Development of a system for monitoring network traffic with filtering elements at the L2

Konstantin V. Zakharov, Maksim A. Khodorchenko, Igor D. Karpov, Igor A. Ognev, Sergei A. Zyryanov
{"title":"Development of a system for monitoring network traffic with filtering elements at the L2","authors":"Konstantin V. Zakharov, Maksim A. Khodorchenko, Igor D. Karpov, Igor A. Ognev, Sergei A. Zyryanov","doi":"10.17212/2782-2230-2022-2-34-47","DOIUrl":null,"url":null,"abstract":"This article proposes a network traffic monitoring system with filtering elements at the data link layer (L2) of the OSI model. This article presents the general requirements and approaches to the construction of the proposed monitoring and filtering system. The developed device is built on the basis of SDN technology, which makes it possible to create a more flexible and multifunctional network device compared to traditional network devices. In the process of developing the device, standard methods and components available to the masses were used. Under the conditions of the tasks set, a schematic diagram of the developed device based on the TE0714 TRM model board and the SFP standard transceiver is presented. It is proposed to use the device for a monitoring system with filtering elements. Network traffic monitoring is proposed to be implemented based on the SNMP protocol to collect information from critical network nodes. It is proposed to implement network traffic filtering based on a \"white\" list of MAC addresses to limit the list of devices that have access to the system. The practical significance of this article lies in the description of the approach to the development of a fundamental device for monitoring public and personal networks with flexibly defined additional and basic functions. The proposed device, thanks to the use of SDN technology, provides individual customization for customer requests, which means the possibility of expanding functionality without purchasing new hardware and firmware. The proposed device, due to the use of SDN technology, provides individual customization for customer requests, which means the possibility of expanding the functionality without purchasing new hardware and firmware.","PeriodicalId":207311,"journal":{"name":"Digital Technology Security","volume":"16 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2022-06-30","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"Digital Technology Security","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.17212/2782-2230-2022-2-34-47","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

Abstract

This article proposes a network traffic monitoring system with filtering elements at the data link layer (L2) of the OSI model. This article presents the general requirements and approaches to the construction of the proposed monitoring and filtering system. The developed device is built on the basis of SDN technology, which makes it possible to create a more flexible and multifunctional network device compared to traditional network devices. In the process of developing the device, standard methods and components available to the masses were used. Under the conditions of the tasks set, a schematic diagram of the developed device based on the TE0714 TRM model board and the SFP standard transceiver is presented. It is proposed to use the device for a monitoring system with filtering elements. Network traffic monitoring is proposed to be implemented based on the SNMP protocol to collect information from critical network nodes. It is proposed to implement network traffic filtering based on a "white" list of MAC addresses to limit the list of devices that have access to the system. The practical significance of this article lies in the description of the approach to the development of a fundamental device for monitoring public and personal networks with flexibly defined additional and basic functions. The proposed device, thanks to the use of SDN technology, provides individual customization for customer requests, which means the possibility of expanding functionality without purchasing new hardware and firmware. The proposed device, due to the use of SDN technology, provides individual customization for customer requests, which means the possibility of expanding the functionality without purchasing new hardware and firmware.
开发一套在第二层设有过滤元件的网络通讯监察系统
本文提出了一种在OSI模型的数据链路层(L2)具有过滤元素的网络流量监控系统。本文介绍了所提出的监测和过滤系统的一般要求和构建方法。所开发的设备建立在SDN技术的基础上,这使得创建比传统网络设备更灵活、多功能的网络设备成为可能。在研制该装置的过程中,使用了大众可用的标准方法和部件。在任务设定的条件下,给出了基于TE0714 TRM模型板和SFP标准收发器的器件原理图。建议将该装置用于带滤波元件的监测系统。提出了基于SNMP协议的网络流量监控,对网络关键节点进行信息采集。建议基于MAC地址“白”列表实现网络流量过滤,以限制可以访问系统的设备列表。本文的实际意义在于描述了一种具有灵活定义的附加和基本功能的用于监控公共和个人网络的基本设备的开发方法。由于使用了SDN技术,拟议的设备可以根据客户的要求提供个性化定制,这意味着无需购买新的硬件和固件即可扩展功能。该设备由于使用SDN技术,可根据客户要求提供个性化定制,这意味着无需购买新的硬件和固件即可扩展功能。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
求助全文
约1分钟内获得全文 求助全文
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:481959085
Book学术官方微信