out analysis modify; When analysis modify, the source destination address and the port of elder generation's recorded message, then, according to the enterprise ID that defines in the configuration file, Generic ID, Specific ID carries out index to PDU, for undefined trap message, setting according in the configuration file directly sends, and is perhaps abandoned; For the trap message that meets configuration rule, then value-bindings in this message is partly carried out Unified coding, with the most information of trap message (for example: information such as trap source NE type, module information, alarm type, alarm level) be recorded in the value-bindings field, directly send.
The inventive system comprises: a plurality of ports, analysis modify module and the sending module that are used for the receiving alarm message; Wherein, the analysis modify module is used for receiving the PDU that duplicates from a plurality of ports, and warning message is analyzed with consolidation form handle; Sending module is used for the warning message after the receiving and analyzing modified module is handled, and before sending described warning message to Network Management Equipment, will send to Network Management Equipment after the content according to configuration file filling warning message.
System of the present invention adopts tree to connect and compose by Network Management Equipment and network element device mutually, between network element device and the Network Management Equipment, be provided with the warning message processing unit, this warning message processing unit is used for the warning message that network element device sends analyzed and is transmitted to Network Management Equipment after handling with consolidation form; The warning message processing unit is made of a plurality of ports that are used for the receiving alarm message, analysis modify module and sending module; Wherein,
Described analysis modify module is used for receiving the PDU that duplicates from described port, and warning message is analyzed with consolidation form handle;
Described sending module is used for the warning message after the receiving and analyzing modified module is handled, and before sending described warning message to Network Management Equipment, will send to Network Management Equipment after the content according to configuration file filling warning message.
In order to realize second purpose of the present invention,
Method of the present invention is also further analyzed the trap message, the message of receiving and " blacklist " data that are kept in the configuration file are compared, only allow to transmit trap message through authorizing, and will frequently send the trap message, the network element that might cause alarm windstorm records in the blacklist, stops corresponding message to be forwarded to Network Management Equipment.
Device of the present invention also comprises FWSM and counter and/or timer, wherein, FWSM is used for upgrading its Access Control List (ACL) (Access ControlList according to the order of analysis modify module, ACL), record sends the network element device that the warning message frequency is higher than the setpoint frequency threshold value, and allow entitlement message to enter according to recorded information, stoping without permission, message enters.The signal that analysis modify module count pick up device and/or timer send, different network elements equipment is sent the record of warning message, add up the frequency that corresponding warning message sends, and the warning message that network element device sent that frequency is higher than setting threshold is not carried out any processing and forwarding.
Device in the system of the present invention has adopted above-mentioned FWSM and counter and/or timer equally, and its structure and effect do not repeat them here.
Because the present invention is before warning message arrives, earlier warning message has been carried out the processing of consolidation form, therefore, Network Management Equipment just needn't remove to be concerned about, to analyze the PDU header information of message again, can analyze alarm as long as from the value-bindings part of consolidation form message, read corresponding information, reduce the difficulty of Network Management Equipment processing warning message.Simultaneously,, the message that arrives is filtered in advance, write down for the network element of the warning message that takes place frequently simultaneously and block, can prevent the generation of alarm windstorm effectively because the present invention adopts " black and white lists " mechanism.
Below by drawings and Examples, technical scheme of the present invention is described in further detail.
Description of drawings
Fig. 1 is the structural representation of trap message of the present invention;
Fig. 2 is the structural representation of PDU in the trap message of the present invention;
Fig. 3 is the structural representation of value-bindings part among the trap message PDU of the present invention;
Fig. 4 directly is sent to the structural representation of Network Management Equipment for prior art trap message;
Fig. 5 is the flow chart that consolidation form is handled in the embodiment of the invention;
Fig. 6 is for filtering the flow chart that the warning message that takes place frequently filters in the embodiment of the invention;
Fig. 7 is the structural representation of the present invention's one concrete device;
Fig. 8 is the structural representation of another concrete device of the present invention.
Fig. 9 is for using the structural representation of network system of the present invention.
Embodiment
Referring to Fig. 5, the present invention duplicates the PDU content in the message when receiving warning message, and then carries out analysis modify; The analysis here, referring to Fig. 5, in fact can be the type of checking message, if the type of this message is special warning message, then need further judgement: whether this special warning message corresponding net element equipment is unique, be then to carry out simple PDU processing to get final product, otherwise, parse the unique trap content of message of this warning message by pre-configured script engine.Above-mentioned this " simple PDU handles " is meant: the type of judging the trap message by the header information (trap OID, genericID, specific ID) of SNMP trap message.According to its type change PDU content, information such as trap type of message are write among the PDU then, the head with the trap message replaces with consolidation form simultaneously.For the warning message of non-Special Category,, then, obtain alarming kind according to the source destination address and the port of the first recorded message of alarm message type (traptype) referring to Fig. 5; Then, according to the enterprise ID that defines in the configuration file, Generic ID, Specific ID carries out index to PDU, obtains the kind of information of equipment;
For the trap message that meets configuration rule, then fill corresponding message according to configuration file, promptly value-bindings in this message is partly carried out Unified coding, (for example: information such as trap source NE type, module information, alarm type, alarm level) information is recorded in the value-bindings field, directly sends with the major part of trap message.
The present invention also further analyzes the trap message, the message of receiving and " blacklist " data that are kept in the configuration file are compared, only allow to transmit trap message through authorizing, and will frequently send the trap message, the network element that might cause alarm windstorm records in the blacklist, stops corresponding message to be forwarded to Network Management Equipment.A concrete example is as follows: referring to Fig. 6, after receiving a message, at first according to the source net element information that writes down in this message, search " blacklist " (this blacklist records and sends the too frequent net element information of warning message) of in fire compartment wall, writing down, if there is this source net element information in the blacklist, then this message be under an embargo the message that passes through be under an embargo by, otherwise whether the type of further judging this message is undefined type of message, for undefined trap message, can be according to the setting in the configuration file, directly send, perhaps abandoned; Otherwise, carry out as analyzing and processing step that Fig. 5 shows, carry out that simple PDU handles or, behind the source IP in the modification message, message is transmitted according to this message of script engine processes; At last, add up, upgrade the acl list of fire compartment wall with the statistics that obtains according to the frequency information that is sent out of this message.
Referring to Fig. 7, in the warning message processing unit of the present invention, comprise a plurality of port ones that can receive the trap message simultaneously, analysis modify module 2 and sending module 3; After these above-mentioned port ones are used for receiving the trap message, PDU is wherein duplicated and is transmitted to analysis modify module 2, analysis modify module 2 records source destination address and port, and according to the enterprise ID that defines in the configuration file that is stored in this device, Generic ID, Specific ID carries out index to PDU, for undefined trap message, select the trap message is sent by sending module 3 according to the definition of configuration file, or do not handle.For the trap message that meets configuration rule, 2 couples of value-bindings wherein of analysis modify module partly carry out Unified coding, and trap message most information is stored among the value-bindings.In order to make Network Management Equipment send the network element device information of trap message, sending module 3 with the trap message source address of writing down among the PDU, and is revised as the address information of trap message the IP of equipment when sending the trap message.
Referring to Fig. 8, counter and/or timer 4 and acl list 5 can also further be set among the warning message processing unit TR of the present invention, miscellaneous part, for example: port one, sending module 3 do not repeat them here because it acts on identical shown in Fig. 7.Counter and/or timer 4 are used to add up the too frequent network element device of transmission warning message.When the frequency of a certain network element device transmission warning message is higher than certain threshold value, the information of this network element device, for example: the IP address, will go on record, device TR of the present invention is according to the processing of this record controls to the warning message of this network element device transmission.In order to control alarm windstorm effectively, be provided with the FWSM (not shown) in the device of the present invention, specifically can be made as one with analysis modify module 2 or other modules, in fire compartment wall, be provided with acl list 5, writing down " blacklist " and/or " white list " of said network element equipment in this acl list 5.When receiving the warning message that sends from " white list " middle network element device that writes down, device TR of the present invention carries out the conversion of consolidation form, and transmits corresponding warning message and give Network Management Equipment; Otherwise,, then do not carry out any processing if when receiving the warning message that the network element device from record in " blacklist " sends.So just can prevent the generation of alarm windstorm effectively, greatly alleviate the processing burden of Network Management Equipment warning message.
Referring to Fig. 9, this is an example of warning message processing unit utilization of the present invention.Unlike the prior art, warning message processing unit TR is arranged between Network Management Equipment NMS and the network element device NE, and all network element device NE all transmit warning message through warning message processing unit TR.Such network configuration design makes the warning message processing unit bear uniform format, filter the task of redundant alarm message, thereby has alleviated the burden of Network Management Equipment NMS processing warning message.
It should be noted last that: above embodiment is only unrestricted in order to technical scheme of the present invention to be described, although the present invention is had been described in detail with reference to preferred embodiment, those of ordinary skill in the art is to be understood that, can make amendment or be equal to replacement technical scheme of the present invention, and not break away from the spirit and scope of technical solution of the present invention.

Claims (10)

1. the processing method of a warning message is characterized in that, comprising:
Step 1: when receiving the warning message of network element, described alarm message type is analyzed;
Step 2: if described alarm message type is special warning message, then execution in step 4;
Step 3: the kind that obtains alarming according to alarm message type, and, know the network element device type of sending warning message according to the network element device description field in the message; Execution in step 5;
Step 4:, obtain special warning message corresponding equipment type according to the special installation configuration file;
Step 5: fill the content of warning message and send to Network Management Equipment according to configuration file.
2. method according to claim 1, it is characterized in that, before described step 2, also further comprise: described warning message is analyzed, and compare with " blacklist " data that are kept at configuration file, if the transmission network element of described warning message is recorded in described " blacklist ", then this warning message is not done further processing.
3. method according to claim 2, it is characterized in that, before described step 2, also further comprise described warning message is analyzed, obtain the frequency that corresponding network element sends described warning message, if described frequency is higher than preset threshold, then described network element is recorded in " blacklist " data of configuration file.
4. according to claim 1,2 or 3 described methods, it is characterized in that: described step 4 specifically comprises: judge whether described special warning message corresponding net element equipment is unique, it is the type of then judging message by the header information of warning message, and according to the content of type of message change protocol Data Unit, the head of message is replaced with execution in step 5 behind the consolidation form, otherwise parse execution in step 5 after the content of the unique trap message of this warning message by pre-configured script engine.
5. the processing unit of a warning message is characterized in that, comprising: a plurality of ports, analysis modify module and the sending module that are used for the receiving alarm message; Wherein, described port partly duplicates the protocol Data Unit in the message and is transmitted to the analysis modify module after receiving warning message; Described analysis modify module is used for receiving the protocol Data Unit that duplicates from described port, warning message to definition carries out index according to pre-configured file, and undefined warning message is selected to send or do not handle by sending module according to the definition of pre-configured file; Carry out Unified coding for the message that meets pre-configured rule; Described sending module is used for the warning message after the receiving and analyzing modified module is handled, and before sending described warning message to Network Management Equipment, will send to Network Management Equipment after the content according to configuration file filling warning message.
6. device according to claim 5, it is characterized in that: also be provided with counter and/or timer, the signal that described analysis modify module count pick up device and/or timer send, the warning message record that different network elements equipment is sent, add up the frequency that corresponding warning message sends, and the warning message that network element device sent that frequency is higher than setting threshold is not carried out any processing and forwarding.
7. device according to claim 5, it is characterized in that: also comprise FWSM, described FWSM is used for upgrading its Access Control List (ACL) according to the order of analysis modify module, record sends the network element device that the warning message frequency is higher than the setpoint frequency threshold value, and allow entitlement message to enter according to described recorded information, stoping without permission, message enters.
8. the treatment system of a warning message, adopt tree to connect and compose mutually by Network Management Equipment and network element device, it is characterized in that: between described network element device and the Network Management Equipment, be provided with the warning message processing unit, described warning message processing unit is used for the warning message that network element device sends analyzed and is transmitted to described Network Management Equipment after handling with consolidation form; Described warning message processing unit is made of a plurality of ports that are used for the receiving alarm message, analysis modify module and sending module; Wherein,
Described port partly duplicates the protocol Data Unit in the message and is transmitted to the analysis modify module after receiving warning message;
Described analysis modify module is used for receiving the protocol Data Unit that duplicates from described port, warning message to definition carries out index according to pre-configured file, and undefined warning message is selected to send or do not handle by sending module according to the definition of pre-configured file; Carry out Unified coding for the message that meets pre-configured rule;
Described sending module is used for the warning message after the receiving and analyzing modified module is handled, and before sending described warning message to Network Management Equipment, will send to Network Management Equipment after the content according to configuration file filling warning message.
9. system according to claim 8, it is characterized in that: described warning message processing unit also is provided with counter and/or timer, the signal that described analysis modify module count pick up device and/or timer send, the warning message record that different network elements equipment is sent, add up the frequency that corresponding warning message sends, and the warning message that network element device sent that frequency is higher than setting threshold is not carried out any processing and forwarding.
10. system according to claim 8, it is characterized in that: described warning message processing unit also is provided with FWSM, described FWSM is used for upgrading its Access Control List (ACL) according to the order of analysis modify module, record sends the network element device that the warning message frequency is higher than the setpoint frequency threshold value, and allow entitlement message to enter according to described recorded information, stoping without permission, message enters.
CNB2006100573136A 2006-03-08 2006-03-08 Method device and system for processing warning message Expired - Fee Related CN100370762C (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CNB2006100573136A CN100370762C (en) 2006-03-08 2006-03-08 Method device and system for processing warning message

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CNB2006100573136A CN100370762C (en) 2006-03-08 2006-03-08 Method device and system for processing warning message

Publications (2)

Publication Number Publication Date
CN1859211A CN1859211A (en) 2006-11-08
CN100370762C true CN100370762C (en) 2008-02-20

Family

ID=37298077

Family Applications (1)

Application Number Title Priority Date Filing Date
CNB2006100573136A Expired - Fee Related CN100370762C (en) 2006-03-08 2006-03-08 Method device and system for processing warning message

Country Status (1)

Country Link
CN (1) CN100370762C (en)

Families Citing this family (9)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN100461971C (en) * 2006-12-08 2009-02-11 中兴通讯股份有限公司 An emergency broadcast processing method and system
CN101198086B (en) * 2006-12-08 2011-08-24 中兴通讯股份有限公司 Emergency broadcast processing method for sending end and terminal of mobile multimedia broadcasting system
CN101076174B (en) * 2007-06-05 2010-09-29 中兴通讯股份有限公司 Method for processing warn windstorm
CN101355437A (en) 2007-07-25 2009-01-28 华为技术有限公司 Method and apparatus for processing alarm/event information
CN101145969B (en) * 2007-10-25 2010-06-02 中兴通讯股份有限公司 A method and system for reducing quantity of alarms reported by network elements
CN101800675B (en) * 2010-02-25 2013-03-20 华为技术有限公司 Failure monitoring method, monitoring equipment and communication system
CN105577401A (en) * 2014-10-10 2016-05-11 中兴通讯股份有限公司 Network device alarm reporting method and network device
CN105245360A (en) * 2015-09-08 2016-01-13 长威信息科技发展股份有限公司 Data center operation and maintenance monitoring and alarming white list system
CN114006651B (en) * 2021-11-02 2023-04-25 四川安迪科技实业有限公司 Satellite internet transmission method suitable for multiple protocols

Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6560611B1 (en) * 1998-10-13 2003-05-06 Netarx, Inc. Method, apparatus, and article of manufacture for a network monitoring system
CN1445671A (en) * 2002-03-15 2003-10-01 联想(北京)有限公司 Monitoring method for remote alarming information in real time and with accuracy position
JP2004086522A (en) * 2002-08-27 2004-03-18 Fujitsu Access Ltd Communication network monitoring system
CN1625292A (en) * 2003-12-04 2005-06-08 华为技术有限公司 Method for transforing base station environment monitoring information
CN1645819A (en) * 2005-01-18 2005-07-27 武汉市中光通信公司 Rapid and convenient communication network managing method

Patent Citations (5)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US6560611B1 (en) * 1998-10-13 2003-05-06 Netarx, Inc. Method, apparatus, and article of manufacture for a network monitoring system
CN1445671A (en) * 2002-03-15 2003-10-01 联想(北京)有限公司 Monitoring method for remote alarming information in real time and with accuracy position
JP2004086522A (en) * 2002-08-27 2004-03-18 Fujitsu Access Ltd Communication network monitoring system
CN1625292A (en) * 2003-12-04 2005-06-08 华为技术有限公司 Method for transforing base station environment monitoring information
CN1645819A (en) * 2005-01-18 2005-07-27 武汉市中光通信公司 Rapid and convenient communication network managing method

Also Published As

Publication number Publication date
CN1859211A (en) 2006-11-08

Similar Documents

Publication Publication Date Title
CN100370762C (en) Method device and system for processing warning message
CN100579034C (en) Method for reporting equipment information, system and device for obtaining equipment information
CN101026501A (en) Device tracking system, device and method
CN101494572B (en) Remote management method and system for equipment alarm information
US9717011B2 (en) Event management in telecommunications networks
CN103023693B (en) A kind of user behaviors log data management system and method
US20040008727A1 (en) Network resource management in a network device
CN101026494A (en) Method and system for facilitating event management and analysis within a communications environment
CN102938794A (en) Address resolution protocol (ARP) message forwarding method, exchanger and controller
CN109150869B (en) Switch information acquisition and analysis system and method
CN105939365A (en) Method and device for obtaining data from service panel kernel mode by main control panel user mode
CN102065416B (en) Method, device and system for formatting logs
MXPA06013545A (en) Automatic tool with data interface.
CN102331751A (en) Real-time industrial control system monitoring method and system
JP5853465B2 (en) Network analysis system
CN100505643C (en) Network management system and its communication method
KR20100060335A (en) Network apparatus and method for controlling the same
KR101783097B1 (en) Method for recording/reading operation log information in router network based on software defined networking and apparatus thereof
CN101589603B (en) Testing apparatus
CN111681397A (en) Distribution network automation short message sending method, sending system and storage medium
JP4777932B2 (en) Network management system
KR100612254B1 (en) Apparatus and method of manage performance data in network management system using snmp
CN106664217A (en) Identification of candidate problem network entities
US8531953B2 (en) System and method for network traffic splitting
JP2008077293A (en) Network monitor

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
C17 Cessation of patent right
CF01 Termination of patent right due to non-payment of annual fee

Granted publication date: 20080220

Termination date: 20130308