WO2014026519A1 - A method and system for analyzing the user network behavior through the home gateway - Google Patents

A method and system for analyzing the user network behavior through the home gateway Download PDF

Info

Publication number
WO2014026519A1
WO2014026519A1 PCT/CN2013/079169 CN2013079169W WO2014026519A1 WO 2014026519 A1 WO2014026519 A1 WO 2014026519A1 CN 2013079169 W CN2013079169 W CN 2013079169W WO 2014026519 A1 WO2014026519 A1 WO 2014026519A1
Authority
WO
WIPO (PCT)
Prior art keywords
information
home gateway
user
server
user behavior
Prior art date
Application number
PCT/CN2013/079169
Other languages
French (fr)
Chinese (zh)
Inventor
方文杰
陈辉
Original Assignee
中兴通讯股份有限公司
Priority date (The priority date is an assumption and is not a legal conclusion. Google has not performed a legal analysis and makes no representation as to the accuracy of the date listed.)
Filing date
Publication date
Application filed by 中兴通讯股份有限公司 filed Critical 中兴通讯股份有限公司
Publication of WO2014026519A1 publication Critical patent/WO2014026519A1/en

Links

Classifications

    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L43/00Arrangements for monitoring or testing data switching networks
    • HELECTRICITY
    • H04ELECTRIC COMMUNICATION TECHNIQUE
    • H04LTRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
    • H04L67/00Network arrangements or protocols for supporting network services or applications
    • H04L67/50Network services
    • H04L67/535Tracking the activity of the user

Definitions

  • the present invention relates to network behavior analysis techniques in the Internet, and in particular to a method and system for analyzing user network behavior through a home gateway. Background technique
  • the main purpose of the embodiments of the present invention is to provide a method and system for analyzing user network behavior through a home gateway, and using the home gateway to collect required user behavior information, so that each website operator does not need to set up a separate device. Save a lot of cost.
  • the embodiment of the invention provides a method for analyzing user network behavior through a home gateway, and the method includes:
  • the statistical analysis server periodically reads the information, analyzes and counts the read information, and obtains user behavior information.
  • the method before the statistical analysis server periodically reads the information, the method further includes:
  • the saved information is encrypted and compressed, and periodically uploaded to the information collection server.
  • the statistical analysis server periodically reads the information as:
  • the statistical analysis server periodically reads information from the information collection server. .
  • the information obtained by filtering the information is extracted to obtain the required information
  • the method further includes: recording the MAC address of the network device to which the message belongs, and recording the time when the message is generated.
  • the method before the filtering is performed on the sending and receiving, the method further includes: setting, by the ITMS server, a collection policy of the user behavior and a collection of the user behavior.
  • the setting policy for setting user behavior includes: setting whether to open the user behavior collection function; setting a period for uploading the user behavior analysis collection file; and setting a user name, a password, and a compression password for uploading the file server.
  • the setting of the set user behavior includes: setting a message filter Filtered site name and app name, record keyword name entered by search engine, and access time.
  • the embodiment of the invention further provides a system for analyzing user network behavior through a home gateway, the system comprising: a home gateway and a statistical analysis server; wherein:
  • the home gateway is configured to filter the packets sent and received by the user side and the network side, and extract information from the filtered packets to obtain the required information and save the information.
  • the statistical analysis server is configured to periodically read information, analyze and collect the read information, and obtain user behavior information.
  • the home gateway includes a message filter, a feature analysis library, and a temporary storage area; wherein:
  • the packet filter is configured to filter the packets sent and received by the user side and the network side of the home gateway to obtain the required packets.
  • the feature analysis library is configured to extract information from the filtered message to obtain required information
  • the temporary storage area is configured to store the extracted required information.
  • the system further includes an information gathering server configured to periodically read the stored information
  • the home gateway further includes an information uploading module configured to encrypt and compress the information stored in the temporary storage area, and periodically upload the information to the information collection server.
  • the feature analysis library is further configured to record a network device to which the message belongs.
  • the system includes an ITMS server configured to set a collection of user behavior and a collection of user behavior.
  • the method and system for analyzing the behavior of the user network through the home gateway provided by the embodiment of the present invention, respectively, setting a packet filter on the user side and the network side of the home gateway, and performing the packet transmission and reception Filtering; sending the filtered message to the feature analysis library to obtain the required information and saving; the statistical analysis server periodically reads the information, and analyzes and counts the read information to obtain user behavior information.
  • the embodiment of the present invention sets a message filter in the home gateway, so that the user behavior information can be collected through the home gateway, so that the website operator does not need to set up a separate device to collect data information, thereby saving a lot of cost;
  • the invention uses a relatively independent feature analysis library. When it is required to increase the user behavior content of the analysis, the feature analysis library can be updated at any time by upgrading the feature analysis library, which also reduces the risk of operation and maintenance for the website operator. And cost.
  • FIG. 1 is a schematic flowchart of a method for analyzing a user network behavior by using a home gateway according to an embodiment of the present invention
  • FIG. 2 is a schematic diagram of a system composition framework for analyzing user network behavior through a home gateway according to an embodiment of the present invention
  • FIG. 3 is a schematic flowchart of a method for analyzing user network behavior through a home gateway according to an embodiment of the present invention. detailed description
  • FIG. 1 is a schematic flowchart of a method for analyzing user behavior by using a home gateway according to an embodiment of the present invention. As shown in FIG. 1, the method includes the following steps:
  • Step 101 Filtering the packets sent and received by the user side and the network side of the home gateway.
  • the method may further include:: an integrated terminal management system (ITMS) The server remotely sets the collection of user behaviors and user behaviors;
  • IMS integrated terminal management system
  • the set policy for setting user behavior includes: setting whether to open user behavior ⁇ Set function; set the period for uploading user behavior analysis files; and set the user name, password and compression password of the upload file server;
  • the set content of the set user behavior includes: setting a website name and an application name to be filtered by the message filter, recording a keyword name and an access time input by the search engine, and the like.
  • a message filter is set on the user side and the network side of the home gateway to filter the received and received messages, and at the same time, part of the message is omitted due to network address translation (NAT);
  • the message filtering can perform fuzzy matching by using a regular expression, and filtering the information on the matching and the generated time.
  • Step 102 Perform information extraction on the filtered packet, and obtain the required information and save the information.
  • the information obtained by the filtering may be extracted by using a feature analysis library set in the home gateway; Save in temporary storage.
  • the feature analysis library includes a plurality of functional units for analyzing and extracting different types of message data as required information for extraction, and an example is as follows:
  • Example 1 If the message is related to the user's online behavior, extract the data information such as the website information, the network path, and the port number used by the user;
  • Example 2 If the message is an application used by the user, information such as the user login exit process, the usage time, and the port number used are extracted, and different applications are different in information, such as an application for watching the video online. Can extract which videos such as videos have been viewed;
  • Example 3 If the message is related to the user logging in to the search engine and inputting the keyword's online behavior, the regular expression can be used to fuzzyly match the input content, and extract the input content and time, and the like.
  • the feature analysis library records the time when the message is generated when extracting the required message information, and records the media access control of the network device to which the message belongs (Media Access Control, MAC) address to distinguish between different users.
  • Media Access Control Media Access Control
  • Step 103 The statistical analysis server periodically reads the information, analyzes and statistics the read information, and obtains user behavior information.
  • the method further includes: encrypting and compressing the information stored in the temporary storage area, and periodically uploading the information to the information collection server, and the statistical analysis server periodically extracts the information.
  • the information is read in the set server; wherein the temporary storage area deletes the already uploaded information.
  • the embodiment of the present invention further provides a system for analyzing user network behavior through a home gateway. As shown in FIG. 2, the home gateway 21 and the statistical analysis server 22 are included;
  • the home gateway 21 is configured to filter the packets sent and received by the user side and the network side, and extract the information of the filtered packets to obtain the required information and save the information.
  • the statistical analysis server 22 is configured to periodically read information, analyze and collect the read information, and obtain user behavior information.
  • system further comprises: an information collection server 23 and an ITMS server 24; wherein:
  • the information collection server 23 is configured to periodically read the stored information
  • the ITMS server 24 is configured to set a collection of user behavior and a collection of user behavior.
  • the ITMS server 24 includes: a configuration processing module, which can remotely set a collection policy of user behavior in the home gateway and a collection of user behavior;
  • the setting policy for setting the user behavior includes: setting whether to open the user behavior collection function; setting a period for uploading the user behavior analysis collection file; setting a user name, a password, and a compression password of the upload file server;
  • the set content of the setting user behavior includes: setting a packet filter to be filtered Site name, application name, record keyword name entered by the search engine, access time, and more.
  • the home gateway 21 includes: a message filter 211, a feature analysis library 212, a temporary storage area 213, and an information uploading module 214; wherein:
  • the packet filter 211 is configured to filter the packets sent and received by the user side and the network side of the home gateway to obtain the required packets.
  • the feature analysis library 212 is configured to perform information extraction on the filtered message to obtain required information.
  • the feature analysis library 212 extracts the required information according to the type of the message, and also records the MAC address of the network device to which the message belongs, and records the time when the message is generated.
  • the temporary storage area 213 is configured to store the extracted required information.
  • the information uploading module 214 is configured to encrypt and compress the information stored in the temporary storage area 213, and periodically upload the information to the information collecting server 23.
  • the ITMS server 24 pre-sets the user behavior content that needs to be collected, such as the website name, the search engine name, and the application name filtered by the home gateway 21; and also sets the period for uploading the user behavior analysis file and the user name of the upload file server. , passwords and compressed passwords, etc., and finally set to open the user behavior collection function;
  • the packet filter 211 of the home gateway 21 and the network side filters the received and sent packets, sends the filtered packets to the feature analysis library 212 for information extraction, obtains the required information, and saves the obtained information.
  • the information uploading module 214 compresses and encrypts the information, and periodically uploads it to the information collection server 23, and the statistical analysis server 22 periodically reads the information from the information collection server 23, and analyzes and counts the information. , get user behavior information.
  • FIG. 3 is a schematic flowchart of a method for analyzing user network behavior through a home gateway according to an embodiment of the present invention. As shown in FIG. 3, the method includes the following steps: Step 301: The configuration processing module of the ITMS server sets a collection of user behavior and a collection of user behaviors;
  • the set policy for setting user behavior includes: setting whether to open the user behavior collection function; setting a period for uploading the user behavior analysis collection file; and setting a user name, a password, and a compression password for uploading the file server;
  • the home gateway starts to filter, analyze, and collect the sent and received packets
  • the home gateway uploads the collected user behavior information to the information collection server according to the period;
  • the home gateway compresses the encrypted user behavior information according to the compressed password, and uploads the information to the information collection server according to the user name and password of the information collection server.
  • the set content of setting the user behavior includes: setting a website name and an application name to be filtered by the message filter, recording a keyword name and an access time input by the search engine, and the like.
  • Steps 302 to 304 The packet filter in the home gateway filters the received and sent packets according to the set contents, sends the filtered packets to the feature analysis database for processing, and saves the processed information to the Temporary storage area; the website visited by the user, the keyword entered in the search engine, and the application used are fuzzy matching, and the matching information and usage time are extracted;
  • the feature analysis library records the time when the message is generated, and records the MAC address of the network device to which the message belongs to distinguish different users.
  • Steps 305 ⁇ 306 The home gateway compresses and encrypts the information to be uploaded, and uploads the information to the information collection server;
  • the home gateway compresses and encrypts the user behavior information to be uploaded according to the compressed password, and
  • the user name and password of the information collection server are uploaded to the information collection server; wherein, the home gateway uploads the information to the information collection server through the CPE WAN management protocol (TR069) management channel; meanwhile, the temporary storage area deletes the uploaded information. .
  • Step 307 The statistical analysis server periodically extracts information from the information collection server, analyzes and counts the information, and obtains user behavior information.
  • the packet sent and received by the user side and the network side of the home gateway is filtered, and the information obtained by the filtering is extracted, and the required information is obtained and saved.
  • the statistical analysis server periodically reads the information. And analyzing and counting the read information to obtain user behavior information. Therefore, the user behavior information can be collected through the home gateway, and the website operator does not need to set up a separate device to collect data information, thereby saving a lot of cost; at the same time, the feature analysis library can be updated at any time, thereby reducing the risk and cost of operation and maintenance.

Landscapes

  • Engineering & Computer Science (AREA)
  • Computer Networks & Wireless Communication (AREA)
  • Signal Processing (AREA)
  • Computer Hardware Design (AREA)
  • General Engineering & Computer Science (AREA)
  • Data Exchanges In Wide-Area Networks (AREA)
  • Computer And Data Communications (AREA)

Abstract

A method for analyzing the user network behavior through the home gateway is disclosed, the method comprising: filtering the sending and receiving packet of the user-side and the network side of the home gateway, and acquiring the packet which is required; extracting the information from the filtered packet, getting the information which is needed and saving it; periodically reading the information by the statistical and analysis server, analyzing the read information and doing the statistic, and then obtaining the information on user behavior. A system for analyzing the user network behavior through the home gateway is also disclosed in the present invention, the use of the method and system of the present invention can implement the information collection of the user behavior by the home gateway, so website operators do not have to set up a separate equipment for collecting data information, and it can save a lot of costs.

Description

一种通过家庭网关分析用户网络行为的方法和系统 技术领域  Method and system for analyzing user network behavior through home gateway
本发明涉及互联网中的网络行为分析技术, 具体涉及一种通过家庭网 关分析用户网络行为的方法和系统。 背景技术  The present invention relates to network behavior analysis techniques in the Internet, and in particular to a method and system for analyzing user network behavior through a home gateway. Background technique
近年来, 随着网络技术的发展, 人们对网站的访问量越来越大、 对即 时聊天工具、 游戏等应用程序的使用也越来越频繁。 通过对用户访问网站 的信息进行分析, 可以发现用户访问网站的规律, 并将这些规律与网络营 销策略等相结合, 从而发现目前网络营销活动中可能存在的问题, 并为进 一步修正或重新制定网络营销策略提供依据, 满足网站的用户需求, 提升 网站信任度, 增加网站运营商的收入。 例如: 通过对不同游戏用户的行为 进行追踪, 并在不同类型的游戏用户群体间作对比, 可以优化游戏的用户 体验, 增加用户的兴趣度, 针对不同的游戏用户群体推出套餐等活动, 能 增加应用程序开发者的运营收入。 当然, 通过对用户的其他方面的行为分 析, 也可以增加相关运营商的收入。  In recent years, with the development of network technology, people have become more and more visited by websites, and applications such as instant chat tools and games have become more and more frequent. By analyzing the information of users visiting the website, we can discover the rules of the user's access to the website, and combine these rules with the network marketing strategy to discover possible problems in the current network marketing activities, and to further correct or re-establish the network. The marketing strategy provides the basis for meeting the user needs of the website, increasing the trust of the website and increasing the revenue of the website operator. For example: By tracking the behavior of different game users and comparing between different types of game users, you can optimize the user experience of the game, increase the user's interest, launch packages and other activities for different game user groups, and increase the application. Program developer's operating income. Of course, by analyzing the behavior of other aspects of the user, it is also possible to increase the revenue of the relevant operator.
如何对这些大量的数据信息进行收集、 统计、 分析, 并从中发现用户 的上网规律, 以便有针对性的向用户发布各类信息等增加营销收入的方法, 成为众多运营商和网站等非常关心的问题。  How to collect, count, and analyze these large amounts of data information, and discover the rules of the user's Internet access, so as to selectively release various types of information to users, and increase the marketing revenue, and become a concern of many operators and websites. problem.
在用户行为的釆集方面, 传统的行为分析方案大都是将网站服务器或 游戏服务器等作为釆集点釆集数据, 对访问本网站服务器或本游戏服务器 的用户行为进行分析。 但是, 这种方案需要花费大量的资金在服务器处架 设单独的设备, 并需要设置单独的统计分析服务器, 在运行维护方面也需 要消耗大量的成本。 发明内容 In terms of user behavior, traditional behavior analysis solutions mostly use web servers or game servers as collection points to analyze the user behavior of accessing the website server or the game server. However, such a solution requires a large amount of money to set up a separate device at the server, and requires a separate statistical analysis server, which also consumes a large amount of cost in operation and maintenance. Summary of the invention
有鉴于此, 本发明实施例的主要目的在于提供一种通过家庭网关分析 用户网络行为的方法和系统, 利用家庭网关釆集需要的用户行为信息, 使 每个网站运营商不必架设单独的设备, 节省了大量的成本。  In view of this, the main purpose of the embodiments of the present invention is to provide a method and system for analyzing user network behavior through a home gateway, and using the home gateway to collect required user behavior information, so that each website operator does not need to set up a separate device. Save a lot of cost.
为达到上述目的, 本发明的技术方案是这样实现的:  In order to achieve the above object, the technical solution of the present invention is achieved as follows:
本发明实施例提供了一种通过家庭网关分析用户网络行为的方法, 该 方法包括:  The embodiment of the invention provides a method for analyzing user network behavior through a home gateway, and the method includes:
对家庭网关的用户侧和网络侧收发的报文进行过滤, 获取需要的报文; 对过滤得到的报文进行信息提取, 获得需要的信息并保存;  Filtering the packets sent and received by the user side and the network side of the home gateway to obtain the required packets; extracting the information from the filtered packets to obtain the required information and saving the information;
统计分析服务器周期性地读取信息, 并对读取的信息进行分析统计, 得到用户行为信息。  The statistical analysis server periodically reads the information, analyzes and counts the read information, and obtains user behavior information.
上述方案中, 所述统计分析服务器周期性地读取信息之前, 该方法还 包括:  In the above solution, before the statistical analysis server periodically reads the information, the method further includes:
将已保存的信息进行加密压缩, 并周期性地上传至信息釆集服务器; 相应的, 所述统计分析服务器周期性地读取信息为: 统计分析服务器 周期性地从信息釆集服务器读取信息。  The saved information is encrypted and compressed, and periodically uploaded to the information collection server. Correspondingly, the statistical analysis server periodically reads the information as: The statistical analysis server periodically reads information from the information collection server. .
上述方案中, 对过滤得到的报文进行信息提取获得需要的信息同时,, 该方法还包括: 记录报文所属网络设备的 MAC地址, 及记录报文产生的时 间。  In the foregoing solution, the information obtained by filtering the information is extracted to obtain the required information, and the method further includes: recording the MAC address of the network device to which the message belongs, and recording the time when the message is generated.
上述方案中,所述对收发 ^艮文进行过滤之前,该方法还包括:通过 ITMS 服务器远程设置用户行为的釆集策略和用户行为的釆集内容。  In the foregoing solution, before the filtering is performed on the sending and receiving, the method further includes: setting, by the ITMS server, a collection policy of the user behavior and a collection of the user behavior.
上述方案中, 所述设置用户行为的釆集策略包括: 设置是否打开用户 行为釆集功能; 设置上传用户行为分析釆集文件的周期; 以及设置上传文 件服务器的用户名、 密码和压缩密码。  In the above solution, the setting policy for setting user behavior includes: setting whether to open the user behavior collection function; setting a period for uploading the user behavior analysis collection file; and setting a user name, a password, and a compression password for uploading the file server.
上述方案中, 所述设置用户行为的釆集内容包括: 设置报文过滤器需 过滤的网站名称和应用程序名称、 记录搜索引擎输入的关键字名称及访问 时间。 In the above solution, the setting of the set user behavior includes: setting a message filter Filtered site name and app name, record keyword name entered by search engine, and access time.
本发明实施例还提供了一种通过家庭网关分析用户网络行为的系统, 该系统包括: 家庭网关和统计分析服务器; 其中:  The embodiment of the invention further provides a system for analyzing user network behavior through a home gateway, the system comprising: a home gateway and a statistical analysis server; wherein:
所述家庭网关, 配置为对自身用户侧和网络侧收发的报文进行过滤, 并对过滤得到的报文进行信息提取, 获得需要的信息并保存;  The home gateway is configured to filter the packets sent and received by the user side and the network side, and extract information from the filtered packets to obtain the required information and save the information.
所述统计分析服务器, 配置为周期性地读取信息, 并对所读取的信息 进行分析统计, 得到用户行为信息。  The statistical analysis server is configured to periodically read information, analyze and collect the read information, and obtain user behavior information.
上述方案中, 所述家庭网关包括报文过滤器、 特征分析库和临时存储 区; 其中:  In the above solution, the home gateway includes a message filter, a feature analysis library, and a temporary storage area; wherein:
所述报文过滤器, 配置为对家庭网关用户侧和网络侧收发的报文进行 过滤, 获取需要的报文;  The packet filter is configured to filter the packets sent and received by the user side and the network side of the home gateway to obtain the required packets.
所述特征分析库, 配置为对过滤出的报文进行信息提取, 获得需要的 信息;  The feature analysis library is configured to extract information from the filtered message to obtain required information;
所述临时存储区, 配置为存储提取出的需要的信息。  The temporary storage area is configured to store the extracted required information.
上述方案中, 所述系统还包括信息釆集服务器, 配置为周期性地读取 已存储的信息;  In the above solution, the system further includes an information gathering server configured to periodically read the stored information;
相应的, 所述家庭网关还包括信息上传模块, 配置为将临时存储区存 储的信息进行加密压缩, 并周期性地上传至信息釆集服务器。  Correspondingly, the home gateway further includes an information uploading module configured to encrypt and compress the information stored in the temporary storage area, and periodically upload the information to the information collection server.
上述方案中, 所述特征分析库, 还配置为记录报文所属网络设备的 In the above solution, the feature analysis library is further configured to record a network device to which the message belongs.
MAC地址 , 及记录 ^艮文产生的时间。 MAC address, and record the time when the message was generated.
上述方案中,所述系统包括 ITMS服务器,配置为设置用户行为的釆集 策略和用户行为的釆集内容。  In the above solution, the system includes an ITMS server configured to set a collection of user behavior and a collection of user behavior.
本发明实施例提供的通过家庭网关分析用户网络行为的方法和系统, 在家庭网关的用户侧和网络侧分别设置报文过滤器, 对收发的报文进行过 滤; 将过滤出的报文送至特征分析库, 获得需要的信息并保存; 统计分析 服务器周期性地读取信息, 并对读取的信息进行分析和统计, 得到用户行 为信息。 可见, 本发明实施例在家庭网关中设置报文过滤器, 如此便可以 实现通过家庭网关釆集用户行为信息, 使网站运营商不必再架设单独的设 备釆集数据信息, 节省了大量成本; 同时, 本发明釆用相对独立的特征分 析库, 当需要增加分析的用户行为内容时, 可以通过升级特征分析库的方 式随时更新特征分析库, 对网站运营商来说, 也减少了运行维护的风险和 成本。 附图说明 The method and system for analyzing the behavior of the user network through the home gateway provided by the embodiment of the present invention, respectively, setting a packet filter on the user side and the network side of the home gateway, and performing the packet transmission and reception Filtering; sending the filtered message to the feature analysis library to obtain the required information and saving; the statistical analysis server periodically reads the information, and analyzes and counts the read information to obtain user behavior information. It can be seen that the embodiment of the present invention sets a message filter in the home gateway, so that the user behavior information can be collected through the home gateway, so that the website operator does not need to set up a separate device to collect data information, thereby saving a lot of cost; The invention uses a relatively independent feature analysis library. When it is required to increase the user behavior content of the analysis, the feature analysis library can be updated at any time by upgrading the feature analysis library, which also reduces the risk of operation and maintenance for the website operator. And cost. DRAWINGS
图 1 为本发明实施例通过家庭网关分析用户网络行为的方法实现流程 示意图;  1 is a schematic flowchart of a method for analyzing a user network behavior by using a home gateway according to an embodiment of the present invention;
图 2为本发明实施例通过家庭网关分析用户网络行为的系统组成架构 示意图;  2 is a schematic diagram of a system composition framework for analyzing user network behavior through a home gateway according to an embodiment of the present invention;
图 3 为本发明实施例提供的通过家庭网关分析用户网络行为的方法实 现流程示意图。 具体实施方式  FIG. 3 is a schematic flowchart of a method for analyzing user network behavior through a home gateway according to an embodiment of the present invention. detailed description
下面结合附图及具体实施例对本发明再作进一步详细的说明。  The present invention will be further described in detail below with reference to the accompanying drawings and specific embodiments.
图 1 为本发明实施例通过家庭网关分析用户行为的方法实现流程示意 图, 如图 1所示, 包括以下步骤:  FIG. 1 is a schematic flowchart of a method for analyzing user behavior by using a home gateway according to an embodiment of the present invention. As shown in FIG. 1, the method includes the following steps:
步骤 101 : 对家庭网关的用户侧和网络侧收发的报文进行过滤; 这里, 对收发报文进行过滤之前, 该方法还可以包括: 通过宽带接入 终端管理系统 ( Integrated Terminal Management System, ITMS )服务器远 程设置用户行为的釆集策略和用户行为的釆集内容;  Step 101: Filtering the packets sent and received by the user side and the network side of the home gateway. Before filtering the received and sent packets, the method may further include:: an integrated terminal management system (ITMS) The server remotely sets the collection of user behaviors and user behaviors;
其中, 所述设置用户行为的釆集策略包括: 设置是否打开用户行为釆 集功能; 设置上传用户行为分析釆集文件的周期; 以及设置上传文件服务 器的用户名、 密码和压缩密码; The set policy for setting user behavior includes: setting whether to open user behavior釆 Set function; set the period for uploading user behavior analysis files; and set the user name, password and compression password of the upload file server;
其中, 所述设置用户行为的釆集内容包括: 设置报文过滤器需过滤的 网站名称和应用程序名称、 记录搜索引擎输入的关键字名称及访问时间等。  The set content of the set user behavior includes: setting a website name and an application name to be filtered by the message filter, recording a keyword name and an access time input by the search engine, and the like.
这里, 在家庭网关的用户侧和网络侧各设置一个报文过滤器, 以对收 发的 4艮文进行过滤, 同时可避免因网络地址转换(Net Address Transfer, NAT ) 而导致部分报文遗漏; 其中, 报文过滤可通过正则表达式进行模糊 匹配, 将匹配上的信息和产生的时间过滤出来。  Here, a message filter is set on the user side and the network side of the home gateway to filter the received and received messages, and at the same time, part of the message is omitted due to network address translation (NAT); The message filtering can perform fuzzy matching by using a regular expression, and filtering the information on the matching and the generated time.
步骤 102: 将过滤得到的报文进行信息提取, 获得需要的信息并保存; 这里, 可通过在家庭网关中设置的特征分析库对所述过滤得到的报文 进行信息提取; 所述的保存是保存在临时存储区中。  Step 102: Perform information extraction on the filtered packet, and obtain the required information and save the information. Here, the information obtained by the filtering may be extracted by using a feature analysis library set in the home gateway; Save in temporary storage.
所述特征分析库中包括若干功能单元, 用于分析提取不同类型的报文 数据作为提取的所需信息, 下面将举例说明:  The feature analysis library includes a plurality of functional units for analyzing and extracting different types of message data as required information for extraction, and an example is as follows:
例 1 , 若报文是有关用户的上网行为, 则提取用户使用的网址信息、 上 网路径及端口号等数据信息;  Example 1 : If the message is related to the user's online behavior, extract the data information such as the website information, the network path, and the port number used by the user;
例 2, 若报文是有关用户使用的应用程序, 则提取用户登录退出流程、 使用时间及使用的端口号等信息, 不同的应用程序所关注的信息也不同, 如在线观看视频的应用程序, 可提取观看了哪些视频等数据;  Example 2: If the message is an application used by the user, information such as the user login exit process, the usage time, and the port number used are extracted, and different applications are different in information, such as an application for watching the video online. Can extract which videos such as videos have been viewed;
例 3 , 若报文是有关用户登录搜索引擎、 输入关键字的上网行为, 则可 以通过正则表达式模糊匹配输入的内容, 并提取输入的内容和时间等等。  Example 3: If the message is related to the user logging in to the search engine and inputting the keyword's online behavior, the regular expression can be used to fuzzyly match the input content, and extract the input content and time, and the like.
由于用户的网络行为很多, 此处不再——列举。 需要增加分析的网络 行为内容时, 可通过单独升级特征分析库的方式实现, 能减少运行维护的 成本。  Since the user's network behavior is many, here is no longer - enumerated. When you need to increase the network behavior of the analysis, you can upgrade the feature analysis library separately, which can reduce the cost of operation and maintenance.
这里, 所述特征分析库在提取需要的报文信息时, 记录报文产生的时 间, 同时记录报文所属网络设备的介质访问控制 (Media Access Control, MAC )地址, 以区分不同的用户。 Here, the feature analysis library records the time when the message is generated when extracting the required message information, and records the media access control of the network device to which the message belongs (Media Access Control, MAC) address to distinguish between different users.
步骤 103: 统计分析服务器周期性地读取信息, 并对所读取的信息进行 分析统计, 得到用户行为信息;  Step 103: The statistical analysis server periodically reads the information, analyzes and statistics the read information, and obtains user behavior information.
这里, 所述统计分析服务器周期性地读取信息之前, 该方法还包括: 将临时存储区存储的信息加密压缩, 周期性地上传至信息釆集服务器 中, 统计分析服务器周期性地从信息釆集服务器中读取信息; 其中, 所述 临时存储区会删除已经上传的信息。  Here, before the statistical analysis server periodically reads the information, the method further includes: encrypting and compressing the information stored in the temporary storage area, and periodically uploading the information to the information collection server, and the statistical analysis server periodically extracts the information. The information is read in the set server; wherein the temporary storage area deletes the already uploaded information.
为实现上述方法, 本发明实施例还提供了一种通过家庭网关分析用户 网络行为的系统, 如图 2所示, 包括家庭网关 21和统计分析服务器 22; 其 中:  To implement the above method, the embodiment of the present invention further provides a system for analyzing user network behavior through a home gateway. As shown in FIG. 2, the home gateway 21 and the statistical analysis server 22 are included;
所述家庭网关 21 , 用于对自身用户侧和网络侧收发的报文进行过滤, 并对过滤出的报文进行信息提取, 获得需要的信息并保存;  The home gateway 21 is configured to filter the packets sent and received by the user side and the network side, and extract the information of the filtered packets to obtain the required information and save the information.
所述统计分析服务器 22 , 用于周期性地读取信息, 并对所读取的信息 进行分析统计, 得到用户行为信息。  The statistical analysis server 22 is configured to periodically read information, analyze and collect the read information, and obtain user behavior information.
相应的, 所述系统还包括: 信息釆集服务器 23和 ITMS服务器 24; 其 中:  Correspondingly, the system further comprises: an information collection server 23 and an ITMS server 24; wherein:
所述信息釆集服务器 23 , 用于周期性地读取已存储的信息;  The information collection server 23 is configured to periodically read the stored information;
所述 ITMS服务器 24, 用于设置用户行为的釆集策略和用户行为的釆 集内容。  The ITMS server 24 is configured to set a collection of user behavior and a collection of user behavior.
这里, 所述 ITMS服务器 24包括: 配置处理模块, 可通过远程设置家 庭网关中的用户行为的釆集策略和用户行为的釆集内容;  Here, the ITMS server 24 includes: a configuration processing module, which can remotely set a collection policy of user behavior in the home gateway and a collection of user behavior;
其中, 所述设置用户行为的釆集策略包括: 设置是否打开用户行为釆 集功能; 设置上传用户行为分析釆集文件的周期; 设置上传文件服务器的 用户名、 密码和压缩密码等;  The setting policy for setting the user behavior includes: setting whether to open the user behavior collection function; setting a period for uploading the user behavior analysis collection file; setting a user name, a password, and a compression password of the upload file server;
其中, 所述设置用户行为的釆集内容包括: 设置报文过滤器需过滤的 网站名称、 应用程序名称、 记录搜索引擎输入的关键字名称及访问时间等 等。 The set content of the setting user behavior includes: setting a packet filter to be filtered Site name, application name, record keyword name entered by the search engine, access time, and more.
进一步的, 家庭网关 21 包括: 报文过滤器 211、 特征分析库 212、 临 时存储区 213和信息上传模块 214; 其中:  Further, the home gateway 21 includes: a message filter 211, a feature analysis library 212, a temporary storage area 213, and an information uploading module 214; wherein:
所述报文过滤器 211 ,用于对家庭网关用户侧和网络侧收发的报文进行 过滤, 获取需要的报文;  The packet filter 211 is configured to filter the packets sent and received by the user side and the network side of the home gateway to obtain the required packets.
所述特征分析库 212, 用于对过滤出的报文进行信息提取, 获得需要的 信息;  The feature analysis library 212 is configured to perform information extraction on the filtered message to obtain required information.
这里, 所述特征分析库 212根据报文的类型, 提取需要的信息, 同时 还记录报文所属网络设备的 MAC地址, 以及记录报文产生的时间。  Here, the feature analysis library 212 extracts the required information according to the type of the message, and also records the MAC address of the network device to which the message belongs, and records the time when the message is generated.
所述临时存储区 213 , 用于存储提取出的需要的信息。  The temporary storage area 213 is configured to store the extracted required information.
所述信息上传模块 214, 用于将临时存储区 213存储的信息加密压缩, 周期性地上传至信息釆集服务器 23。  The information uploading module 214 is configured to encrypt and compress the information stored in the temporary storage area 213, and periodically upload the information to the information collecting server 23.
具体的, ITMS服务器 24预先设置家庭网关 21过滤的网站名称、 搜索 引擎名称和应用程序名称等需要釆集的用户行为内容; 还设置上传用户行 为分析釆集文件的周期以及上传文件服务器的用户名、 密码和压缩密码等 信息, 最后设置打开用户行为釆集功能;  Specifically, the ITMS server 24 pre-sets the user behavior content that needs to be collected, such as the website name, the search engine name, and the application name filtered by the home gateway 21; and also sets the period for uploading the user behavior analysis file and the user name of the upload file server. , passwords and compressed passwords, etc., and finally set to open the user behavior collection function;
家庭网关 21用户侧和网络侧设置的报文过滤器 211对收发的报文进行 过滤, 将过滤出的报文送至特征分析库 212进行信息提取, 获得需要的信 息, 并将获得的信息保存至临时存储区 213; 信息上传模块 214将信息压缩 加密后, 周期性地上传给信息釆集服务器 23 , 统计分析服务器 22周期性地 从信息釆集服务器 23读取信息, 对信息进行分析和统计, 得到用户行为信 息。  The packet filter 211 of the home gateway 21 and the network side filters the received and sent packets, sends the filtered packets to the feature analysis library 212 for information extraction, obtains the required information, and saves the obtained information. To the temporary storage area 213; the information uploading module 214 compresses and encrypts the information, and periodically uploads it to the information collection server 23, and the statistical analysis server 22 periodically reads the information from the information collection server 23, and analyzes and counts the information. , get user behavior information.
图 3 为本发明实施例提供的通过家庭网关分析用户网络行为的方法实 现流程示意图, 如图 3所示, 包括以下步骤: 步骤 301 : ITMS服务器的配置处理模块设置用户行为的釆集策略和用 户行为的釆集内容; FIG. 3 is a schematic flowchart of a method for analyzing user network behavior through a home gateway according to an embodiment of the present invention. As shown in FIG. 3, the method includes the following steps: Step 301: The configuration processing module of the ITMS server sets a collection of user behavior and a collection of user behaviors;
这里, 所述设置用户行为的釆集策略包括: 设置是否打开用户行为釆 集功能; 设置上传用户行为分析釆集文件的周期; 以及设置上传文件服务 器的用户名、 密码和压缩密码;  Here, the set policy for setting user behavior includes: setting whether to open the user behavior collection function; setting a period for uploading the user behavior analysis collection file; and setting a user name, a password, and a compression password for uploading the file server;
对于所述设置是否打开用户行为釆集功能, 只有打开此功能后, 家庭 网关才开始对收发的报文进行过滤、 分析和釆集;  For the setting, whether the user behavior collection function is enabled, only after the function is turned on, the home gateway starts to filter, analyze, and collect the sent and received packets;
对于所述设置上传用户行为分析釆集文件的周期, 家庭网关根据此周 期向信息釆集服务器上传釆集的用户行为信息;  For the period in which the setting uploads the user behavior analysis file, the home gateway uploads the collected user behavior information to the information collection server according to the period;
对于所述上传文件服务器的用户名、 密码和压缩密码, 家庭网关会根 据压缩密码来压缩加密釆集到的用户行为信息, 并根据信息釆集服务器的 用户名和密码上传至信息釆集服务器。  For the user name, password and compressed password of the upload file server, the home gateway compresses the encrypted user behavior information according to the compressed password, and uploads the information to the information collection server according to the user name and password of the information collection server.
这里, 所述设置用户行为的釆集内容包括: 设置报文过滤器需过滤的 网站名称和应用程序名称、 记录搜索引擎输入的关键字名称及访问时间等。  Here, the set content of setting the user behavior includes: setting a website name and an application name to be filtered by the message filter, recording a keyword name and an access time input by the search engine, and the like.
步骤 302~304:家庭网关中的报文过滤器根据设置的釆集内容对收发的 报文进行过滤, 将过滤出的报文送至特征分析库中进行处理, 并将处理后 的信息保存至临时存储区; 户访问的网站、 在搜索引擎中输入的关键字和使用的应用程序模糊匹配, 将匹配的信息和使用时间提取出来;  Steps 302 to 304: The packet filter in the home gateway filters the received and sent packets according to the set contents, sends the filtered packets to the feature analysis database for processing, and saves the processed information to the Temporary storage area; the website visited by the user, the keyword entered in the search engine, and the application used are fuzzy matching, and the matching information and usage time are extracted;
其中, 所述特征分析库在提取需要的报文信息时, 记录报文产生的时 间, 同时记录报文所属网络设备的 MAC地址, 以区分不同的用户。  The feature analysis library records the time when the message is generated, and records the MAC address of the network device to which the message belongs to distinguish different users.
步骤 305~306: 家庭网关对要上传的信息进行压缩加密,将信息上传到 信息釆集服务器;  Steps 305~306: The home gateway compresses and encrypts the information to be uploaded, and uploads the information to the information collection server;
这里, 家庭网关根据压缩密码来压缩加密要上传的用户行为信息, 并 根据信息釆集服务器的用户名和密码上传至信息釆集服务器; 其中, 家庭 网关通过 CPE 广域网管理协议(TR069 )管理通道将信息上传至信息釆集 服务器; 同时, 临时存储区会删除已经上传的信息。 Here, the home gateway compresses and encrypts the user behavior information to be uploaded according to the compressed password, and The user name and password of the information collection server are uploaded to the information collection server; wherein, the home gateway uploads the information to the information collection server through the CPE WAN management protocol (TR069) management channel; meanwhile, the temporary storage area deletes the uploaded information. .
步骤 307: 统计分析服务器周期性地从信息釆集服务器提取信息, 并对 信息进行分析和统计, 得到用户行为信息。  Step 307: The statistical analysis server periodically extracts information from the information collection server, analyzes and counts the information, and obtains user behavior information.
以上所述, 仅为本发明的较佳实施例而已, 并非用于限定本发明的保 护范围。 凡在本发明的精神和范围之内所作的任何修改、 等同替换和改进 等, 均包含在本发明的保护范围之内。 工业实用性  The above is only the preferred embodiment of the present invention and is not intended to limit the scope of the present invention. Any modifications, equivalent substitutions and improvements made within the spirit and scope of the invention are intended to be included within the scope of the invention. Industrial applicability
本发明实施例对家庭网关的用户侧和网络侧收发的报文进行过滤, 并 对过滤得到的报文进行信息提取, 获得需要的信息并保存; 统计分析服务 器周期性地读取所述信息, 并对所述读取的信息进行分析统计, 得到用户 行为信息。 因此, 可实现通过家庭网关釆集用户行为信息, 网站运营商不 必再架设单独的设备釆集数据信息, 节省了大量成本; 同时, 可以随时更 新特征分析库, 减少了运行维护的风险和成本。  In the embodiment of the present invention, the packet sent and received by the user side and the network side of the home gateway is filtered, and the information obtained by the filtering is extracted, and the required information is obtained and saved. The statistical analysis server periodically reads the information. And analyzing and counting the read information to obtain user behavior information. Therefore, the user behavior information can be collected through the home gateway, and the website operator does not need to set up a separate device to collect data information, thereby saving a lot of cost; at the same time, the feature analysis library can be updated at any time, thereby reducing the risk and cost of operation and maintenance.

Claims

权利要求书 claims
1、 一种通过家庭网关分析用户网络行为的方法, 该方法包括: 对家庭网关的用户侧和网络侧收发的报文进行过滤, 获取需要的报文; 对过滤得到的报文进行信息提取, 获得需要的信息并保存; 1. A method for analyzing user network behavior through a home gateway. The method includes: filtering messages sent and received by the user side and network side of the home gateway to obtain the required messages; extracting information from the filtered messages, Obtain the required information and save it;
统计分析服务器周期性地读取所述信息, 并对所述读取的信息进行分 析统计, 得到用户行为信息。 The statistical analysis server periodically reads the information and performs analysis and statistics on the read information to obtain user behavior information.
2、 根据权利要求 1所述的方法, 其中, 所述统计分析服务器周期性地 读取所述信息之前, 该方法还包括: 2. The method according to claim 1, wherein before the statistical analysis server periodically reads the information, the method further includes:
将已保存的信息进行加密压缩, 并周期性地上传至信息釆集服务器; 相应的, 所述统计分析服务器周期性地读取所述信息为: 统计分析服 务器周期性地从所述信息釆集服务器读取所述信息。 The saved information is encrypted and compressed, and periodically uploaded to the information collection server; accordingly, the statistical analysis server periodically reads the information as: The statistical analysis server periodically collects the information from The server reads the information.
3、 根据权利要求 1所述的方法, 其中, 所述对过滤得到的报文进行信 息提取获得需要的信息同时, 该方法还包括: 3. The method according to claim 1, wherein while performing information extraction on the filtered messages to obtain required information, the method also includes:
记录所述报文所属网络设备的 MAC 地址, 并记录所述报文产生的时 间。 Record the MAC address of the network device to which the message belongs, and record the time when the message was generated.
4、 根据权利要求 1所述的方法, 其中, 所述对收发的报文进行过滤之 前, 该方法还包括: 4. The method according to claim 1, wherein before filtering the sent and received messages, the method further includes:
通过 ITMS 服务器远程设置用户行为的釆集策略和用户行为的釆集内 容。 Remotely set the collection policy of user behavior and the collection content of user behavior through the ITMS server.
5、根据权利要求 4所述的方法, 其中, 所述设置用户行为的釆集策略, 包括: 设置是否打开用户行为釆集功能、 设置上传用户行为分析釆集文件 的周期, 以及, 设置上传文件服务器的用户名、 密码和压缩密码。 5. The method according to claim 4, wherein said setting the collection strategy of user behavior includes: setting whether to turn on the user behavior collection function, setting the period for uploading the user behavior analysis collection file, and setting the upload file Server username, password, and compression password.
6、根据权利要求 4所述的方法, 其中, 所述设置用户行为的釆集内容, 包括: 设置报文过滤器需过滤的网站名称和应用程序名称, 以及记录搜索 引擎输入的关键字名称及访问时间。 6. The method according to claim 4, wherein said setting the collection content of user behavior includes: setting the website name and application name to be filtered by the message filter, and recording the keyword name input by the search engine and interview time.
7、 一种通过家庭网关分析用户网络行为的系统, 该系统包括: 家庭网 关和统计分析服务器; 其中: 7. A system for analyzing user network behavior through a home gateway. The system includes: a home gateway and a statistical analysis server; among which:
所述家庭网关, 配置为对自身用户侧和网络侧收发的报文进行过滤, 并对过滤得到的报文进行信息提取, 获得需要的信息并保存; The home gateway is configured to filter the messages sent and received by its own user side and network side, extract information from the filtered messages, obtain the required information and save it;
所述统计分析服务器, 配置为周期性地读取所述信息, 并对所读取的 信息进行分析统计, 得到用户行为信息。 The statistical analysis server is configured to periodically read the information, and perform analysis and statistics on the read information to obtain user behavior information.
8、根据权利要求 7所述的系统, 其中, 所述家庭网关包括报文过滤器、 特征分析库和临时存储区; 其中: 8. The system according to claim 7, wherein the home gateway includes a message filter, a feature analysis library and a temporary storage area; wherein:
所述报文过滤器, 配置为对家庭网关用户侧和网络侧收发的报文进行 过滤, 获取需要的报文; The message filter is configured to filter messages sent and received by the user side and network side of the home gateway to obtain required messages;
所述特征分析库, 配置为对过滤得到的报文进行信息提取, 获得需要 的信息; The feature analysis library is configured to extract information from filtered messages to obtain required information;
所述临时存储区, 配置为保存提取出的需要的信息。 The temporary storage area is configured to save the extracted required information.
9、 根据权利要求 7所述的系统, 其中, 所述系统还包括: 信息釆集服 务器, 配置为周期性地读取已存储的信息; 9. The system according to claim 7, wherein the system further includes: an information collection server configured to periodically read the stored information;
相应的, 所述家庭网关还包括: 信息上传模块, 配置为将临时存储区 存储的信息进行加密压缩, 并周期性地上传至信息釆集服务器。 Correspondingly, the home gateway also includes: an information upload module configured to encrypt and compress the information stored in the temporary storage area, and periodically upload it to the information collection server.
10、 根据权利要求 8所述的系统, 其中, 所述特征分析库, 还配置为 记录所述报文所属网络设备的 MAC地址, 并记录所述报文产生的时间。 10. The system according to claim 8, wherein the feature analysis library is further configured to record the MAC address of the network device to which the message belongs, and record the time when the message is generated.
11、 根据权利要求 7所述的系统, 其中, 所述系统还包括: ITMS服务 器, 配置为设置用户行为的釆集策略和用户行为的釆集内容。 11. The system according to claim 7, wherein the system further includes: an ITMS server configured to set the collection policy of user behavior and the collection content of user behavior.
PCT/CN2013/079169 2012-08-13 2013-07-10 A method and system for analyzing the user network behavior through the home gateway WO2014026519A1 (en)

Applications Claiming Priority (2)

Application Number Priority Date Filing Date Title
CN201210286510.0 2012-08-13
CN201210286510.0A CN103595692B (en) 2012-08-13 2012-08-13 A kind of method and system that user network behavior is analyzed by home gateway

Publications (1)

Publication Number Publication Date
WO2014026519A1 true WO2014026519A1 (en) 2014-02-20

Family

ID=50085675

Family Applications (1)

Application Number Title Priority Date Filing Date
PCT/CN2013/079169 WO2014026519A1 (en) 2012-08-13 2013-07-10 A method and system for analyzing the user network behavior through the home gateway

Country Status (2)

Country Link
CN (1) CN103595692B (en)
WO (1) WO2014026519A1 (en)

Families Citing this family (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN105591765A (en) * 2014-10-20 2016-05-18 中国电信股份有限公司 Flow positioning method, device and system
CN104468411A (en) * 2014-11-28 2015-03-25 东莞宇龙通信科技有限公司 Bandwidth allocation method and device and router
CN104618491B (en) * 2015-02-11 2017-11-21 四川银海天怡信息技术有限公司 A kind of proxy server and data forwarding method
CN105187446B (en) * 2015-09-29 2018-03-20 烽火通信科技股份有限公司 A kind of home gateway detection and the system and method for shielding user's business of networking

Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101146047A (en) * 2007-11-06 2008-03-19 中国电信股份有限公司 A method, system and gateway for controlling quantity of network access terminal under routing mode
US20100138534A1 (en) * 2008-11-25 2010-06-03 Rishi Mutnuru Systems and methods for monitor an access gateway
CN102420784A (en) * 2011-10-13 2012-04-18 中国电力科学研究院 Home gateway, intelligent system and energy control method thereof
CN102571397A (en) * 2010-12-28 2012-07-11 中兴通讯股份有限公司 Device and method for business of personal area network

Family Cites Families (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101655868B (en) * 2009-09-03 2012-08-22 中国人民解放军信息工程大学 Network data mining method, network data transmitting method and equipment
CN101751458A (en) * 2009-12-31 2010-06-23 暨南大学 Network public sentiment monitoring system and method
CN102111453A (en) * 2011-03-04 2011-06-29 创博亚太科技(山东)有限公司 Method and system for extracting Internet user network behaviors
CN102364468A (en) * 2011-09-29 2012-02-29 北京亿赞普网络技术有限公司 User network behavior analysis method, device and system

Patent Citations (4)

* Cited by examiner, † Cited by third party
Publication number Priority date Publication date Assignee Title
CN101146047A (en) * 2007-11-06 2008-03-19 中国电信股份有限公司 A method, system and gateway for controlling quantity of network access terminal under routing mode
US20100138534A1 (en) * 2008-11-25 2010-06-03 Rishi Mutnuru Systems and methods for monitor an access gateway
CN102571397A (en) * 2010-12-28 2012-07-11 中兴通讯股份有限公司 Device and method for business of personal area network
CN102420784A (en) * 2011-10-13 2012-04-18 中国电力科学研究院 Home gateway, intelligent system and energy control method thereof

Also Published As

Publication number Publication date
CN103595692A (en) 2014-02-19
CN103595692B (en) 2018-01-02

Similar Documents

Publication Publication Date Title
EP3496338B1 (en) Method for identifying application information in network traffic, and apparatus
US8972612B2 (en) Collecting asymmetric data and proxy data on a communication network
CN101924757B (en) Method and system for reviewing Botnet
US8938534B2 (en) Automatic provisioning of new users of interest for capture on a communication network
CN105103496A (en) System and method for extracting and preserving metadata for analyzing network communications
US20060155866A1 (en) Method of data gathering of user network
CN109922073A (en) Network security monitoring device, method and system
KR20100095475A (en) Systems and processes of identifying p2p applications based on behavioral signatures
CN103888305A (en) Home gateway-based monitoring method and system
WO2014026519A1 (en) A method and system for analyzing the user network behavior through the home gateway
KR101503701B1 (en) Method and Apparatus for Protecting Information Based on Big Data
CN103124226A (en) Household broadband net-system play monitoring system and method
CN104639391A (en) Method for generating network flow record and corresponding flow detection equipment
CN102857388A (en) Cloud detection safety management auditing system
WO2014023212A1 (en) System and method for providing customized network service for home gateway user
CN109275045B (en) DFI-based mobile terminal encrypted video advertisement traffic identification method
CN113269531A (en) Cloud-end architecture-based multi-tenant internet access behavior audit control method and related equipment
Wang et al. Benchmark data for mobile app traffic research
CN105827522A (en) Gateway equipment for processing log files
Hasselquist et al. Lightweight fingerprint attack and encrypted traffic analysis on news articles
CN111030893A (en) Method and device for analyzing user behaviors in cloud communication application scene
CN111182069A (en) Communication method and device in cloud communication application scene
CN103546305A (en) Statistical method and system of network quality information
KR20110010244A (en) System for tracing user activity using operating system and method thereof
CN114338600A (en) Equipment fingerprint selection method and device, electronic equipment and medium

Legal Events

Date Code Title Description
121 Ep: the epo has been informed by wipo that ep was designated in this application

Ref document number: 13829692

Country of ref document: EP

Kind code of ref document: A1

NENP Non-entry into the national phase

Ref country code: DE

122 Ep: pct application non-entry in european phase

Ref document number: 13829692

Country of ref document: EP

Kind code of ref document: A1