CN112532453A - Network abnormal information processing method and device - Google Patents
Network abnormal information processing method and device Download PDFInfo
- Publication number
- CN112532453A CN112532453A CN202011376091.0A CN202011376091A CN112532453A CN 112532453 A CN112532453 A CN 112532453A CN 202011376091 A CN202011376091 A CN 202011376091A CN 112532453 A CN112532453 A CN 112532453A
- Authority
- CN
- China
- Prior art keywords
- network
- type
- processing
- anomaly
- abnormal
- Prior art date
- Legal status (The legal status is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the status listed.)
- Pending
Links
Images
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L41/00—Arrangements for maintenance, administration or management of data switching networks, e.g. of packet switching networks
- H04L41/06—Management of faults, events, alarms or notifications
- H04L41/0654—Management of faults, events, alarms or notifications using network fault recovery
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L43/00—Arrangements for monitoring or testing data switching networks
- H04L43/08—Monitoring or testing based on specific metrics, e.g. QoS, energy consumption or environmental parameters
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L43/00—Arrangements for monitoring or testing data switching networks
- H04L43/08—Monitoring or testing based on specific metrics, e.g. QoS, energy consumption or environmental parameters
- H04L43/0823—Errors, e.g. transmission errors
- H04L43/0829—Packet loss
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L43/00—Arrangements for monitoring or testing data switching networks
- H04L43/08—Monitoring or testing based on specific metrics, e.g. QoS, energy consumption or environmental parameters
- H04L43/0823—Errors, e.g. transmission errors
- H04L43/0847—Transmission error
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L43/00—Arrangements for monitoring or testing data switching networks
- H04L43/08—Monitoring or testing based on specific metrics, e.g. QoS, energy consumption or environmental parameters
- H04L43/0852—Delays
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/12—Applying verification of the received information
- H04L63/123—Applying verification of the received information received data contents, e.g. message integrity
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/14—Network architectures or network communication protocols for network security for detecting or protecting against malicious traffic
- H04L63/1441—Countermeasures against malicious traffic
- H04L63/145—Countermeasures against malicious traffic the attack involving the propagation of malware through the network, e.g. viruses, trojans or worms
Abstract
The invention discloses a method and a device for processing network abnormal information, which relate to the technical field of network abnormal information processing.
Description
Technical Field
The present invention relates to the technical field of network exception information processing, and more particularly, to a method and an apparatus for processing network exception information.
Background
With the rapid development of the internet, various network problems can occur in the actual operation process of the network, which mainly include 6 network abnormal problems such as network delay, network packet drop, network throttling, network retransmission, data disorder, data tampering and the like.
When the system encounters the 6 network anomaly problems, it takes time to determine which kind of problems is encountered, and then takes corresponding measures to remedy the problems, which may cause problems that the problems cannot be processed in time, data cannot be retrieved, and the like.
Disclosure of Invention
The invention aims to: the invention provides a method and a device for processing network abnormal information, aiming at solving the problem that the network abnormal problem cannot be judged and processed in time at present.
The invention specifically adopts the following technical scheme for realizing the purpose:
the network abnormal information processing method comprises the following steps:
(1) acquiring the running condition of the network in real time, and judging whether the network is abnormal or not according to the acquired condition;
(2) when the network is abnormal, continuously judging whether the type of the network abnormality belongs to network delay, network packet drop, network throttling, network retransmission, data disorder and data tampering;
(3) and taking corresponding treatment measures according to the judged type of the network abnormity.
Further, when the judged type of the network abnormity is network delay, a processing measure for ending part of the process or disconnecting the wireless network is taken,
further, when the determined type of the network anomaly is a network packet drop, a processing measure of searching and killing viruses or properly reducing the length of the network cable or checking the network cable and remanufacturing a crystal head or reinstalling an operating system or replacing a network card or replacing the use environment of the network equipment or replacing the network equipment in a safety mode after the network is disconnected is adopted.
Further, when the judged type of the network abnormity is network throttling, a processing measure of disconnecting the network and restarting is taken.
Further, when the judged type of the network abnormality is network retransmission, a processing measure of replacing the network equipment is taken.
Further, when the judged type of the network abnormality is data disorder, a processing measure for restarting the network device is taken.
Further, when the judged type of the network abnormality is data tampering, a processing measure for checking and killing viruses in a safety mode after the network is disconnected is adopted.
The network monitoring system further comprises a collecting unit, a judging unit, a type judging unit and a processing unit, wherein the collecting unit collects the running condition of the network, the judging unit judges whether the network is abnormal according to the collecting result of the collecting unit, if the judging unit judges that the network is abnormal, the type judging unit judges the type of the network abnormality, and the processing unit carries out corresponding operation according to the result of the type judging unit.
The invention has the following beneficial effects:
(1) whether the network is abnormal or not can be effectively judged, and the type of the network abnormality can be judged;
(2) corresponding measures can be taken according to the type of the network abnormity, the network abnormity problem can be processed in time, and the problem that data cannot be retrieved is effectively avoided.
Drawings
FIG. 1 is a schematic view of the present invention;
Detailed Description
Example 1
As shown in fig. 1, the present embodiment provides a method for processing network exception information, including the following steps:
(1) acquiring the running condition of the network in real time, and judging whether the network is abnormal or not according to the acquired condition;
(2) when the network is abnormal, continuously judging whether the type of the network abnormality belongs to network delay, network packet drop, network throttling, network retransmission, data disorder and data tampering;
(3) and taking corresponding treatment measures according to the judged type of the network abnormity.
Example 2
As shown in fig. 1, this embodiment is further improved on the basis of embodiment 1, specifically, when the determined type of the network anomaly is network delay, a processing measure for ending a partial process or disconnecting a wireless network is taken,
example 3
As shown in fig. 1, this embodiment is further improved on the basis of embodiment 1, and specifically, when the determined type of the network anomaly is a network packet drop, a processing measure is taken to kill viruses or appropriately reduce the length of the network cable or check the network cable in a secure mode after the network is disconnected, and to re-manufacture a crystal head or reinstall an operating system or replace a network card or replace the use environment of the network device or replace the network device.
Example 4
As shown in fig. 1, the present embodiment is further improved on the basis of embodiment 1, specifically, when the determined type of the network anomaly is network throttling, a processing measure of disconnecting the network from restarting is taken.
Example 5
As shown in fig. 1, this embodiment is further improved on the basis of embodiment 1, specifically, when the determined type of the network anomaly is network retransmission, a processing measure for replacing the network device is taken.
Example 6
As shown in fig. 1, this embodiment is further improved on the basis of embodiment 1, specifically, when the determined type of the network anomaly is data out-of-order, a processing measure for restarting the network device is taken.
Example 7
As shown in fig. 1, this embodiment is further improved on the basis of embodiment 1, and specifically, when the determined type of the network anomaly is data tampering, a processing measure for checking and killing viruses in a secure mode after disconnecting the network is taken.
Example 8
As shown in fig. 1, this embodiment provides a network anomaly information processing apparatus based on embodiment 1, which includes a collection unit, a determination unit, a type determination unit, and a processing unit, where the collection unit collects an operation condition of a network, the determination unit determines whether the network is anomalous according to a collection result of the collection unit, if the determination unit determines that the network is anomalous, the type determination unit determines a type of the network anomaly, and the processing unit performs a corresponding operation according to a result of the type determination unit.
Claims (8)
1. The method for processing the network abnormal information is characterized by comprising the following steps:
(1) acquiring the running condition of the network in real time, and judging whether the network is abnormal or not according to the acquired condition;
(2) when the network is abnormal, continuously judging whether the type of the network abnormality belongs to network delay, network packet drop, network throttling, network retransmission, data disorder and data tampering;
(3) and taking corresponding treatment measures according to the judged type of the network abnormity.
2. The method according to claim 1, wherein when the type of the network anomaly is determined to be network delay, a processing measure is taken to end a partial process or disconnect a wireless network.
3. The method according to claim 1, wherein when the type of the network anomaly is determined to be a network packet loss, the method takes a processing measure of killing viruses or appropriately reducing the length of the network cable or checking the network cable and remanufacturing a crystal head or reinstalling an operating system or replacing a network card or replacing the use environment of the network device or replacing the network device in a safe mode after the network is disconnected.
4. The method according to claim 1, wherein when the determined type of the network anomaly is network throttling, a measure for disconnecting the network from restarting is taken.
5. The method according to claim 1, wherein when the determined type of the network anomaly is network retransmission, a processing measure for replacing the network device is taken.
6. The method according to claim 1, wherein when the determined type of the network anomaly is data out-of-order, a processing measure for restarting the network device is taken.
7. The method according to claim 1, wherein when the type of the determined network anomaly is data tampering, a processing measure for checking and killing viruses in a secure mode after the network is disconnected is taken.
8. The device for processing the network abnormality information according to claim 1, comprising a collection unit, a judgment unit, a type judgment unit and a processing unit, wherein the collection unit collects the operation condition of the network, the judgment unit judges whether the network is abnormal according to the collection result of the collection unit, if the judgment unit judges that the network is abnormal, the type judgment unit judges the type of the network abnormality, and the processing unit performs corresponding operation according to the result of the type judgment unit.
Priority Applications (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN202011376091.0A CN112532453A (en) | 2020-11-30 | 2020-11-30 | Network abnormal information processing method and device |
Applications Claiming Priority (1)
Application Number | Priority Date | Filing Date | Title |
---|---|---|---|
CN202011376091.0A CN112532453A (en) | 2020-11-30 | 2020-11-30 | Network abnormal information processing method and device |
Publications (1)
Publication Number | Publication Date |
---|---|
CN112532453A true CN112532453A (en) | 2021-03-19 |
Family
ID=74995357
Family Applications (1)
Application Number | Title | Priority Date | Filing Date |
---|---|---|---|
CN202011376091.0A Pending CN112532453A (en) | 2020-11-30 | 2020-11-30 | Network abnormal information processing method and device |
Country Status (1)
Country | Link |
---|---|
CN (1) | CN112532453A (en) |
Citations (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102271091A (en) * | 2011-09-06 | 2011-12-07 | 电子科技大学 | Method for classifying network abnormal events |
CN103023725A (en) * | 2012-12-20 | 2013-04-03 | 北京工业大学 | Anomaly detection method based on network flow analysis |
US20160254944A1 (en) * | 2013-10-18 | 2016-09-01 | Telefonaktiebolaget L M Ericsson (Publ) | Classification of detected network anomalies using additional data |
CN106254167A (en) * | 2016-10-09 | 2016-12-21 | 凌云天博光电科技股份有限公司 | A kind of method of network monitoring, device, equipment and system |
CN107864168A (en) * | 2016-09-22 | 2018-03-30 | 华为技术有限公司 | A kind of method and system of network data flow classification |
CN108173670A (en) * | 2016-12-07 | 2018-06-15 | 华为技术有限公司 | The method and apparatus for detecting network |
CN109547295A (en) * | 2018-12-27 | 2019-03-29 | 湖南宸睿通信科技有限公司 | A kind of online reparation platform and its restorative procedure of communication network |
-
2020
- 2020-11-30 CN CN202011376091.0A patent/CN112532453A/en active Pending
Patent Citations (7)
Publication number | Priority date | Publication date | Assignee | Title |
---|---|---|---|---|
CN102271091A (en) * | 2011-09-06 | 2011-12-07 | 电子科技大学 | Method for classifying network abnormal events |
CN103023725A (en) * | 2012-12-20 | 2013-04-03 | 北京工业大学 | Anomaly detection method based on network flow analysis |
US20160254944A1 (en) * | 2013-10-18 | 2016-09-01 | Telefonaktiebolaget L M Ericsson (Publ) | Classification of detected network anomalies using additional data |
CN107864168A (en) * | 2016-09-22 | 2018-03-30 | 华为技术有限公司 | A kind of method and system of network data flow classification |
CN106254167A (en) * | 2016-10-09 | 2016-12-21 | 凌云天博光电科技股份有限公司 | A kind of method of network monitoring, device, equipment and system |
CN108173670A (en) * | 2016-12-07 | 2018-06-15 | 华为技术有限公司 | The method and apparatus for detecting network |
CN109547295A (en) * | 2018-12-27 | 2019-03-29 | 湖南宸睿通信科技有限公司 | A kind of online reparation platform and its restorative procedure of communication network |
Non-Patent Citations (3)
Title |
---|
佚名: ""解决网络丢包问题及故障判断方法"", 《HTTPS://PCEDU.PCONLINE.COM.CN/892/8924376.HTML》 * |
北京宽带通: ""科普:网络异常的6大类"", 《HTTPS://WWW.163.COM/DY/ARTICLE/E8KQ1LDV0538056H.HTML》 * |
王晓霞等: "《计算机网络信息安全及管理技术研究》", 北京邮电大学出版社 * |
Similar Documents
Publication | Publication Date | Title |
---|---|---|
JP5736881B2 (en) | Log collection system, apparatus, method and program | |
US7954161B1 (en) | Mechanism for characterizing soft failures in systems under attack | |
CN112114995B (en) | Terminal abnormality analysis method, device, equipment and storage medium based on process | |
MY148969A (en) | Anomaly diagnosis system for passenger conveyors | |
CN110245154B (en) | Multi-path link exception handling method and related equipment | |
EP1573427A4 (en) | System and process to ensure performance of mandated safety and maintenance inspections | |
CN109992448B (en) | File change incremental backup method, device, equipment and medium | |
CN112651029B (en) | System and method for detecting application system loopholes, storage medium and electronic equipment | |
CN113572760B (en) | Device protocol vulnerability detection method and device | |
CN109257393A (en) | XSS attack defence method and device based on machine learning | |
CN112532453A (en) | Network abnormal information processing method and device | |
JP2011247695A (en) | Abnormality diagnosis method and abnormality diagnosis system using pattern library | |
CN110839042A (en) | Flow-based self-feedback malicious software monitoring system and method | |
CN110990328A (en) | Method and system for reliable communication between dual processors of TBox | |
CN106886475A (en) | A kind of monitoring server and the host monitor method based on order line | |
CN103821750A (en) | Current-based method for monitoring and diagnosing stall speed and surge of ventilator | |
US10839076B2 (en) | Detection of cyber machinery attacks | |
CN106899977B (en) | Abnormal flow detection method and device | |
CN107884189B (en) | Fault diagnosis method | |
CN110247886B (en) | Efficient time series data communication | |
JP2019036862A5 (en) | Server equipment, recording methods, programs, and recording systems, as well as information processing equipment | |
CN104408059A (en) | Fault processing method and device | |
CN105743875B (en) | Information processing apparatus and information processing method | |
CN114095238A (en) | Attack early warning system and method for mobile terminal application program | |
CN110347666B (en) | Method and device for improving time sequence data quality and early warning |
Legal Events
Date | Code | Title | Description |
---|---|---|---|
PB01 | Publication | ||
PB01 | Publication | ||
SE01 | Entry into force of request for substantive examination | ||
SE01 | Entry into force of request for substantive examination | ||
WD01 | Invention patent application deemed withdrawn after publication |
Application publication date: 20210319 |
|
WD01 | Invention patent application deemed withdrawn after publication |