CN104333476A - Ethernet data capturing and analyzing equipment and method, and Ethernet data capturing and analyzing device and method for Ethernet data capturing and analyzing equipment - Google Patents

Ethernet data capturing and analyzing equipment and method, and Ethernet data capturing and analyzing device and method for Ethernet data capturing and analyzing equipment Download PDF

Info

Publication number
CN104333476A
CN104333476A CN201410690809.1A CN201410690809A CN104333476A CN 104333476 A CN104333476 A CN 104333476A CN 201410690809 A CN201410690809 A CN 201410690809A CN 104333476 A CN104333476 A CN 104333476A
Authority
CN
China
Prior art keywords
data frame
network
initial data
equipment
frame
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN201410690809.1A
Other languages
Chinese (zh)
Inventor
刘喆
汤辉
倪仁品
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
CETC 38 Research Institute
Original Assignee
CETC 38 Research Institute
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by CETC 38 Research Institute filed Critical CETC 38 Research Institute
Priority to CN201410690809.1A priority Critical patent/CN104333476A/en
Publication of CN104333476A publication Critical patent/CN104333476A/en
Pending legal-status Critical Current

Links

Landscapes

  • Small-Scale Networks (AREA)

Abstract

The invention discloses Ethernet data capturing and analyzing equipment and method, and an Ethernet data capturing and analyzing device and method for the Ethernet data capturing and analyzing equipment. The Ethernet data capturing and analyzing equipment comprises a field-programmable gate array, a cache module, a third network port and at least one pair of network port groups. Each pair of network port groups comprises a first network port and a second network port, the first network port is connected with first network equipment to capture original data frames, and the second network port is connected with second network equipment. The field-programmable gate array receives the original data frames, records data frame information related to the original data frames according to the original data frames, generates information frames according to the data frame information, transmits the original data frames to the second network equipment, stores the original data frames and sends the original data frames and information frames to a network analyzing computer together.

Description

Ethernet data is caught and analytical equipment and method, device and method
Technical field
The invention belongs to network analysis technique field, particularly relate to a kind of Ethernet data and catch and to catch with analytical equipment, this Ethernet data with the implementation method of analytical equipment, be applied to this Ethernet data and catch to catch with the Ethernet data of analytical equipment to catch with analytical equipment, this Ethernet data and catch and analytical method with the Ethernet data of analytical equipment.
Background technology
Ethernet develops rapidly in the world, closely bound up with everyone life.Ethernet data is caught and analyzed is the guardian technique of network analysis, has very important significance in network development, maintenance and diagnosis.But Ethernet data capture device in the market has following defect: lack the equipment can catching multichannel Ethernet data simultaneously; Need other equipment such as switch or splitter with the use of, cost is higher; The connected mode of data capture and analytical equipment and subsequent network analytical equipment is complicated; The timestamp information etc. of ethernet data frame can not be retained.
Summary of the invention
For above-mentioned technological deficiency, the object of this invention is to provide a kind of Ethernet data to catch and to catch with analytical equipment, this Ethernet data with the implementation method of analytical equipment, be applied to this Ethernet data and catch to catch with the Ethernet data of analytical equipment to catch with analytical equipment, this Ethernet data and catch and analytical method with the Ethernet data of analytical equipment, it can be caught, forward multichannel Ethernet data, and calculate, the various information of retained data frame.
The present invention is achieved by the following technical solutions: a kind of Ethernet data is caught and analytical equipment, it is sent to the initial data frame of the network equipment two (10) for the network equipment one (9) of catching as object to be tested, and this initial data frame transferred to network analyzer (11) to analyze, the network equipment one (9) and the network equipment two (10) catch at least one pair of object to be operated with analytical equipment as this Ethernet data; This Ethernet data is caught and to be comprised field programmable gate array (1), cache module (3), the network port three (8), at least one pair of object to be operated is corresponding with this at least one pair of network port group with analytical equipment; Wherein,
Often pair of network port group comprises the network port one (4) and the network port two (5), the network port one (4) is connected to catch this initial data frame with the network equipment one (9), and the network port two (5) is connected with the network equipment two (10);
Field programmable gate array (1) is connected to receive this initial data frame with the network port one (4), and record the data frame information relevant to this initial data frame information generated frame thus according to this initial data frame, field programmable gate array (1) is also connected with the network port two (5) to forward this initial data frame to the network equipment two (10), field programmable gate array (1) is also connected to store this initial data frame with cache module (3), with the network port three (8), field programmable gate array (1) is also connected that this initial data frame and this information frame are together sent to network analyzer (11).
As the further improvement of such scheme, this Ethernet data is caught and is also comprised power supply (2) with analytical equipment, and power supply (2) is for catch this Ethernet data and other each parts of analytical equipment provide electric energy.
As the further improvement of such scheme, the network port one (4) and the network port two (5) are 100 m ethernet port, and connection, the network port two (5) of the network port one (4) and the network equipment one (9) all use netting twine to be connected with the connection of the network equipment two (10).
As the further improvement of such scheme, the network port three (8) is gigabit ethernet port, and uses netting twine to be connected with network analyzer (11).
The present invention also provides a kind of above-mentioned any Ethernet data to catch the implementation method with analytical equipment, and this implementation method comprises the following steps:
This Ethernet data is caught and analytical equipment power-up initializing;
When the network equipment one (9) often treated in operand communicates with the network equipment two (10), field programmable gate array (1) is caught by the network port one (4) and is received the initial data frame that the network equipment one (9) sends to the network equipment two (10), and records the data frame information relevant to this initial data frame according to this initial data frame;
Field programmable gate array (1) forwards this initial data frame to the network equipment two (10) by the network port two (5);
Field programmable gate array (1) stores this initial data frame by cache module (3);
Field programmable gate array (1) reads this initial data frame stored in cache module (3), and according to recording the data frame information information generated frame relevant to this initial data frame;
This initial data frame and this information frame are together sent to network analyzer (11) by the network port three (8) by field programmable gate array (1).
As the further improvement of such scheme, this information frame is the ethernet frame recording the various information of this initial data frame.Further, this information frame comprises some fields, this some field comprises destination address, source address, EtherType, port numbers, numbering, length, timestamp, filling, represent respectively the MAC Address of object equipment, the MAC Address of source device, the type of ethernet frame, the equipment end slogan capturing initial data frame, the numbering of initial data frame, initial data frame byte length, timestamp when capturing initial data frame, fill 0.Preferably, the length of destination address, source address, EtherType, port numbers, numbering, length, timestamp, filling is respectively 6 bytes, 6 bytes, 2 bytes, 1 byte, 1 byte, 2 bytes, 8 bytes, 34 bytes.
The present invention also provides a kind of Ethernet data to catch and analytical equipment, and it is applied to above-mentioned any Ethernet data and catches with in the field programmable gate array of analytical equipment (1), and this Ethernet data is caught and comprised with analytical equipment:
Power-up initializing module, it is for catching and analytical equipment power-up initializing this Ethernet data;
Catch and analysis module, when it is for communicating with the network equipment two (10) at the network equipment one (9) often treated in operand, caught by the network port one (4) and receive the initial data frame that the network equipment one (9) sends to the network equipment two (10), and recording the data frame information relevant to this initial data frame according to this initial data frame;
Forwarding module, it is for forwarding this initial data frame to the network equipment two (10) by the network port two (5);
Memory module, it is for storing this initial data frame by cache module (3);
Generation module, it is for reading this initial data frame stored in cache module (3), and according to recording the data frame information information generated frame relevant to this initial data frame;
Sending module, it is for being together sent to network analyzer (11) by the network port three (8) by this initial data frame and this information frame.
The present invention also provides a kind of Ethernet data to catch and analytical method, and it is applied to above-mentioned Ethernet data and catches with in analytical equipment, and this Ethernet data is caught and comprised the following steps with analytical method:
This Ethernet data is caught and analytical equipment power-up initializing;
When the network equipment one (9) often treated in operand communicates with the network equipment two (10), caught by the network port one (4) and receive the initial data frame that the network equipment one (9) sends to the network equipment two (10), and recording the data frame information relevant to this initial data frame according to this initial data frame;
This initial data frame is forwarded to the network equipment two (10) by the network port two (5);
This initial data frame is stored by cache module (3);
Read this initial data frame stored in cache module (3), and according to recording the data frame information information generated frame relevant to this initial data frame;
By the network port three (8), this initial data frame and this information frame are together sent to network analyzer (11).
Compared to prior art, beneficial effect of the present invention is as follows:
1, the Ethernet data of multiple passage can be gathered simultaneously;
2, do not need other external devices such as switch or splitter with the use of the catching of, ethernet data frame, to forward and all processes of information gathering completes all in the present invention, cost is less;
3, the information such as timestamp, length of each former Frame can be recorded, for follow-up network analysis or diagnosis provide detailed reference frame;
4, equipment of the present invention is connected with network computer by gigabit ethernet port, and do not need complicated driver, connected mode is simple and reliable.
Accompanying drawing explanation
Fig. 1 is that the structural representation with analytical equipment caught by the Ethernet data that first embodiment of the invention provides;
Fig. 2 be the Ethernet data in Fig. 1 catch with analytical equipment process frames of data flow to schematic diagram;
Fig. 3 is that the structure chart with the information frame of analytical equipment definition caught by the Ethernet data in Fig. 1;
Fig. 4 is that the structural representation with analytical equipment caught by the Ethernet data that second embodiment of the invention provides;
Fig. 5 is that in Fig. 4, the workflow diagram with analytical equipment caught by Ethernet data.
Embodiment
In order to make object of the present invention, technical scheme and advantage clearly understand, below in conjunction with accompanying drawing and embodiment, the present invention is further elaborated.Should be appreciated that specific embodiment described herein only in order to explain the present invention, be not intended to limit the present invention.
The initial data frame being sent to another network equipment with analytical equipment for the network equipment of catching as object to be tested caught by Ethernet data of the present invention, and this initial data frame is transferred to network analyzer analysis.This Ethernet data is caught has multiple networkings port as ethernet port with analytical equipment, be connected with network analyzer with the network equipment respectively, the initial data frame automatically caught with analytical equipment and forward and sent by the tested network equipment and object to be tested caught by this Ethernet data, the information of record data frame information generated frame, initial data frame and information frame are together sent to network analyzer the most at last.Information frame is the ethernet frame of the various information of record initial data frame that the present invention proposes, and network analyzer can obtain whole relevant informations of initial data frame by resolving information frame.Ethernet data is caught and analyzed is the guardian technique of network analysis, has very important significance in network development, maintenance and diagnosis.This Ethernet data is caught with analytical equipment under the prerequisite not affecting former communication link, achieves catching and analyzing of communications data frame.
Refer to Fig. 1, the initial data frame being sent to the network equipment 2 10 with analytical equipment for the network equipment 1 of catching as object to be tested caught by the Ethernet data that first embodiment of the invention provides, and transfer to network analyzer 11 to analyze this initial data frame, the network equipment 1 and the network equipment 2 10 catch at least one pair of object to be operated with analytical equipment as this Ethernet data.
This Ethernet data is caught and to be comprised field programmable gate array (FPGA) 1, cache module 3, the network port 38, at least one pair of object to be operated is corresponding with this at least one pair of network port group, power supply 2 with analytical equipment.Power supply 2 is for catch this Ethernet data and other each parts of analytical equipment provide electric energy, electric energy is provided as given field programmable gate array 1, cache module 3, the network port 38, network port group, power supply 2 not only can be arranged on Ethernet data and catch with in analytical equipment, also can be separately set in Ethernet data catches with outside analytical equipment, in the present embodiment, power supply 2 is arranged on Ethernet data and catches with in analytical equipment.
Often pair of network port group comprises the network port 1 and the network port 25, and the network port 1 is connected to catch this initial data frame with the network equipment 1, and the network port 25 is connected with the network equipment 2 10.In the present embodiment, the quantity of network port group is illustrated for two groups, that is the network port 1 and the network port 25 have two respectively, and object to be operated is only illustrated for a pair, and namely the network equipment 1 and the network equipment 2 10 have a pair.Certainly, the network equipment 1 can be connected with the network port 1 in any a pair network port group and the network port 25 respectively with the network equipment 2 10, be appreciated that, once the network port 1 in have selected wherein a pair network port group and the network port 25, field programmable gate array 1 is to network port group generation corresponding relation certainly with this.
When the network equipment 1 send initial data frame to the network equipment 2 10 time, the network equipment 1 is exactly object to be tested, when the network equipment 2 10 send initial data frame to the network equipment 1 time, the network equipment 2 10 is exactly object to be tested.In other embodiments, object to be operated can be two right, and the ethernet data frame of simultaneously intercepting two autonomous channels with analytical equipment caught by such Ethernet data.The network equipment 1 and the network equipment 2 10 can be experimental calculation machine and switch respectively.
The network port 1 and the network port 25 all can be 100 m ethernet port, and connection, the network port 25 of the network port 1 and the network equipment 1 all can use netting twine to be connected with the connection of the network equipment 2 10.
Field programmable gate array 1 is connected to receive this initial data frame with the network port 1, and record the data frame information relevant to this initial data frame information generated frame thus according to this initial data frame, field programmable gate array 1 is also connected with the network port 25 to forward this initial data frame to the network equipment 2 10, field programmable gate array 1 is also connected to store this initial data frame with cache module 3, and field programmable gate array 1 is also connected that with the network port 38 this initial data frame and this information frame are together sent to network analyzer 11.
In sum, when this Ethernet data is caught and is normally worked with analytical equipment, the initial data frame that the FPGA automatic capturing network port 1 and the network port 25 are sent by corresponding network equipment, record the various information such as the timestamp of initial data frame, port numbers simultaneously, information generated frame, is then sent to network analyzer 11 by initial data frame and information frame by the network port 38.
FPGA can be commercial EP3C25Q240C8 chip; Memory module 3 can be commercial IS61LV51216 series SRAM high-speed memory.The network port 1 and the network port 25 can be made up of LXT973 family ethernet chip and RJ45 network interface, and these network ports are connected with the detected network equipment.The network port 38 can be made up of Marvell 88E1111 family ethernet network chip and RJ45 network interface, and this network port is connected with network analyzer 11.
Incorporated by reference to Fig. 2, this Ethernet data is caught and is introduced as follows with the implementation method of analytical equipment.
First, this Ethernet data is caught and analytical equipment power-up initializing.
Secondly, when the network equipment 1 often treated in operand communicates with the network equipment 2 10, field programmable gate array 1 is caught by the network port 1 and is received the initial data frame that the network equipment 1 sends to the network equipment 2 10, and records the data frame information relevant to this initial data frame according to this initial data frame.That is, the S001 as in Fig. 2: the network equipment 1 sends a Frame, and transfer to FPGA by the network port 1, FPGA records the various information such as timestamp, port numbers of this initial data frame.
Afterwards, field programmable gate array 1 forwards this initial data frame to the network equipment 2 10 by the network port 25.That is, as the initial data frame captured is forwarded to the network port 25 by the S002:FPGA in Fig. 2, the network equipment 2 10 is transferred to.
Then, field programmable gate array 1 stores this initial data frame by cache module 3.That is, as the initial data frame captured is saved in cache module 3 by the S003:FPGA in Fig. 2.
Then, field programmable gate array 1 reads this initial data frame stored in cache module 3, and according to recording the data frame information information generated frame relevant to this initial data frame.That is, as the S004:FPGA in Fig. 2 reads the initial data frame in cache module 3, according to the various information of the above-mentioned initial data frame recorded, information generated frame.
Finally, this initial data frame and this information frame are together sent to network analyzer 11 by the network port 38 by field programmable gate array 1.That is, as initial data frame and information frame are sent to network analyzer 11 by the network port 38 by the S005:FPGA in Fig. 2.
The step of the Frame that FPGA process is sent by the network equipment 2 10 is identical with above-mentioned steps.Accordingly, this Ethernet data is caught with analytical equipment under the prerequisite not affecting former communication link, achieves catching and analyzing of communications data frame.This Ethernet data is caught identical with said method with the method for other network port group of analytical equipment process, and the Frame process of two group network ports can also be carried out simultaneously.
Certainly, order is above not limited in this, only otherwise affect final final result (namely this initial data frame and this information frame are together sent to network analyzer 11 by the network port 38 by field programmable gate array 1), order can suitably adjust, as, this initial data frame can be forwarded again to the network equipment 2 10 after this initial data frame of storage, this initial data frame can also be forwarded and can synchronously carry out to the network equipment 2 10 and this initial data frame of storage.
This information frame is the ethernet frame recording the various information of this initial data frame.This information frame is the communications carrier of the various information of record initial data frame that the present invention defines, it by this too network data to catch and analytical equipment generates, and be sent to network analyzer 11.As shown in Figure 3, field name and the function of information frame are as shown in table 1 for the structure of information frame.
This information frame comprises some fields, this some field comprises destination address, source address, EtherType, port numbers, numbering, length, timestamp, filling, represent respectively the MAC Address of object equipment, the MAC Address of source device, the type of ethernet frame, the equipment end slogan capturing initial data frame, the numbering of initial data frame, initial data frame byte length, timestamp when capturing initial data frame, fill 0.Wherein, the length of destination address, source address, EtherType, port numbers, numbering, length, timestamp, filling is respectively 6 bytes, 6 bytes, 2 bytes, 1 byte, 1 byte, 2 bytes, 8 bytes, 34 bytes.
Table 1
Field name Length Implication
Destination address 6 bytes The MAC Address of object equipment
Source address 6 bytes The MAC Address of source device
EtherType 2 bytes The type of ethernet frame
Port numbers 1 byte Capture the equipment end slogan of initial data frame
Numbering 1 byte The numbering of initial data frame
Length 2 bytes The byte length of initial data frame
Timestamp 8 bytes Capture timestamp during initial data frame
Fill 34 bytes Fill 0
Field programmable gate array 1 needs to design, and its design concept is introduced as follows.Field programmable gate array 1 is provided with Ethernet data and catches and analytical equipment, and this Ethernet data is caught and to be comprised power-up initializing module with analytical equipment, catches and analysis module, forwarding module, memory module, generation module, sending module.
Power-up initializing module is used for catching and analytical equipment power-up initializing this Ethernet data; When to catch with analysis module for communicating with the network equipment 2 10 at the network equipment 1 often treated in operand, caught by the network port 1 and receive the initial data frame that the network equipment 1 sends to the network equipment 2 10, and recording the data frame information relevant to this initial data frame according to this initial data frame; Forwarding module is used for forwarding this initial data frame to the network equipment 2 10 by the network port 25; Memory module is used for storing this initial data frame by cache module 3; Generation module for reading this initial data frame stored in cache module 3, and according to recording the data frame information information generated frame relevant to this initial data frame; Sending module is used for, by the network port 38, this initial data frame and this information frame are together sent to network analyzer 11.
It is to be noted, the buffer that cache module 3 can adopt field programmable gate array 1 to carry, as long as storage information can be realized, in the present embodiment, cache module 3, independent of field programmable gate array 1, is the Memory Extension to field programmable gate array 1.
This Ethernet data is caught the Ethernet data corresponding with analytical equipment and is caught and comprise the following steps with analytical method:
This Ethernet data is caught and analytical equipment power-up initializing;
When the network equipment 1 often treated in operand communicates with the network equipment 2 10, caught by the network port 1 and receive the initial data frame that the network equipment 1 sends to the network equipment 2 10, and recording the data frame information relevant to this initial data frame according to this initial data frame;
This initial data frame is forwarded to the network equipment 2 10 by the network port 25;
This initial data frame is stored by cache module 3;
Read this initial data frame stored in cache module 3, and according to recording the data frame information information generated frame relevant to this initial data frame;
By the network port 38, this initial data frame and this information frame are together sent to network analyzer 11.
In sum, compared to prior art, beneficial effect of the present invention is as follows:
1, the Ethernet data of multiple passage can be gathered simultaneously;
2, do not need other external devices such as switch or splitter with the use of the catching of, ethernet data frame, to forward and all processes of information gathering completes all in the present invention, cost is less;
3, the information such as timestamp, length of each former Frame can be recorded, for follow-up network analysis or diagnosis provide detailed reference frame;
4, equipment of the present invention is connected with network computer by gigabit ethernet port, and do not need complicated driver, connected mode is simple and reliable.
Refer to Fig. 4, it catches the structural representation with analytical equipment for the Ethernet data that second embodiment of the invention provides.The difference of the second execution mode and the first execution mode is that object to be operated is two right, namely two set of network devices 1 in the first embodiment and the network equipment 2 10 is deposited, the network equipment 1 and the network equipment 2 10 are experimental calculation machine and switch respectively, and the network port 1 realizes being connected with the network equipment 2 10 with the corresponding network equipment 1 to switch network port one 10 respectively by the experimental calculation machine network port 109 with the network port 25.
When the Ethernet data of the second execution mode is caught and is normally worked with analytical equipment, two experimental calculation machines are used to communicate with corresponding switch respectively, the ethernet data frame of simultaneously intercepting two passages with analytical equipment caught by Ethernet data, is sent to network analyzer 11 after buffer memory.
Incorporated by reference to Fig. 5, Ethernet data is caught and is comprised the following steps with the implementation method of analytical equipment.
Step S101, armamentarium power-up initializing.
Step S102, two experimental calculation machines communicate with two switches respectively by the corresponding experimental calculation machine network port 109.
Step S103, the ethernet data frame of catching each network port with analytical equipment caught by this Ethernet data, the various information of record initial data frame.
Step S104, this Ethernet data is caught and is forwarded with analytical equipment the Frame captured with group network port.
Step S105, this Ethernet data is caught the initial data frame that the captures cache module stored in equipment with analytical equipment.
Step S106, this Ethernet data is caught and is read with analytical equipment the Frame preserved in cache module, according to the various information of initial data frame that step S103 records, information generated frame.
Step 107, Ethernet data is caught, with analytical equipment, initial data frame and information frame is sent to network computer 11.
Step S108, armamentarium power-off.
The foregoing is only preferred embodiment of the present invention, not in order to limit the present invention, all any amendments done within the spirit and principles in the present invention, equivalent replacement and improvement etc., all should be included within protection scope of the present invention.

Claims (10)

1. an Ethernet data is caught and analytical equipment, it is sent to the initial data frame of the network equipment two (10) for the network equipment one (9) of catching as object to be tested, and this initial data frame transferred to network analyzer (11) to analyze, the network equipment one (9) and the network equipment two (10) catch at least one pair of object to be operated with analytical equipment as this Ethernet data; It is characterized in that: this Ethernet data is caught and to be comprised field programmable gate array (1), cache module (3), the network port three (8), at least one pair of object to be operated is corresponding with this at least one pair of network port group with analytical equipment; Wherein,
Often pair of network port group comprises the network port one (4) and the network port two (5), the network port one (4) is connected to catch this initial data frame with the network equipment one (9), and the network port two (5) is connected with the network equipment two (10);
Field programmable gate array (1) is connected to receive this initial data frame with the network port one (4), and record the data frame information relevant to this initial data frame information generated frame thus according to this initial data frame, field programmable gate array (1) is also connected with the network port two (5) to forward this initial data frame to the network equipment two (10), field programmable gate array (1) is also connected to store this initial data frame with cache module (3), with the network port three (8), field programmable gate array (1) is also connected that this initial data frame and this information frame are together sent to network analyzer (11).
2. Ethernet data as claimed in claim 1 is caught and analytical equipment, it is characterized in that: this Ethernet data is caught and also comprised power supply (2) with analytical equipment, power supply (2) is for catch this Ethernet data and other each parts of analytical equipment provide electric energy.
3. Ethernet data as claimed in claim 1 is caught and analytical equipment, it is characterized in that: the network port one (4) and the network port two (5) are 100 m ethernet port, connection, the network port two (5) of the network port one (4) and the network equipment one (9) all use netting twine to be connected with the connection of the network equipment two (10).
4. Ethernet data as claimed in claim 1 is caught and analytical equipment, it is characterized in that: the network port three (8) is gigabit ethernet port, and uses netting twine to be connected with network analyzer (11).
5., as the implementation method with analytical equipment caught by the Ethernet data in Claims 1-4 as described in any one, it is characterized in that: this implementation method comprises the following steps:
This Ethernet data is caught and analytical equipment power-up initializing;
When the network equipment one (9) often treated in operand communicates with the network equipment two (10), field programmable gate array (1) is caught by the network port one (4) and is received the initial data frame that the network equipment one (9) sends to the network equipment two (10), and records the data frame information relevant to this initial data frame according to this initial data frame;
Field programmable gate array (1) forwards this initial data frame to the network equipment two (10) by the network port two (5);
Field programmable gate array (1) stores this initial data frame by cache module (3);
Field programmable gate array (1) reads this initial data frame stored in cache module (3), and according to recording the data frame information information generated frame relevant to this initial data frame;
This initial data frame and this information frame are together sent to network analyzer (11) by the network port three (8) by field programmable gate array (1).
6. the implementation method with analytical equipment caught by Ethernet data as claimed in claim 5, it is characterized in that: this information frame is the ethernet frame recording the various information of this initial data frame.
7. the implementation method with analytical equipment caught by Ethernet data as claimed in claim 6, it is characterized in that: this information frame comprises some fields, this some field comprises destination address, source address, EtherType, port numbers, numbering, length, timestamp, filling, represent respectively the MAC Address of object equipment, the MAC Address of source device, the type of ethernet frame, the equipment end slogan capturing initial data frame, the numbering of initial data frame, initial data frame byte length, timestamp when capturing initial data frame, fill 0.
8. the implementation method with analytical equipment caught by Ethernet data as claimed in claim 7, it is characterized in that: the length of destination address, source address, EtherType, port numbers, numbering, length, timestamp, filling is respectively 6 bytes, 6 bytes, 2 bytes, 1 byte, 1 byte, 2 bytes, 8 bytes, 34 bytes.
9. an Ethernet data is caught and analytical equipment, it is applied to as the Ethernet data in Claims 1-4 as described in any one is caught with in the field programmable gate array of analytical equipment (1), it is characterized in that: this Ethernet data is caught and comprised with analytical equipment:
Power-up initializing module, it is for catching and analytical equipment power-up initializing this Ethernet data;
Catch and analysis module, when it is for communicating with the network equipment two (10) at the network equipment one (9) often treated in operand, caught by the network port one (4) and receive the initial data frame that the network equipment one (9) sends to the network equipment two (10), and recording the data frame information relevant to this initial data frame according to this initial data frame;
Forwarding module, it is for forwarding this initial data frame to the network equipment two (10) by the network port two (5);
Memory module, it is for storing this initial data frame by cache module (3);
Generation module, it is for reading this initial data frame stored in cache module (3), and according to recording the data frame information information generated frame relevant to this initial data frame;
Sending module, it is for being together sent to network analyzer (11) by the network port three (8) by this initial data frame and this information frame.
10. Ethernet data is caught and an analytical method, and it is applied to Ethernet data as claimed in claim 9 and catches with in analytical equipment, it is characterized in that: this Ethernet data is caught and comprised the following steps with analytical method:
This Ethernet data is caught and analytical equipment power-up initializing;
When the network equipment one (9) often treated in operand communicates with the network equipment two (10), caught by the network port one (4) and receive the initial data frame that the network equipment one (9) sends to the network equipment two (10), and recording the data frame information relevant to this initial data frame according to this initial data frame;
This initial data frame is forwarded to the network equipment two (10) by the network port two (5);
This initial data frame is stored by cache module (3);
Read this initial data frame stored in cache module (3), and according to recording the data frame information information generated frame relevant to this initial data frame;
By the network port three (8), this initial data frame and this information frame are together sent to network analyzer (11).
CN201410690809.1A 2014-11-26 2014-11-26 Ethernet data capturing and analyzing equipment and method, and Ethernet data capturing and analyzing device and method for Ethernet data capturing and analyzing equipment Pending CN104333476A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201410690809.1A CN104333476A (en) 2014-11-26 2014-11-26 Ethernet data capturing and analyzing equipment and method, and Ethernet data capturing and analyzing device and method for Ethernet data capturing and analyzing equipment

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201410690809.1A CN104333476A (en) 2014-11-26 2014-11-26 Ethernet data capturing and analyzing equipment and method, and Ethernet data capturing and analyzing device and method for Ethernet data capturing and analyzing equipment

Publications (1)

Publication Number Publication Date
CN104333476A true CN104333476A (en) 2015-02-04

Family

ID=52408135

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201410690809.1A Pending CN104333476A (en) 2014-11-26 2014-11-26 Ethernet data capturing and analyzing equipment and method, and Ethernet data capturing and analyzing device and method for Ethernet data capturing and analyzing equipment

Country Status (1)

Country Link
CN (1) CN104333476A (en)

Cited By (1)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN114338488A (en) * 2021-12-17 2022-04-12 山东高云半导体科技有限公司 Method and device for realizing Ethernet data observation and observation realizing equipment

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101005449A (en) * 2005-10-06 2007-07-25 美国阿尔卡特资源有限合伙公司 Apparatus and method for analyzing packet data streams
US20100290364A1 (en) * 2008-05-09 2010-11-18 Microsoft Corporation Packet Compression for Network Packet Traffic Analysis
CN102413018A (en) * 2011-12-21 2012-04-11 武汉烽火网络有限责任公司 FPGA (field programmable gate array) based software-hardware coordinated network test system and method
CN102571496A (en) * 2012-01-19 2012-07-11 桂林电子科技大学 Network feature extraction device and method

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101005449A (en) * 2005-10-06 2007-07-25 美国阿尔卡特资源有限合伙公司 Apparatus and method for analyzing packet data streams
US20100290364A1 (en) * 2008-05-09 2010-11-18 Microsoft Corporation Packet Compression for Network Packet Traffic Analysis
CN102413018A (en) * 2011-12-21 2012-04-11 武汉烽火网络有限责任公司 FPGA (field programmable gate array) based software-hardware coordinated network test system and method
CN102571496A (en) * 2012-01-19 2012-07-11 桂林电子科技大学 Network feature extraction device and method

Cited By (2)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN114338488A (en) * 2021-12-17 2022-04-12 山东高云半导体科技有限公司 Method and device for realizing Ethernet data observation and observation realizing equipment
CN114338488B (en) * 2021-12-17 2023-12-15 山东高云半导体科技有限公司 Method and device for realizing Ethernet data observation and observation realizing equipment

Similar Documents

Publication Publication Date Title
JP7434417B2 (en) Topology processing method, device, and system
TWI521922B (en) Multi-homing in an extended bridge
CN103004158B (en) There is the network equipment of programmable core
CN103178996B (en) Distributed packet-switching chip model verification system and method
CN103984662B (en) A kind of method and apparatus of reading and writing data, storage system
CN102323499A (en) Method for automatically testing relay protection equipment
CN102413018A (en) FPGA (field programmable gate array) based software-hardware coordinated network test system and method
US8654643B2 (en) Wide field indexing for packet tracking
CN107070766A (en) The virtual network construction method of language is may be programmed based on software definition datum plane
CN104601583B (en) A kind of online real-time anonymous system and method for IP flow datas
CN109005080B (en) Distributed packet forwarding implementation method, implementation system and automatic test method
CN104333476A (en) Ethernet data capturing and analyzing equipment and method, and Ethernet data capturing and analyzing device and method for Ethernet data capturing and analyzing equipment
CN101539765B (en) High-speed acquisition method and system of industrial process data
CN105897929B (en) A kind of method and device of video monitoring data backup
CN105700859A (en) Network-processor-based hardware table traversal method and apparatus
CN103220188A (en) Hyper text transport protocol (HTTP) data acquisition equipment
CN105553792A (en) Home gateway access device type identifying system and method
CN103558995B (en) A kind of storage control chip and disk message transmitting method
CN107800802A (en) A kind of Rack whole machine cabinets write-in and the method for reading UUID
CN103457996B (en) A kind of Protocol Conformance Test System internal data store method and system
CN107276834A (en) Optical-fibre channel flow analysis recording method and device under a kind of aviation electronics environment
CN108377431B (en) Network resource checking method of GPON and test system thereof
CN107086960A (en) A kind of message transmitting method and device
CN105227422B (en) A kind of method of transmitting video data and device based on polymerization network interface
CN107465569A (en) A kind of SAS Switch whole machine cabinets crawl node phy error count method and system

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
RJ01 Rejection of invention patent application after publication
RJ01 Rejection of invention patent application after publication

Application publication date: 20150204