CN112532453A - Network abnormal information processing method and device - Google Patents

Network abnormal information processing method and device Download PDF

Info

Publication number
CN112532453A
CN112532453A CN202011376091.0A CN202011376091A CN112532453A CN 112532453 A CN112532453 A CN 112532453A CN 202011376091 A CN202011376091 A CN 202011376091A CN 112532453 A CN112532453 A CN 112532453A
Authority
CN
China
Prior art keywords
network
type
processing
anomaly
abnormal
Prior art date
Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
Pending
Application number
CN202011376091.0A
Other languages
Chinese (zh)
Inventor
李敏
Current Assignee (The listed assignees may be inaccurate. Google has not performed a legal analysis and makes no representation or warranty as to the accuracy of the list.)
Chengdu Siku Intelligent Technology Co ltd
Original Assignee
Chengdu Siku Intelligent Technology Co ltd
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by Chengdu Siku Intelligent Technology Co ltd filed Critical Chengdu Siku Intelligent Technology Co ltd
Priority to CN202011376091.0A priority Critical patent/CN112532453A/en
Publication of CN112532453A publication Critical patent/CN112532453A/en
Pending legal-status Critical Current

Links

Images

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L41/00Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
    • H04L41/06Management of faults, events, alarms or notifications
    • H04L41/0654Management of faults, events, alarms or notifications using network fault recovery
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L43/00Arrangements for monitoring or testing data switching networks
    • H04L43/08Monitoring or testing based on specific metrics, e.g. QoS, energy consumption or environmental parameters
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L43/00Arrangements for monitoring or testing data switching networks
    • H04L43/08Monitoring or testing based on specific metrics, e.g. QoS, energy consumption or environmental parameters
    • H04L43/0823Errors, e.g. transmission errors
    • H04L43/0829Packet loss
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L43/00Arrangements for monitoring or testing data switching networks
    • H04L43/08Monitoring or testing based on specific metrics, e.g. QoS, energy consumption or environmental parameters
    • H04L43/0823Errors, e.g. transmission errors
    • H04L43/0847Transmission error
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L43/00Arrangements for monitoring or testing data switching networks
    • H04L43/08Monitoring or testing based on specific metrics, e.g. QoS, energy consumption or environmental parameters
    • H04L43/0852Delays
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/12Applying verification of the received information
    • H04L63/123Applying verification of the received information received data contents, e.g. message integrity
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L63/00Network architectures or network communication protocols for network security
    • H04L63/14Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
    • H04L63/1441Countermeasures against malicious traffic
    • H04L63/145Countermeasures against malicious traffic the attack involving the propagation of malware through the network, e.g. viruses, trojans or worms

Abstract

The invention discloses a method and a device for processing network abnormal information, which relate to the technical field of network abnormal information processing.

Description

Network abnormal information processing method and device
Technical Field
The present invention relates to the technical field of network exception information processing, and more particularly, to a method and an apparatus for processing network exception information.
Background
With the rapid development of the internet, various network problems can occur in the actual operation process of the network, which mainly include 6 network abnormal problems such as network delay, network packet drop, network throttling, network retransmission, data disorder, data tampering and the like.
When the system encounters the 6 network anomaly problems, it takes time to determine which kind of problems is encountered, and then takes corresponding measures to remedy the problems, which may cause problems that the problems cannot be processed in time, data cannot be retrieved, and the like.
Disclosure of Invention
The invention aims to: the invention provides a method and a device for processing network abnormal information, aiming at solving the problem that the network abnormal problem cannot be judged and processed in time at present.
The invention specifically adopts the following technical scheme for realizing the purpose:
the network abnormal information processing method comprises the following steps:
(1) acquiring the running condition of the network in real time, and judging whether the network is abnormal or not according to the acquired condition;
(2) when the network is abnormal, continuously judging whether the type of the network abnormality belongs to network delay, network packet drop, network throttling, network retransmission, data disorder and data tampering;
(3) and taking corresponding treatment measures according to the judged type of the network abnormity.
Further, when the judged type of the network abnormity is network delay, a processing measure for ending part of the process or disconnecting the wireless network is taken,
further, when the determined type of the network anomaly is a network packet drop, a processing measure of searching and killing viruses or properly reducing the length of the network cable or checking the network cable and remanufacturing a crystal head or reinstalling an operating system or replacing a network card or replacing the use environment of the network equipment or replacing the network equipment in a safety mode after the network is disconnected is adopted.
Further, when the judged type of the network abnormity is network throttling, a processing measure of disconnecting the network and restarting is taken.
Further, when the judged type of the network abnormality is network retransmission, a processing measure of replacing the network equipment is taken.
Further, when the judged type of the network abnormality is data disorder, a processing measure for restarting the network device is taken.
Further, when the judged type of the network abnormality is data tampering, a processing measure for checking and killing viruses in a safety mode after the network is disconnected is adopted.
The network monitoring system further comprises a collecting unit, a judging unit, a type judging unit and a processing unit, wherein the collecting unit collects the running condition of the network, the judging unit judges whether the network is abnormal according to the collecting result of the collecting unit, if the judging unit judges that the network is abnormal, the type judging unit judges the type of the network abnormality, and the processing unit carries out corresponding operation according to the result of the type judging unit.
The invention has the following beneficial effects:
(1) whether the network is abnormal or not can be effectively judged, and the type of the network abnormality can be judged;
(2) corresponding measures can be taken according to the type of the network abnormity, the network abnormity problem can be processed in time, and the problem that data cannot be retrieved is effectively avoided.
Drawings
FIG. 1 is a schematic view of the present invention;
Detailed Description
Example 1
As shown in fig. 1, the present embodiment provides a method for processing network exception information, including the following steps:
(1) acquiring the running condition of the network in real time, and judging whether the network is abnormal or not according to the acquired condition;
(2) when the network is abnormal, continuously judging whether the type of the network abnormality belongs to network delay, network packet drop, network throttling, network retransmission, data disorder and data tampering;
(3) and taking corresponding treatment measures according to the judged type of the network abnormity.
Example 2
As shown in fig. 1, this embodiment is further improved on the basis of embodiment 1, specifically, when the determined type of the network anomaly is network delay, a processing measure for ending a partial process or disconnecting a wireless network is taken,
example 3
As shown in fig. 1, this embodiment is further improved on the basis of embodiment 1, and specifically, when the determined type of the network anomaly is a network packet drop, a processing measure is taken to kill viruses or appropriately reduce the length of the network cable or check the network cable in a secure mode after the network is disconnected, and to re-manufacture a crystal head or reinstall an operating system or replace a network card or replace the use environment of the network device or replace the network device.
Example 4
As shown in fig. 1, the present embodiment is further improved on the basis of embodiment 1, specifically, when the determined type of the network anomaly is network throttling, a processing measure of disconnecting the network from restarting is taken.
Example 5
As shown in fig. 1, this embodiment is further improved on the basis of embodiment 1, specifically, when the determined type of the network anomaly is network retransmission, a processing measure for replacing the network device is taken.
Example 6
As shown in fig. 1, this embodiment is further improved on the basis of embodiment 1, specifically, when the determined type of the network anomaly is data out-of-order, a processing measure for restarting the network device is taken.
Example 7
As shown in fig. 1, this embodiment is further improved on the basis of embodiment 1, and specifically, when the determined type of the network anomaly is data tampering, a processing measure for checking and killing viruses in a secure mode after disconnecting the network is taken.
Example 8
As shown in fig. 1, this embodiment provides a network anomaly information processing apparatus based on embodiment 1, which includes a collection unit, a determination unit, a type determination unit, and a processing unit, where the collection unit collects an operation condition of a network, the determination unit determines whether the network is anomalous according to a collection result of the collection unit, if the determination unit determines that the network is anomalous, the type determination unit determines a type of the network anomaly, and the processing unit performs a corresponding operation according to a result of the type determination unit.

Claims (8)

1. The method for processing the network abnormal information is characterized by comprising the following steps:
(1) acquiring the running condition of the network in real time, and judging whether the network is abnormal or not according to the acquired condition;
(2) when the network is abnormal, continuously judging whether the type of the network abnormality belongs to network delay, network packet drop, network throttling, network retransmission, data disorder and data tampering;
(3) and taking corresponding treatment measures according to the judged type of the network abnormity.
2. The method according to claim 1, wherein when the type of the network anomaly is determined to be network delay, a processing measure is taken to end a partial process or disconnect a wireless network.
3. The method according to claim 1, wherein when the type of the network anomaly is determined to be a network packet loss, the method takes a processing measure of killing viruses or appropriately reducing the length of the network cable or checking the network cable and remanufacturing a crystal head or reinstalling an operating system or replacing a network card or replacing the use environment of the network device or replacing the network device in a safe mode after the network is disconnected.
4. The method according to claim 1, wherein when the determined type of the network anomaly is network throttling, a measure for disconnecting the network from restarting is taken.
5. The method according to claim 1, wherein when the determined type of the network anomaly is network retransmission, a processing measure for replacing the network device is taken.
6. The method according to claim 1, wherein when the determined type of the network anomaly is data out-of-order, a processing measure for restarting the network device is taken.
7. The method according to claim 1, wherein when the type of the determined network anomaly is data tampering, a processing measure for checking and killing viruses in a secure mode after the network is disconnected is taken.
8. The device for processing the network abnormality information according to claim 1, comprising a collection unit, a judgment unit, a type judgment unit and a processing unit, wherein the collection unit collects the operation condition of the network, the judgment unit judges whether the network is abnormal according to the collection result of the collection unit, if the judgment unit judges that the network is abnormal, the type judgment unit judges the type of the network abnormality, and the processing unit performs corresponding operation according to the result of the type judgment unit.
CN202011376091.0A 2020-11-30 2020-11-30 Network abnormal information processing method and device Pending CN112532453A (en)

Priority Applications (1)

Application Number Priority Date Filing Date Title
CN202011376091.0A CN112532453A (en) 2020-11-30 2020-11-30 Network abnormal information processing method and device

Applications Claiming Priority (1)

Application Number Priority Date Filing Date Title
CN202011376091.0A CN112532453A (en) 2020-11-30 2020-11-30 Network abnormal information processing method and device

Publications (1)

Publication Number Publication Date
CN112532453A true CN112532453A (en) 2021-03-19

Family

ID=74995357

Family Applications (1)

Application Number Title Priority Date Filing Date
CN202011376091.0A Pending CN112532453A (en) 2020-11-30 2020-11-30 Network abnormal information processing method and device

Country Status (1)

Country Link
CN (1) CN112532453A (en)

Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102271091A (en) * 2011-09-06 2011-12-07 电子科技大学 Method for classifying network abnormal events
CN103023725A (en) * 2012-12-20 2013-04-03 北京工业大学 Anomaly detection method based on network flow analysis
US20160254944A1 (en) * 2013-10-18 2016-09-01 Telefonaktiebolaget L M Ericsson (Publ) Classification of detected network anomalies using additional data
CN106254167A (en) * 2016-10-09 2016-12-21 凌云天博光电科技股份有限公司 A kind of method of network monitoring, device, equipment and system
CN107864168A (en) * 2016-09-22 2018-03-30 华为技术有限公司 A kind of method and system of network data flow classification
CN108173670A (en) * 2016-12-07 2018-06-15 华为技术有限公司 The method and apparatus for detecting network
CN109547295A (en) * 2018-12-27 2019-03-29 湖南宸睿通信科技有限公司 A kind of online reparation platform and its restorative procedure of communication network

Patent Citations (7)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN102271091A (en) * 2011-09-06 2011-12-07 电子科技大学 Method for classifying network abnormal events
CN103023725A (en) * 2012-12-20 2013-04-03 北京工业大学 Anomaly detection method based on network flow analysis
US20160254944A1 (en) * 2013-10-18 2016-09-01 Telefonaktiebolaget L M Ericsson (Publ) Classification of detected network anomalies using additional data
CN107864168A (en) * 2016-09-22 2018-03-30 华为技术有限公司 A kind of method and system of network data flow classification
CN106254167A (en) * 2016-10-09 2016-12-21 凌云天博光电科技股份有限公司 A kind of method of network monitoring, device, equipment and system
CN108173670A (en) * 2016-12-07 2018-06-15 华为技术有限公司 The method and apparatus for detecting network
CN109547295A (en) * 2018-12-27 2019-03-29 湖南宸睿通信科技有限公司 A kind of online reparation platform and its restorative procedure of communication network

Non-Patent Citations (3)

* Cited by examiner, † Cited by third party
Title
佚名: ""解决网络丢包问题及故障判断方法"", 《HTTPS://PCEDU.PCONLINE.COM.CN/892/8924376.HTML》 *
北京宽带通: ""科普:网络异常的6大类"", 《HTTPS://WWW.163.COM/DY/ARTICLE/E8KQ1LDV0538056H.HTML》 *
王晓霞等: "《计算机网络信息安全及管理技术研究》", 北京邮电大学出版社 *

Similar Documents

Publication Publication Date Title
JP5736881B2 (en) Log collection system, apparatus, method and program
US7954161B1 (en) Mechanism for characterizing soft failures in systems under attack
CN112114995B (en) Terminal abnormality analysis method, device, equipment and storage medium based on process
MY148969A (en) Anomaly diagnosis system for passenger conveyors
CN110245154B (en) Multi-path link exception handling method and related equipment
EP1573427A4 (en) System and process to ensure performance of mandated safety and maintenance inspections
CN109992448B (en) File change incremental backup method, device, equipment and medium
CN112651029B (en) System and method for detecting application system loopholes, storage medium and electronic equipment
CN113572760B (en) Device protocol vulnerability detection method and device
CN109257393A (en) XSS attack defence method and device based on machine learning
CN112532453A (en) Network abnormal information processing method and device
JP2011247695A (en) Abnormality diagnosis method and abnormality diagnosis system using pattern library
CN110839042A (en) Flow-based self-feedback malicious software monitoring system and method
CN110990328A (en) Method and system for reliable communication between dual processors of TBox
CN106886475A (en) A kind of monitoring server and the host monitor method based on order line
CN103821750A (en) Current-based method for monitoring and diagnosing stall speed and surge of ventilator
US10839076B2 (en) Detection of cyber machinery attacks
CN106899977B (en) Abnormal flow detection method and device
CN107884189B (en) Fault diagnosis method
CN110247886B (en) Efficient time series data communication
JP2019036862A5 (en) Server equipment, recording methods, programs, and recording systems, as well as information processing equipment
CN104408059A (en) Fault processing method and device
CN105743875B (en) Information processing apparatus and information processing method
CN114095238A (en) Attack early warning system and method for mobile terminal application program
CN110347666B (en) Method and device for improving time sequence data quality and early warning

Legal Events

Date Code Title Description
PB01 Publication
PB01 Publication
SE01 Entry into force of request for substantive examination
SE01 Entry into force of request for substantive examination
WD01 Invention patent application deemed withdrawn after publication

Application publication date: 20210319

WD01 Invention patent application deemed withdrawn after publication