Measurement modules
The Allegro Network Multimeter provides a number of network measurement modules for different use cases. Here you can find a list of modules and a short description and see the specific module for detailed documentation.
Generic
Section titled “Generic”-
Capture module
The Capture module lists all running captures which were started interactively in any other module. It also allows for starting new captures with specific filters. -
Path measurement
This module allows you to measure packet loss and latency between two or more Allegro Network Multimeter installations. -
Packet ring buffer
The packet ring buffer feature allows you to create a buffer of fixed size on a storage device to which all processed packets will be recorded. If the fixed size buffer is full, the oldest packets in the buffer will be replaced with new packets in a round-robin fashion. -
PCAP analysis module
The PCAP analysis module allows for the analysis of PCAP files by sending them to the appliance. After analyzing a PCAP, the web interface displays all the metadata as if the packets are live traffic at the time of the PCAP recording. -
Incidents module
The Incidents module allows for notifications to be created when specific network incidents are detected.
L2 - WiFi
Section titled “L2 - WiFi”- WiFi module
This module analyzes wireless frames forwarded by access points.
L2 - Ethernet Layer
Section titled “L2 - Ethernet Layer”-
MAC module
The MAC module gathers information about all captured MAC addresses, including the protocols used, traffic, communication peers and MAC/IP mappings. -
QoS module
The QoS module processes and displays traffic with QoS tags, VLAN PCP and MPLS TC on Layer 2 (and IP DSCP on Layer 3). -
Packet size module
The packet size module accounts the size of all packets (Layer 2 with CRC) and shows packet size distribution. -
ARP module
The ARP module monitors ARP packets for tracking MAC addresses and announced IP addresses. -
VLAN module
The VLAN module accounts traffic per VLAN tag seen on the network. -
MAC protocols module
The MAC protocols module accounts traffic of all different MAC protocols. -
STP module
The STP module analyzes STP traffic and shows a history of the identified root Bridges with their configurations. -
Burst analysis
The Burst analysis module measures throughput per interface or MAC address and displays utilization graphs for fast burst recognition. -
MPLS module
The MPLS module displays information about all identified MPLS labels (single label and double-stacked). -
LLDP module
The LLDP module extracts information from LLDP (Link Layer Discovery Protocol) messages and correlates this information to the respective MAC and IP addresses. -
PPPoE module
The PPPoE module displays all PPPoE sessions and traffic within a specific session. -
LACP module
The LACP module shows information gathered from LACP packets about port channels. -
VXLAN module
The VXLAN module shows information about all seen VXLANs. -
GENEVE module
The GENEVE module shows information about all seen GENEVE VNIs.
L3 - IP Layer
Section titled “L3 - IP Layer”-
IP module
The IP module gathers information about all captured IPv4 and IPv6 addresses including the protocol used, traffic, communication peers, and connections. -
IP groups
The IP groups module gathers information for groups of IP addresses. Any IP subnet can be configured to be used as a group. -
IP pairs
The IP pairs module shows traffic information between pairs of IP addresses. -
QoS module
The QoS module processes and displays traffic with QoS tags for IP DSCP on Layer 3 and VLAN PCP (and MPLS TC on Layer 2). -
Geolocation statistics
The Allegro Network Multimeter uses a geolocation library to identify the IP addresses of individual countries. The country information is shown in other modules; however, this web page lists all countries and their corresponding amount of traffic. It also shows detailed statistics per country including all IP addresses seen for that country. -
DHCP module
The DHCP module tracks requests and responses for dynamic IP assignments in networks. -
DNS module
DNS name resolving is handled passively by processing all DNS requests and responses captured by the system. This module lists all IP addresses and names known by the system. This information is used by other modules to look up names. -
NetBIOS module
The NetBIOS module monitors NetBIOS packets for tracking announced host names for IP addresses. -
ICMP module
The ICMP module shows information about ICMP traffic and specific packet types. -
Multicast statistics
The multicast module analyzes IGMP traffic and displays detailed information on multicast groups and members. -
BGP module
The BGP module processes BGP traffic and displays detailed information about BGP router and router pairs.
L4 - Transport Layer
Section titled “L4 - Transport Layer”-
Connections module
The Connections module provides access to a list of connections of all IPs aggregated together based on selected sort and filter parameters. -
TCP module
The TCP module measures the TCP handshake time for connection setup. It allows you to identify slow responding servers in a network. -
UDP module
The UDP module shows global UDP traffic, IP addresses with UDP traffic and UDP connections. -
Layer 4 server ports module
The Layer 4 server ports module measures traffic per TCP and UDP server port. -
IPSec module
The IPSec module shows information about IPSec ESP traffic and sequence counter correctness.
L7 - Application Layer
Section titled “L7 - Application Layer”-
Layer 7 protocols module
The Layer 7 protocols module gathers information about all supported Layer 7 protocols. This includes information on how much traffic was seen for each protocol for each IPv4 and IPv6 address. -
TLS module
The SSL/TLS module keeps track of SSL/TLS server names and common names in SSL/TLS encrypted traffic. It enables you to get the name resolved even if no DNS has been seen. -
HTTP module
The HTTP module keeps track of HTTP host names requested in HTTP connections. It allows you to get the name resolved even if no DNS has been seen and to see which virtual host is handled by a given server. -
Response time analysis
The response time analysis module allows you to define your own protocol request and response pattern and measure the response time and request/response loss. -
SMB statistics
The SMB module gathers information about all SMB servers handling unencrypted traffic. It shows which shares have been accessed and which files in those shares have been read or written to, together with detailed statistics per file. -
SIP module
The SIP statistics includes all SIP calls and their associated metadata. -
NTP module
The NTP module shows detailed information about Network Time Protocol servers selected and their corresponding network clients. -
PTP module
The PTP module stores the PTP members and their associated metadata like the PTP version. -
Profinet module
The Profinet module analyzes Profinet RT cyclic and acyclic traffic and displays details on all devices and their communication relationships. -
OPC-UA module
The OPC-UA module displays information about OPC-UA binary protocol traffic and performs response-time measurement. -
FIX module
The FIX module shows information about Financial Information eXchange traffic. -
IEC 60870-5-104 module
The IEC 60870-5-104 module shows information about IEC 60870-5-104 traffic, sequence counter correctness and response times. -
IEC 61850 module
The IEC 61850 module analyzes Generic Object Oriented Substation Event (GOOSE) and IEC 61850 Sampled Values traffic and shows information about the different traffic types and sequence counter correctness. -
RADIUS module
The RADIUS module analyzes Remote Authentication Dial-In Use Service traffic and shows the protocol traffic, response times, message types and sequence counter correctness. -
TDS module
The TDS module analyzes MS-SQL Tabular Data Stream traffic and shows the protocol traffic, response times and the recognized negotiated protocol version. -
TETRA module
The TETRA module shows detailed information about Terrestrial Trunked Radio traffic. -
QUIC module
The QUIC analysis module provides comprehensive insights into Quick UDP Internet Connections traffic. -
DICOM module
The DICOM module shows information about DICOM (Digital Imaging and Communications in Medicine) protocol usage. -
RTP statistics
The RTP module shows detailed information about RTP codecs used.