CN102938709A - Monitoring method and monitoring server for content delivery network (CDN) - Google Patents

Monitoring method and monitoring server for content delivery network (CDN) Download PDF

Info

Publication number
CN102938709A
CN102938709A CN2012104487370A CN201210448737A CN102938709A CN 102938709 A CN102938709 A CN 102938709A CN 2012104487370 A CN2012104487370 A CN 2012104487370A CN 201210448737 A CN201210448737 A CN 201210448737A CN 102938709 A CN102938709 A CN 102938709A
Authority
CN
China
Prior art keywords
network node
node
log
network
unusual
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Granted
Application number
CN2012104487370A
Other languages
Chinese (zh)
Other versions
CN102938709B (en
Inventor
周整茂
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Beijing Qihoo Technology Co Ltd
Original Assignee
Beijing Qihoo Technology Co Ltd
Qizhi Software Beijing Co Ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Beijing Qihoo Technology Co Ltd, Qizhi Software Beijing Co Ltd filed Critical Beijing Qihoo Technology Co Ltd
Priority to CN201210448737.0A priority Critical patent/CN102938709B/en
Publication of CN102938709A publication Critical patent/CN102938709A/en
Application granted granted Critical
Publication of CN102938709B publication Critical patent/CN102938709B/en
Active legal-status Critical Current
Anticipated expiration legal-status Critical

Links

Images

Abstract

The invention discloses a monitoring method and a monitoring server for a CDN, and relates to the technical field of network communications. The method includes obtaining an access log of a network server before a designated moment, obtaining a back-to-source log of a network node from the access log, determining an effective network node list according to the back-to-source log of the network node, sending the list to one or more monitoring nodes which are enabled to access to each network nodes in the effective network node list and record monitoring access logs respectively, and determining an abnormal network node list according to the monitoring access logs recorded by the plurality of monitoring nodes. According to the technical scheme, abnormal network nodes in the CDN can be monitored effectively, the monitoring problem for abnormal network nodes in the CDN is solved, and the CDN can be maintained and managed effectively.

Description

A kind of method for supervising of content distributing network and monitoring server
Technical field
The present invention relates to network communications technology field, be specifically related to a kind of method for supervising and monitoring server of content distributing network.
Background technology
The full name of CDN is Content Delivery Network, i.e. content distributing network.Its basic ideas are to avoid as far as possible might affecting on the Internet bottleneck and the link of data transmission bauds and stability, make the faster, more stable of content delivery.One deck intelligent virtual network on existing Internet basic that consists of by place node server (being called the CDN node) everywhere at network, the CDN system can be in real time leads user's request on the nearest service node of user again according to the connection of network traffics and each node, load state and to integrated informations such as user's distance and response times.Its objective is to make the user can obtain required content nearby, solve the situation of Internet network congestion, improve the response speed of user's access websites.
Fig. 1 shows the schematic network structure of the CDN of existing deployment.
The user is by the specific web services of access to netwoks, and namely user terminal obtains service content by Web server corresponding to this Web service of access to netwoks.Referring to Fig. 1, when this Web service has 120 deployment of CDN node, user terminal 110 will obtain this service by the CDN node 120 that is associated with this web server 130, and this is shown in step 1 among Fig. 1.Shown in step 2 among Fig. 1, CDN node 120 is for guaranteeing the ageing of web services, provides the web server 130 of service with timer access, and whether consistent with information on the web server 130 to determine the information on the CDN node 120, this step is called Hui Yuan.Therefore will have the access log of each CDN node 120 on the web server 130 of front end, namely the CDN node returns Source log.
Content distributing network CDN is as a network with numerous network nodes (CDN node), need to carry out maintenance and management to these numerous network nodes, namely need these numerous network nodes are monitored, when the network node operation irregularity, need to safeguard accordingly processing.
Therefore, need a kind of scheme that content distributing network is monitored.
Summary of the invention
In view of the above problems, the present invention has been proposed in order to a kind of method for supervising and corresponding content distributing network monitoring server of the content distributing network that overcomes the problems referred to above or address the above problem at least in part are provided.
According to one aspect of the present invention, provide a kind of method for supervising of content distributing network.This content distributing network comprises a plurality of network nodes that are associated with the webserver, the method comprises: the appointment moment access log before that obtains the webserver, therefrom obtain network node and return Source log, return Source log according to network node and determine effective network node tabulation; The active block node listing is sent to one or more monitor node, so that each network node in one or more monitor node access active block node listing, and access log monitored in record separately; And according to the monitoring access log that a plurality of monitor nodes record, determine unusual network node tabulation.
Alternatively, the method further comprises: travel through each the unusual network node in the unusual network node tabulation, search the Source log that returns that whether has this unusual network node the access log after the appointment constantly of the webserver, if there is no, then should the deletion from unusual network node tabulation of unusual network node.
Alternatively, obtain the appointment moment access log before of the webserver, therefrom obtaining network node returns Source log and comprises: each the bar access log before the appointment of the webserver that traversal is obtained constantly, judge by the access links in this access log whether this access log returns Source log as network node, then to keep, otherwise deletion is returned Source log thereby obtain network node.
Alternatively, return Source log according to network node and determine that effective network node tabulation comprises: return each network node that occurs in the Source log for network node, according to network node return Source log judge this network node return the source number of times whether be less than preset value and last Hui Yuan whether second specify constantly before, be to judge that then this network node is invalid, otherwise network node is put into the active block node listing.Wherein, second specify the moment to be a time point before specifying constantly.
Alternatively, the monitoring access log that records according to a plurality of monitor nodes, determine that unusual network node tabulation comprises: for a network node, if the monitoring access log that one or more monitor nodes record shows, at least one monitor node is accessed this network node abnormality, and the number of times of access exception reaches pre-determined number, determines that then this network node is unusual network node, and this node is put into unusual network node tabulation.
Alternatively, a plurality of monitor nodes are a plurality of monitor nodes that are distributed in the heterogeneous networks position.
A kind of monitoring server of content distributing network is provided according to a further aspect in the invention.This content distributing network comprises a plurality of network nodes that are associated with the webserver.This monitoring server comprises: journal processing unit, be suitable for obtaining the access log before the appointment constantly of the webserver, and therefrom obtain network node and return Source log; Effectively the node determination unit is suitable for returning Source log according to the network node that journal processing unit obtains and determines effective network node tabulation; The monitor node linkage unit, be suitable for the active block node listing is sent to one or more monitor nodes, and receive the monitoring access log that one or more monitor nodes return, generate when monitoring access log by each network node in the monitor node access active block node listing; And the abnormal nodes determining unit, be suitable for according to the monitoring access log, determine unusual network node tabulation.
Alternatively, journal processing unit is suitable for obtaining the appointment moment access log afterwards of the webserver; The abnormal nodes determining unit is suitable for traveling through each the unusual network node in the unusual network node tabulation, search the Source log that returns that whether has this unusual network node the access log after the appointment of the webserver that obtains from journal processing unit constantly, if there is no, then should the deletion from unusual network node tabulation of unusual network node.
Alternatively, journal processing unit is suitable for traveling through the appointment moment each bar access log before of the webserver that obtains, judge by the access links in this access log whether this access log returns Source log as network node, then to keep, otherwise deletion is returned Source log thereby obtain network node.
Alternatively, effectively the node determination unit is suitable for network node is returned each network node that occurs in the Source log, according to network node return Source log judge this network node return the source number of times whether be less than preset value and last Hui Yuan whether second specify constantly before, be to judge that then this network node is invalid, otherwise network node is put into the active block node listing.Wherein, second specify the moment to be a time point before specifying constantly.
Alternatively, the monitoring access log that the abnormal nodes determining unit is suitable for recording at one or more monitor nodes shows, for a network node, at least one monitor node is accessed this network node abnormality, and when the number of times of access exception reaches pre-determined number, determine that this network node is unusual network node, this node is put into unusual network node tabulation.
A kind of supervisory control system of content distributing network is provided according to another aspect of the invention.This supervisory control system comprises: one or more monitor nodes, and above-mentioned monitoring server in each.Each monitor node is suitable for accessing each network node in the active block node listing, and record monitoring access log, and the monitoring daily record of recording is returned to monitoring server.
Alternatively, a plurality of monitor nodes are distributed in the different network sites.
According to this appointment moment access log before that obtains the webserver of the present invention, therefrom obtain network node and return Source log, return Source log according to network node and determine effective network node tabulation, the active block node listing is sent to one or more monitor node, so that each network node in one or more monitor node access active block node listings, and access log monitored in record separately, and, the monitoring access log that records according to a plurality of monitor nodes, determine the technical scheme of unusual network node tabulation, can effectively monitor the unusual network node of content distributing network, solve thus the monitoring problem of the unusual network node in the content distributing network, obtained the beneficial effect that effectively content distributing network is carried out maintenance and management.
Above-mentioned explanation only is the general introduction of technical solution of the present invention, for can clearer understanding technological means of the present invention, and can be implemented according to the content of specification, and for above and other objects of the present invention, feature and advantage can be become apparent, below especially exemplified by the specific embodiment of the present invention.
Description of drawings
By reading hereinafter detailed description of the preferred embodiment, various other advantage and benefits will become cheer and bright for those of ordinary skills.Accompanying drawing only is used for the purpose of preferred implementation is shown, and does not think limitation of the present invention.And in whole accompanying drawing, represent identical parts with identical reference symbol.In the accompanying drawings:
Fig. 1 shows the schematic network structure of the CDN of existing deployment;
Fig. 2 shows according to an embodiment of the invention supervisory control system 200 and the outside connection diagram of content distributing network;
Fig. 3 shows the according to an embodiment of the invention deployment schematic diagram of supervisory control system in real network of content distributing network;
Fig. 4 shows according to an embodiment of the invention a kind of flow chart of method for supervising of content distributing network.
Embodiment
Exemplary embodiment of the present disclosure is described below with reference to accompanying drawings in more detail.Although shown exemplary embodiment of the present disclosure in the accompanying drawing, yet should be appreciated that and to realize the disclosure and the embodiment that should do not set forth limits here with various forms.On the contrary, it is in order to understand the disclosure more thoroughly that these embodiment are provided, and can with the scope of the present disclosure complete convey to those skilled in the art.
Fig. 2 shows according to an embodiment of the invention composition and the outside connection diagram of the supervisory control system 200 of content distributing network.Here content distributing network comprises a plurality of network nodes 320 that are associated with the webserver 310, does not illustrate the incidence relation between the webserver 310 and the network node 320 among Fig. 2.The distribution of the service content that network node 320 realizations and the webserver 310 provide.The supervisory control system 200 of content distributing network comprises one or more monitor nodes 210 and monitoring server 220.The monitoring management that the supervisory control system 200 of content distributing network realizes each network node 320.
Fig. 3 shows the according to an embodiment of the invention deployment schematic diagram of supervisory control system in real network of content distributing network.Referring to Fig. 3, user terminal 110, CDN node 120, Web server 130, monitor node 210 and monitoring server 220 have been illustrated in this network design schematic diagram.User terminal 110 obtains the service that Web server 130 provides by CDN node 120, CDN node 120 is for guaranteeing the ageing of service that web server 130 provides, timer access web server 130, with the information on the assurance CDN node 120 and the consistency of the information on the web server 130, these CDN nodes 120 have formed a content distributing network.And the supervisory control system of monitor node 210 and monitoring server 220 constitution content distributing networks is used for realization to the monitoring of each CDN node 120.Here, Web server 130 is the webserver 310 among Fig. 2, and CDN node 120 is the network node 320 among Fig. 2.
Referring to Fig. 2 and Fig. 3 technical scheme of the present invention is elaborated.
Referring to Fig. 2 and Fig. 3, the supervisory control system 200 of content distributing network comprises one or more monitor nodes 210 and monitoring server 220.In Fig. 2, illustrated two monitor nodes 210, illustrated three monitor nodes 210 among Fig. 3, but this all can not be as the restriction to the monitor node number in the supervisory control system of content distributing network of the present invention.
Referring to Fig. 2, monitoring server 220 comprises journal processing unit 221, effective node determination unit 222, monitor node linkage unit 223 and abnormal nodes determining unit 224.
Journal processing unit 221 obtains the appointment moment access log before of the webserver 310, therefrom obtains network node and returns Source log, use when determining effective network nodes tabulation for effective node determination unit 222.
Particularly, journal processing unit 221 is suitable for traveling through the appointment moment each bar access log before of the webserver 310 that obtains, judge by the access links in this access log whether this access log returns Source log as network node, then to keep, otherwise deletion is returned Source log thereby obtain network node.
For example, in network design shown in Figure 3, it is as follows that the CDN node returns the Source log example: 119.146.194.11121.8.137.56--[18/Sep/2012:23:59:59+0800] " GET/secache.html 39130838.html HTTP/1.1 " 20085861 " " " Mozilla/4.0 (compatible; MSIE 8.0; Windows NT 6.1; WOW64; Trident/4.0; SLCC2; .NET CLR 2.0.50727; .NET CLR 3.5.30729; .NET CLR 3.0.30729; MAAR; .NET4.0C; .NET CLR 1.1.4322; .NET4.0E; Media Center PC 6.0; 360SE) " "-" hao.360.cn 75686138167984
Wherein " GET/secache.html 39130838.html HTTP/1.1 " represents the http request secache.html(page of access node, this page does not exist in fact, web server receives this request will return home tip), namely the CDN node returns the source request and will send the request such as the http of upper pathway to web server.Owing to ask with timestamp parameter, and do not preserve corresponding page info on the CDN node, therefore request penetrates the CDN node and directly accesses web server.
The log example of normal users request is as follows: 61.164.60.244175.180.112.40,203.66.41.51--[19/Sep/2012:00:00:00+0800] " GET/xinwenmeiti.html HTTP/1.1 " 20015886 " http://hao.360.cn/ " " Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0; MAAU) " "-" hao.360.cn 702161377374
Above-mentioned daily record represents that http asks the normal http request xinwenmeiti.html page, belongs to normal user's request, is not the request of CDN node.
Therefore, in network design shown in Figure 3, distinguish the CDN node according to the access links in the daily record and return Source log and other daily record.If the access links in the daily record starts with secache.html, then this daily record is that the CDN node returns Source log.As returning in the example of Source log at above-mentioned CDN node, access links is " GET/secache.html 39130838.html HTTP/1.1 ", and it starts with secache.html, therefore can confirm that this daily record is that the CDN node returns Source log.And in the log example of above-mentioned normal users request, access links is " GET/xinwenmeiti.html HTTP/1.1 ", with the secache.html beginning, is not that the CDN node returns Source log therefore.Whether the above is to being that the judgement that the CDN node returns Source log only is way of example, so the CDN node that can distinguish in the webserver daily record returns the mode of Source log and general access log all within protection scope of the present invention.
In addition, first IP address in the daily record is visitor's IP address.Therefore after having confirmed that the CDN node returns Source log, can determine the CDN node according to first IP address that the CDN node returns in the Source log.As returning in the example of Source log at above-mentioned CDN node, 119.146.194.11 is the IP address of CDN node.
Effective node determination unit 222 is suitable for returning Source log according to the network node that journal processing unit 221 obtains and determines effective network node tabulation, and what comprise in the active block node listing is the IP address of active block node.Specifically, effectively node determination unit 222 is suitable for network node is returned each network node that occurs in the Source log, according to network node return Source log judge this network node return the source number of times whether be less than preset value and last Hui Yuan whether second specify constantly before, judge that if it is this network node is invalid, otherwise this network node is put into the active block node listing, is that the active block node listing is put in the IP address of this network node specifically.Wherein, second specify the moment to be a time point before specifying constantly.
For example, in one embodiment of the invention, specifying constantly be the zero point of today, then second specify constantly be zero point today before sometime, for example can be zero point today moment of 1 hour before, i.e. 23 of yesterday points.If the time of a last Hui Yuan of network node before 23 of yesterday, then illustrate this network node 23 of yesterday to zero point today during this period of time in do not have Hui Yuan, this network node may lose efficacy when zero point today.Therefore, whether be less than preset value and last Hui Yuan whether at the second judgment rule before specifying constantly by returning the source number of times, failed network node when effectively zero point today can be eliminated in node determination unit 222, thereby unspent each network node when remaining into zero point today, these during to zero point today unspent each network node be the object that will monitor today.
Monitor node linkage unit 223 and each monitor node 210 communication issue the active block node listing that will monitor to each monitor node 210, and receive the monitoring access log that each monitor node reports.Specifically, monitor node linkage unit 223 sends to one or more monitor nodes 210 with the active block node listing, and receive the monitoring access log that one or more monitor nodes 210 return, generate when monitoring access log by each network node in the monitor node 210 access active block node listings.
Each monitor node 210 is suitable for accessing each network node in the active block node listing, and record monitoring access log, and the monitoring daily record of recording is returned to monitor node linkage unit 223 in the monitoring server 220.A plurality of monitor nodes 210 are distributed in the different network sites among Fig. 2.Specifically, each monitor node 210 is after receiving the active block node listing that issues, and the all-network node in this active block node listing carries out the access of respective service, and record monitoring daily record.The abnormal conditions of access have been recorded in the monitoring daily record.
Abnormal nodes determining unit 224 is suitable for according to the monitoring access log, determines unusual network node tabulation.Specifically, the monitoring access log that abnormal nodes determining unit 224 is suitable for recording at one or more monitor nodes shows, for a network node, at least one monitor node is accessed this network node abnormality, and when the number of times of access exception reaches pre-determined number, determine that this network node is unusual network node, this node is put into unusual network node tabulation.
In one embodiment of the invention, for a network node, abnormal nodes determining unit 224 can determine just that when a monitor node is accessed this network node abnormality this network node is unusual network node.Perhaps consider different monitor nodes because its residing position is different, some monitor node may be owing to the relatively poor problem that causes accessing this network node abnormality of himself residing network environment, in another embodiment of the present invention, abnormal nodes determining unit 224 can be accessed this network node abnormality at a plurality of monitor nodes or even whole monitor node, and when the number of times of access exception reaches pre-determined number, determine that this network node is unusual network node.
Alternatively, abnormal nodes determining unit 224 can also further be determined unusual network node in conjunction with journal processing unit 221.At first, journal processing unit 221 can also be suitable for obtaining the appointment moment access log afterwards of the webserver.Subsequently, abnormal nodes determining unit 224 is after determining unusual network node tabulation according to the monitoring access log as mentioned above, can also travel through each the unusual network node in the unusual network node tabulation, search the Source log that returns that whether has this unusual network node the access log after the appointment of the webserver that obtains from journal processing unit 221 constantly, if there is no, then should the deletion from unusual network node tabulation of unusual network node.Here, if there is the Source log that returns of this unusual network node in the access log after specifying constantly, then show this unusual network node still in network not by undercarriage, illustrate that the CDN network does not also have this unusual network node of discovery, therefore need to notify to the keeper of CDN network this unusual network node information.Otherwise show this unusual network node at the normal undercarriage of CDN network quilt, therefore there is no need to be placed on this network node in the unusual network node tabulation and to inform the keeper of CDN network.
Thus, abnormal nodes determining unit 224 can further deletion from the tabulation of unusual network node, after specifying constantly to be found its unusually also normal network node of undercarriage.
Above-mentioned supervisory control system can be monitored the unusual network node of content distributing network effectively, solve thus the monitoring problem of the unusual network node in the content distributing network, obtained the beneficial effect that effectively content distributing network is carried out maintenance and management.
Fig. 4 shows according to an embodiment of the invention a kind of flow chart of method for supervising of content distributing network.This content distributing network comprises a plurality of network nodes that are associated with the webserver.
The method for supervising of this content distributing network starts from step S410 as shown in Figure 4, obtains the access log before the appointment constantly of the webserver in this step, therefrom obtains network node and returns Source log.
This step is the Source log that returns that filters out network node from the daily record of the webserver.In one embodiment of the invention, obtain the appointment moment access log before of the webserver, therefrom obtaining network node returns Source log and comprises: each the bar access log before the appointment of the webserver that traversal is obtained constantly, judge by the access links in this access log whether this access log returns Source log as network node, then to keep, otherwise deletion is returned Source log thereby obtain network node.
This step S410 carries out in the monitoring server 220 of system shown in Figure 1 in the above, is specifically carried out by journal processing unit in the monitoring server 220 221.
In step S420, return Source log according to network node and determine effective network node tabulation subsequently.
In one embodiment of the invention, return Source log according to network node and determine that effective network node tabulation comprises: return each network node that occurs in the Source log for network node, according to network node return Source log add up this network node return the source number of times whether be less than preset value and last Hui Yuan whether second specify constantly before, be to judge that then this network node is invalid, otherwise network node is put into the active block node listing.Wherein, second specify the moment to be a time point before specifying constantly.
For example, in one embodiment of the invention, specifying constantly be the zero point of today, then second specify constantly be zero point today before sometime.Effectively unspent each network node before zero point today can be determined in node determination unit 222, and these unspent each network nodes before zero point today are the objects that will monitor today.The effect of this step S420 is to eliminate as far as possible failed network node today.
This step S420 carries out in the monitoring server 220 of system shown in Figure 1 in the above, is specifically carried out by the effective node determination unit 222 in the monitoring server 220.
In step S430, the active block node listing is sent to one or more monitor node, so that each network node in one or more monitor node access active block node listing, and access log monitored in record separately.
In one embodiment of the invention, each monitor node is after receiving the active block node listing that issues, and the all-network node in this active block node listing carries out the access of respective service, and record monitoring daily record.The abnormal conditions of access have been recorded in the monitoring daily record.These a plurality of monitor nodes are a plurality of monitor nodes that are distributed in the heterogeneous networks position.
This step S430 carries out in the monitoring server 220 of system shown in Figure 1 in the above, is specifically carried out by the monitor node linkage unit 223 in the monitoring server 220.
In step S440, according to the monitoring access log that a plurality of monitor nodes record, determine unusual network node tabulation.
In one embodiment of the invention, the monitoring access log that records according to a plurality of monitor nodes, determine that unusual network node tabulation comprises: for a network node, if the monitoring access log that one or more monitor nodes record shows, at least one monitor node is accessed this network node abnormality, and the number of times of access exception reaches pre-determined number, determines that then this network node is unusual network node, and this node is put into unusual network node tabulation.
In one embodiment of the invention, for a network node, can when accessing this network node abnormality, a monitor node determine just that this network node is unusual network node.Perhaps consider different monitor nodes because its residing position is different, some monitor node may be owing to the relatively poor problem that causes accessing this network node abnormality of himself residing network environment, in another embodiment of the present invention, can access this network node abnormality at a plurality of monitor nodes or even whole monitor node, and when the number of times of access exception reaches pre-determined number, determine that this network node is unusual network node.
This step S440 carries out in the monitoring server 220 of system shown in Figure 1 in the above, is specifically carried out by the abnormal nodes determining unit 224 in the monitoring server 220.
In step S450, travel through each the unusual network node in the unusual network node tabulation, search the Source log that returns that whether has this unusual network node the access log after the appointment constantly of the webserver, if there is no, then should the deletion from unusual network node tabulation of unusual network node.
In this step S450, have the Source log that returns of this unusual network node in the access log after specifying constantly, then show this unusual network node still in network not by undercarriage, otherwise show normal undercarriage of this unusual network node.Thus, can be from the tabulation of unusual network node further deletion after specifying constantly to be found its unusually also normal network node of undercarriage.
This step S450 carries out in the monitoring server 220 of system shown in Figure 1 in the above, is specifically carried out by the abnormal nodes determining unit 224 in the monitoring server 220.
Above step only is a kind of execution mode of the method for supervising of content distributing network of the present invention, and the inventive method can realize by other means.Especially, step S450 is optional step, if after not needing to confirm to specify constantly by the unusual network node of normal undercarriage, just execution in step S450 not then is execution of step S440 process ends.
Above-mentioned method for supervising can be monitored the unusual network node of content distributing network effectively, solve thus the monitoring problem of the unusual network node in the content distributing network, obtained the beneficial effect that effectively content distributing network is carried out maintenance and management.
Need to prove:
Intrinsic not relevant with any certain computer, virtual system or miscellaneous equipment with demonstration at this algorithm that provides.Various general-purpose systems also can be with using based on the teaching at this.According to top description, it is apparent constructing the desired structure of this type systematic.In addition, the present invention is not also for any certain programmed language.Should be understood that and to utilize various programming languages to realize content of the present invention described here, and the top description that language-specific is done is in order to disclose preferred forms of the present invention.
In the specification that provides herein, a large amount of details have been described.Yet, can understand, embodiments of the invention can be put into practice in the situation of these details not having.In some instances, be not shown specifically known method, structure and technology, so that not fuzzy understanding of this description.
Similarly, be to be understood that, in order to simplify the disclosure and to help to understand one or more in each inventive aspect, in the description to exemplary embodiment of the present invention, each feature of the present invention is grouped together in single embodiment, figure or the description to it sometimes in the above.Yet the method for the disclosure should be construed to the following intention of reflection: namely the present invention for required protection requires the more feature of feature clearly put down in writing than institute in each claim.Or rather, as following claims reflected, inventive aspect was to be less than all features of the disclosed single embodiment in front.Therefore, follow claims of embodiment and incorporate clearly thus this embodiment into, wherein each claim itself is as independent embodiment of the present invention.
Those skilled in the art are appreciated that and can adaptively change and they are arranged in one or more equipment different from this embodiment the module in the equipment among the embodiment.Can be combined into a module or unit or assembly to the module among the embodiment or unit or assembly, and can be divided into a plurality of submodules or subelement or sub-component to them in addition.In such feature and/or process or unit at least some are mutually repelling, and can adopt any combination to disclosed all features in this specification (comprising claim, summary and the accompanying drawing followed) and so all processes or the unit of disclosed any method or equipment make up.Unless in addition clearly statement, disclosed each feature can be by providing identical, being equal to or the alternative features of similar purpose replaces in this specification (comprising claim, summary and the accompanying drawing followed).
In addition, those skilled in the art can understand, although embodiment more described herein comprise some feature rather than further feature included among other embodiment, the combination of the feature of different embodiment means and is within the scope of the present invention and forms different embodiment.For example, in the following claims, the one of any of embodiment required for protection can be used with compound mode arbitrarily.
All parts embodiment of the present invention can realize with hardware, perhaps realizes with the software module of moving at one or more processor, and perhaps the combination with them realizes.It will be understood by those of skill in the art that and to use in practice microprocessor or digital signal processor (DSP) to realize according to the monitoring server of the content distributing network of the embodiment of the invention and some or all some or repertoire of parts in the supervisory control system.The present invention can also be embodied as be used to part or all equipment or the device program (for example, computer program and computer program) of carrying out method as described herein.Such realization program of the present invention can be stored on the computer-readable medium, perhaps can have the form of one or more signal.Such signal can be downloaded from internet website and obtain, and perhaps provides at carrier signal, perhaps provides with any other form.
It should be noted above-described embodiment the present invention will be described rather than limit the invention, and those skilled in the art can design alternative embodiment in the situation of the scope that does not break away from claims.In the claims, any reference symbol between bracket should be configured to limitations on claims.Word " comprises " not to be got rid of existence and is not listed in element or step in the claim.Being positioned at word " " before the element or " one " does not get rid of and has a plurality of such elements.The present invention can realize by means of the hardware that includes some different elements and by means of the computer of suitably programming.In having enumerated the unit claim of some devices, several in these devices can be to come imbody by same hardware branch.The use of word first, second and C grade does not represent any order.Can be title with these word explanations.

Claims (11)

1. the method for supervising of a content distributing network, this content distributing network comprises a plurality of network nodes that are associated with the webserver, the method comprises:
Obtain the appointment moment access log before of the described webserver, therefrom obtain network node and return Source log, return Source log according to described network node and determine effective network node tabulation;
Described active block node listing is sent to one or more monitor node, so that described one or more monitor node is accessed each network node in the described active block node listing, and access log monitored in record separately; And
According to the monitoring access log that described a plurality of monitor nodes record, determine unusual network node tabulation.
2. method for supervising as claimed in claim 1 further comprises:
Travel through each the unusual network node in the described unusual network node tabulation, search the Source log that returns that whether has this unusual network node the access log after the appointment constantly of the described webserver, if there is no, then should the deletion from described unusual network node tabulation of unusual network node.
3. method for supervising as claimed in claim 1, wherein, the access log before the described appointment constantly of obtaining the webserver therefrom obtains network node and returns Source log and comprise:
Each bar access log before the appointment of the webserver that traversal is obtained constantly, judge by the access links in this access log whether this access log returns Source log as network node, be then to keep, otherwise deletion is returned Source log thereby obtain network node.
4. method for supervising as claimed in claim 1, wherein, describedly return Source log according to described network node and determine that effective network node tabulation comprises:
Return each network node that occurs in the Source log for described network node, according to described network node return Source log judge this network node return the source number of times whether be less than preset value and last Hui Yuan whether second specify constantly before, be to judge that then this network node is invalid, otherwise network node is put into the active block node listing;
Wherein, described the second appointment constantly is the described moment time point before of specifying.
5. method for supervising as claimed in claim 1, wherein, according to the monitoring access log that described a plurality of monitor nodes record, determine that unusual network node tabulation comprises:
For a network node, if the monitoring access log that described one or more monitor node records shows, at least one monitor node is accessed this network node abnormality, and the number of times of access exception reaches pre-determined number, determine that then this network node is unusual network node, this node is put into unusual network node tabulation.
6. method for monitoring network as claimed in claim 5, wherein, described a plurality of monitor nodes are a plurality of monitor nodes that are distributed in the heterogeneous networks position.
7. the monitoring server of a content distributing network, this content distributing network comprises a plurality of network nodes that are associated with the webserver, wherein, this monitoring server comprises:
Journal processing unit is suitable for obtaining the access log before the appointment constantly of the webserver, therefrom obtains network node and returns Source log;
Effectively the node determination unit is suitable for returning Source log according to the network node that described journal processing unit obtains and determines effective network node tabulation;
The monitor node linkage unit, be suitable for described active block node listing is sent to one or more monitor nodes, and receiving the monitoring access log that described one or more monitor node returns, described monitoring access log generates when accessing each network node in the described active block node listing by monitor node; And
The abnormal nodes determining unit is suitable for according to described monitoring access log, determines unusual network node tabulation.
8. monitoring server as claimed in claim 7, wherein said journal processing unit are suitable for obtaining the access log after the appointment constantly of the webserver;
Described abnormal nodes determining unit is suitable for traveling through each the unusual network node in the described unusual network node tabulation, search the Source log that returns that whether has this unusual network node the access log after the appointment of the described webserver that obtains from described journal processing unit constantly, if there is no, then should the deletion from described unusual network node tabulation of unusual network node.
9. monitoring server as claimed in claim 7, wherein said journal processing unit is suitable for traveling through the appointment moment each bar access log before of the webserver that obtains, judge by the access links in this access log whether this access log returns Source log as network node, then to keep, otherwise deletion is returned Source log thereby obtain network node.
10. monitoring server as claimed in claim 7, wherein said effective node determination unit, be suitable for described network node is returned each network node that occurs in the Source log, according to described network node return Source log judge this network node return the source number of times whether be less than preset value and last Hui Yuan whether second specify constantly before, be to judge that then this network node is invalid, otherwise network node is put into the active block node listing;
Wherein, described the second appointment constantly is the described moment time point before of specifying.
11. monitoring server as claimed in claim 7, wherein,
Described abnormal nodes determining unit, be suitable for showing at the monitoring access log that described one or more monitor nodes record, for a network node, at least one monitor node is accessed this network node abnormality, and when the number of times of access exception reaches pre-determined number, determine that this network node is unusual network node, this node is put into unusual network node tabulation.
CN201210448737.0A 2012-11-09 2012-11-09 A kind of method for supervising of content distributing network and monitoring server Active CN102938709B (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN201210448737.0A CN102938709B (en) 2012-11-09 2012-11-09 A kind of method for supervising of content distributing network and monitoring server

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN201210448737.0A CN102938709B (en) 2012-11-09 2012-11-09 A kind of method for supervising of content distributing network and monitoring server

Publications (2)

Publication Number Publication Date
CN102938709A true CN102938709A (en) 2013-02-20
CN102938709B CN102938709B (en) 2015-09-30

Family

ID=47697581

Family Applications (1)

Application Number Title Priority Date Filing Date
CN201210448737.0A Active CN102938709B (en) 2012-11-09 2012-11-09 A kind of method for supervising of content distributing network and monitoring server

Country Status (1)

Country Link
CN (1) CN102938709B (en)

Cited By (12)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102932204A (en) * 2012-11-09 2013-02-13 北京奇虎科技有限公司 Monitoring method and monitoring system of content delivery network
CN103179200A (en) * 2013-03-08 2013-06-26 深圳嘉蓝天网科技有限公司 Management system and method for internet surfing accelerating equipment of mobile terminal
CN105071989A (en) * 2015-07-30 2015-11-18 世纪龙信息网络有限责任公司 Video content distribution quality monitoring system and monitoring method therefor
WO2017020715A1 (en) * 2015-08-03 2017-02-09 阿里巴巴集团控股有限公司 Method and device for monitoring status of cdn node
CN106533722A (en) * 2015-09-11 2017-03-22 北京国双科技有限公司 Network monitoring method and network monitoring device
CN107547235A (en) * 2016-06-28 2018-01-05 北京国双科技有限公司 A kind of equipment fault based reminding method and device
CN108989368A (en) * 2017-05-31 2018-12-11 腾讯科技(深圳)有限公司 A kind of control method and monitoring device of link-quality
CN110213203A (en) * 2018-03-06 2019-09-06 腾讯科技(深圳)有限公司 Network dispatching method, device and computer storage medium
CN110290019A (en) * 2019-05-27 2019-09-27 网宿科技股份有限公司 Monitoring method and system
CN110460500A (en) * 2019-09-09 2019-11-15 核芯互联科技(青岛)有限公司 A kind of processing method and system that local area network instant messaging network node abnormality is offline
CN111404761A (en) * 2019-01-02 2020-07-10 中国移动通信有限公司研究院 Content looping detection processing method and device and computer readable storage medium
CN111427621A (en) * 2018-12-24 2020-07-17 北京奇虎科技有限公司 Network monitoring method and device based on plug-in, computing equipment and storage medium

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20030158623A1 (en) * 2000-09-05 2003-08-21 Satoshi Kumano Monitoring control network system
CN101341691A (en) * 2005-12-22 2009-01-07 微软公司 Authorisation and authentication
CN101557331A (en) * 2008-04-07 2009-10-14 华为技术有限公司 Method and system for processing content index and content routing function and content distributing control entity
CN101848478A (en) * 2010-04-29 2010-09-29 北京交通大学 Wireless sensor network fault processing method

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
US20030158623A1 (en) * 2000-09-05 2003-08-21 Satoshi Kumano Monitoring control network system
CN101341691A (en) * 2005-12-22 2009-01-07 微软公司 Authorisation and authentication
CN101557331A (en) * 2008-04-07 2009-10-14 华为技术有限公司 Method and system for processing content index and content routing function and content distributing control entity
CN101848478A (en) * 2010-04-29 2010-09-29 北京交通大学 Wireless sensor network fault processing method

Cited By (22)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102932204B (en) * 2012-11-09 2015-05-20 北京奇虎科技有限公司 Monitoring method and monitoring system of content delivery network
CN102932204A (en) * 2012-11-09 2013-02-13 北京奇虎科技有限公司 Monitoring method and monitoring system of content delivery network
CN103179200B (en) * 2013-03-08 2018-07-06 深圳银链科技有限公司 Management system and method for internet surfing accelerating equipment of mobile terminal
CN103179200A (en) * 2013-03-08 2013-06-26 深圳嘉蓝天网科技有限公司 Management system and method for internet surfing accelerating equipment of mobile terminal
CN105071989A (en) * 2015-07-30 2015-11-18 世纪龙信息网络有限责任公司 Video content distribution quality monitoring system and monitoring method therefor
WO2017020715A1 (en) * 2015-08-03 2017-02-09 阿里巴巴集团控股有限公司 Method and device for monitoring status of cdn node
CN106411629A (en) * 2015-08-03 2017-02-15 阿里巴巴集团控股有限公司 Method used for monitoring state of CDN node and equipment thereof
CN106411629B (en) * 2015-08-03 2020-06-30 阿里巴巴集团控股有限公司 Method and equipment for monitoring state of CDN node
CN106533722B (en) * 2015-09-11 2019-06-21 北京国双科技有限公司 Network monitoring method and device
CN106533722A (en) * 2015-09-11 2017-03-22 北京国双科技有限公司 Network monitoring method and network monitoring device
CN107547235A (en) * 2016-06-28 2018-01-05 北京国双科技有限公司 A kind of equipment fault based reminding method and device
CN107547235B (en) * 2016-06-28 2020-10-20 北京国双科技有限公司 Equipment fault reminding method and device
CN108989368B (en) * 2017-05-31 2021-07-27 腾讯科技(深圳)有限公司 Link quality control method and monitoring equipment
CN108989368A (en) * 2017-05-31 2018-12-11 腾讯科技(深圳)有限公司 A kind of control method and monitoring device of link-quality
CN110213203A (en) * 2018-03-06 2019-09-06 腾讯科技(深圳)有限公司 Network dispatching method, device and computer storage medium
CN110213203B (en) * 2018-03-06 2021-09-28 腾讯科技(深圳)有限公司 Network scheduling method and device and computer storage medium
CN111427621A (en) * 2018-12-24 2020-07-17 北京奇虎科技有限公司 Network monitoring method and device based on plug-in, computing equipment and storage medium
CN111404761A (en) * 2019-01-02 2020-07-10 中国移动通信有限公司研究院 Content looping detection processing method and device and computer readable storage medium
CN110290019A (en) * 2019-05-27 2019-09-27 网宿科技股份有限公司 Monitoring method and system
CN110290019B (en) * 2019-05-27 2021-09-10 网宿科技股份有限公司 Monitoring method and system
CN110460500B (en) * 2019-09-09 2021-02-12 核芯互联科技(青岛)有限公司 Method and system for processing local area network instant communication network node abnormal offline
CN110460500A (en) * 2019-09-09 2019-11-15 核芯互联科技(青岛)有限公司 A kind of processing method and system that local area network instant messaging network node abnormality is offline

Also Published As

Publication number Publication date
CN102938709B (en) 2015-09-30

Similar Documents

Publication Publication Date Title
CN102938709A (en) Monitoring method and monitoring server for content delivery network (CDN)
CN102932204A (en) Monitoring method and monitoring system of content delivery network
KR101336512B1 (en) Distributed management monitoring system, monitoring method and creating method thereof
CN105243159B (en) A kind of distributed network crawler system based on visualization script editing machine
CN103716398A (en) Method and system for monitoring CDN server
CN101252465B (en) Warning data acquisition method and server and client end in system
CN102035696B (en) Website access performance monitoring method, device and system
CN105282772A (en) Wireless network data communication equipment monitoring system and equipment monitoring method
CN104834582B (en) A kind of monitor event methods of exhibiting
CN104333465A (en) Heartbeat interval setting method, device and system
US8891403B2 (en) Inter-cluster communications technique for event and health status communications
CN103746929A (en) Optimal access flow scheduling method based on DNS (Domain Name System) and optimal access flow scheduling equipment based on DNS
CN103716173A (en) Storage monitoring system and monitoring alarm issuing method
CN102437935B (en) WEB application monitoring method and equipment
CN103490937A (en) Method and device for filtering monitoring data
CN103310087A (en) Service data statistic analysis method and device
CN103765858A (en) A method and server for monitoring users during their browsing within a communications network
CN103034540A (en) Distributed information system, device and coordinating method thereof
CN109039787A (en) log processing method, device and big data cluster
CN108304296A (en) A kind of server monitoring method, system, equipment and computer readable storage medium
US11962666B2 (en) User-configurable end user monitoring (EUM)
CN106304136A (en) Obtain the method for network state information, system, controller and simulation mobile device
CN106412054A (en) Naming method for converting dynamic network address into static network address, system and application thereof
CN104883298A (en) Business quality detection method and router
CN109391495A (en) Send and receive method, apparatus, computer-readable medium and the electronic equipment of heartbeat message

Legal Events

Date Code Title Description
C06 Publication
PB01 Publication
C10 Entry into substantive examination
SE01 Entry into force of request for substantive examination
C14 Grant of patent or utility model
GR01 Patent grant
TR01 Transfer of patent right

Effective date of registration: 20220725

Address after: Room 801, 8th floor, No. 104, floors 1-19, building 2, yard 6, Jiuxianqiao Road, Chaoyang District, Beijing 100015

Patentee after: BEIJING QIHOO TECHNOLOGY Co.,Ltd.

Address before: 100088 room 112, block D, 28 new street, new street, Xicheng District, Beijing (Desheng Park)

Patentee before: BEIJING QIHOO TECHNOLOGY Co.,Ltd.

Patentee before: Qizhi software (Beijing) Co.,Ltd.

TR01 Transfer of patent right